⤷ Title: Critical Spring AI Flaws Expose Databases to SQL and JSONPath Injection
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 17 Mar 2026 14:27:56 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #access control bypass #CVE_2026_22729 #CVE_2026_22730 #cybersecurity #infosec #Java security #JSONPath Injection #Spring AI #sql injection #Vulnerability
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 17 Mar 2026 14:27:56 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #access control bypass #CVE_2026_22729 #CVE_2026_22730 #cybersecurity #infosec #Java security #JSONPath Injection #Spring AI #sql injection #Vulnerability
Daily CyberSecurity
Critical Spring AI Flaws Expose Databases to SQL and JSONPath Injection
Two critical flaws in Spring AI (CVE-2026-22729 & CVE-2026-22730) allow attackers to bypass access controls via JSONPath and SQL injection. Update now.
⤷ Title: Publicly Disclosed: Bishop Fox Reveals Critical Pre-Auth SQL Injection in FortiClient EMS
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 17 Mar 2026 14:00:19 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Bishop Fox #CVE_2026_21643 #cybersecurity #database security #FortiClient EMS #infosec #sql injection #threat intelligence #vulnerability disclosure #zero_click exploit
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 17 Mar 2026 14:00:19 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Bishop Fox #CVE_2026_21643 #cybersecurity #database security #FortiClient EMS #infosec #sql injection #threat intelligence #vulnerability disclosure #zero_click exploit
Daily CyberSecurity
Publicly Disclosed: Bishop Fox Reveals Critical Pre-Auth SQL Injection in FortiClient EMS
Bishop Fox publicly disclosed details of a critical 9.1 CVSS zero-click SQL injection in FortiClient EMS (CVE-2026-21643). Patch to 7.4.5 immediately.
⤷ Title: Instant Hijack: Critical 10.0 CVSS File Browser Flaw Grants Automatic Admin Rights
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 17 Mar 2026 13:03:16 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Cloud Storage Security #CVE_2026_32760 #CVSS 10 #cybersecurity #File Browser #infosec #Logic Flaw #privilege escalation #Remote Code Execution #Vulnerability
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 17 Mar 2026 13:03:16 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Cloud Storage Security #CVE_2026_32760 #CVSS 10 #cybersecurity #File Browser #infosec #Logic Flaw #privilege escalation #Remote Code Execution #Vulnerability
Daily CyberSecurity
Instant Hijack: Critical 10.0 CVSS File Browser Flaw Grants Automatic Admin Rights
A critical 10.0 CVSS logic flaw in File Browser (CVE-2026-32760) grants unauthenticated users automatic admin rights upon signup. Update to 2.62.0 now.
⤷ Title: CVE Watchtower Launches Enterprise Automation Suite Featuring 30-Day Intelligence Dashboards, Predictive EPSS Scoring, REST API, and ITSM Webhooks
════════════════════════
𐀪 Author: ddos-admin
════════════════════════
ⴵ Time: Tue, 17 Mar 2026 13:00:37 +0000
════════════════════════
⌗ Tags: #Announcement #Cyber Threat Analytics #cybersecurity #EPSS Scoring #ITSM Automation #REST API #threat intelligence #vulnerability management #Vulnerability Prioritization
════════════════════════
𐀪 Author: ddos-admin
════════════════════════
ⴵ Time: Tue, 17 Mar 2026 13:00:37 +0000
════════════════════════
⌗ Tags: #Announcement #Cyber Threat Analytics #cybersecurity #EPSS Scoring #ITSM Automation #REST API #threat intelligence #vulnerability management #Vulnerability Prioritization
Daily CyberSecurity
CVE Watchtower Launches Enterprise Automation Suite Featuring 30-Day Intelligence Dashboards, Predictive EPSS Scoring, REST API…
Discover CVE Watchtower's new enterprise suite featuring 30-day threat analytics, predictive EPSS scoring, Jira/ServiceNow webhooks, and a private REST API.
⤷ Title: Account Takeover: o que é e por que grandes marcas continuam sendo alvo
════════════════════════
𐀪 Author: BugHunt
════════════════════════
ⴵ Time: Tue, 17 Mar 2026 13:27:05 GMT
════════════════════════
⌗ Tags: No_Tags
════════════════════════
𐀪 Author: BugHunt
════════════════════════
ⴵ Time: Tue, 17 Mar 2026 13:27:05 GMT
════════════════════════
⌗ Tags: No_Tags
BugHunt
Account Takeover: o que é e por que grandes marcas continuam sendo alvo
Entenda o que é Account Takeover, como ataques com Credential Stuffing e phishing acontecem e por que grandes marcas continuam vulneráveis.
⤷ Title: Wi-Fi Exploitation III-Break In, Own Everything
════════════════════════
𐀪 Author: Ishant
════════════════════════
ⴵ Time: Tue, 17 Mar 2026 14:37:48 GMT
════════════════════════
⌗ Tags: #web_security #penetration_testing #ethical_hacking #bug_bounty #cybersecurity
════════════════════════
𐀪 Author: Ishant
════════════════════════
ⴵ Time: Tue, 17 Mar 2026 14:37:48 GMT
════════════════════════
⌗ Tags: #web_security #penetration_testing #ethical_hacking #bug_bounty #cybersecurity
Medium
Wi-Fi Exploitation III-Break In, Own Everything
The live lab simulation nobody else shows you, what attackers actually do once they’re inside, the myths your friends still believe, and…
⤷ Title: Clash of Flans — Cómo encadené 4 vulnerabilidades para leer una flag
════════════════════════
𐀪 Author: 1v0t
════════════════════════
ⴵ Time: Tue, 17 Mar 2026 14:56:17 GMT
════════════════════════
⌗ Tags: #ctf_writeup #hacking #vulnerability #ctf_walkthrough
════════════════════════
𐀪 Author: 1v0t
════════════════════════
ⴵ Time: Tue, 17 Mar 2026 14:56:17 GMT
════════════════════════
⌗ Tags: #ctf_writeup #hacking #vulnerability #ctf_walkthrough
Medium
Clash of Flans — Cómo encadené 4 vulnerabilidades para leer una flag
Hace semanas no jugaba CTF. Esta vez tuve la oportunidad de retomar con el equipo y jugar el Midnight Flag CTF. Me emociona ver talentos…
⤷ Title: Operating Systems for Digital Forensics Investigators
════════════════════════
𐀪 Author: Nexamos
════════════════════════
ⴵ Time: Tue, 17 Mar 2026 14:51:45 GMT
════════════════════════
⌗ Tags: #linux #hacking_tools #hacking #ethical_hacking #forensics
════════════════════════
𐀪 Author: Nexamos
════════════════════════
ⴵ Time: Tue, 17 Mar 2026 14:51:45 GMT
════════════════════════
⌗ Tags: #linux #hacking_tools #hacking #ethical_hacking #forensics
Medium
Operating Systems for Digital Forensics Investigators
Digital forensic investigations often require specialized environments designed to analyze evidence safely and efficiently. In this…
⤷ Title: Web Application Security: Hands-On Practice (Chapter 17 from The Web Application Hacker’s Handbook)
════════════════════════
𐀪 Author: Aditya Kumar
════════════════════════
ⴵ Time: Tue, 17 Mar 2026 14:46:54 GMT
════════════════════════
⌗ Tags: #btech #hacking #web_application_security #cybersecurity #chapter17
════════════════════════
𐀪 Author: Aditya Kumar
════════════════════════
ⴵ Time: Tue, 17 Mar 2026 14:46:54 GMT
════════════════════════
⌗ Tags: #btech #hacking #web_application_security #cybersecurity #chapter17
Medium
Web Application Security: Hands-On Practice (Chapter 17 from The Web Application Hacker’s Handbook)
Note: This write-up reflects my learning and hands-on practice based on the book The Web Application Hacker’s Handbook: Discovering and…
⤷ Title: How to Detect a Hacker Inside Your Network
════════════════════════
𐀪 Author: Md Shafiqul Baten Sumon
════════════════════════
ⴵ Time: Tue, 17 Mar 2026 14:43:52 GMT
════════════════════════
⌗ Tags: #hacking #artificial_intelligence #technology #cybersecurity #ethical_hacking
════════════════════════
𐀪 Author: Md Shafiqul Baten Sumon
════════════════════════
ⴵ Time: Tue, 17 Mar 2026 14:43:52 GMT
════════════════════════
⌗ Tags: #hacking #artificial_intelligence #technology #cybersecurity #ethical_hacking
Medium
How to Detect a Hacker Inside Your Network
How to Detect a Hacker Inside Your Network, because the real danger isn’t the attack. It’s the one you didn’t notice. Most organizations…
⤷ Title: Image analysis using Sherloq
════════════════════════
𐀪 Author: Nexamos
════════════════════════
ⴵ Time: Tue, 17 Mar 2026 14:36:19 GMT
════════════════════════
⌗ Tags: #forensics #hacking
════════════════════════
𐀪 Author: Nexamos
════════════════════════
ⴵ Time: Tue, 17 Mar 2026 14:36:19 GMT
════════════════════════
⌗ Tags: #forensics #hacking
Medium
Image analysis using Sherloq
What is Sherloq brother?
⤷ Title: MCP Security — Poisoning an AI Agent Through Tool Responses
════════════════════════
𐀪 Author: OopsSec Store
════════════════════════
ⴵ Time: Tue, 17 Mar 2026 14:31:00 GMT
════════════════════════
⌗ Tags: #mcp_server #programming #hacking #cybersecurity #artificial_intelligence
════════════════════════
𐀪 Author: OopsSec Store
════════════════════════
ⴵ Time: Tue, 17 Mar 2026 14:31:00 GMT
════════════════════════
⌗ Tags: #mcp_server #programming #hacking #cybersecurity #artificial_intelligence
Medium
MCP Security — Poisoning an AI Agent Through Tool Responses
You’ll host your own malicious MCP server, poison a tool response, and trick the AI into calling a restricted internal tool
⤷ Title: APTs e a Geopolítica do Tabuleiro Cibernético: A Nova Era dos Ataques de Estados-Nação
════════════════════════
𐀪 Author: sarkis093
════════════════════════
ⴵ Time: Tue, 17 Mar 2026 14:30:19 GMT
════════════════════════
⌗ Tags: #hacking #programming #pentesting #threat_intelligence #cybersecurity
════════════════════════
𐀪 Author: sarkis093
════════════════════════
ⴵ Time: Tue, 17 Mar 2026 14:30:19 GMT
════════════════════════
⌗ Tags: #hacking #programming #pentesting #threat_intelligence #cybersecurity
Medium
APTs e a Geopolítica do Tabuleiro Cibernético: A Nova Era dos Ataques de Estados-Nação
Estudando de maneira mais aprofundada ataques de Estados-nação, cibercriminosos e ameaças avançadas, pude notar que as investidas desses…
⤷ Title: API Hooking
════════════════════════
𐀪 Author: Chisom
════════════════════════
ⴵ Time: Tue, 17 Mar 2026 13:47:36 GMT
════════════════════════
⌗ Tags: #malware #malware_development #api_hooking #hacking #windows_exploit
════════════════════════
𐀪 Author: Chisom
════════════════════════
ⴵ Time: Tue, 17 Mar 2026 13:47:36 GMT
════════════════════════
⌗ Tags: #malware #malware_development #api_hooking #hacking #windows_exploit
Medium
API Hooking
A Comprehensive Guide to Intercepting Windows API Calls
⤷ Title: How to do LLMNR Poisoning and SMB Relay Attack.
════════════════════════
𐀪 Author: Zoroya
════════════════════════
ⴵ Time: Tue, 17 Mar 2026 13:27:55 GMT
════════════════════════
⌗ Tags: #security #active_directory #penetration_testing #cybersecurity #hacking
════════════════════════
𐀪 Author: Zoroya
════════════════════════
ⴵ Time: Tue, 17 Mar 2026 13:27:55 GMT
════════════════════════
⌗ Tags: #security #active_directory #penetration_testing #cybersecurity #hacking
Medium
How to do LLMNR Poisoning and SMB Relay Attack.
In this Write-up we have 2 concepts to talk about. LLMNR Poisoning and SMB Relay Attacks are two key attacks on a Active Directory…
⤷ Title: The Ultimate AD Backdoor: Weaponizing a Built-in Windows Feature for Persistence
════════════════════════
𐀪 Author: Onur Civan
════════════════════════
ⴵ Time: Tue, 17 Mar 2026 13:06:41 GMT
════════════════════════
⌗ Tags: #red_team #cybersecurity #infosec #blue_team #active_directory
════════════════════════
𐀪 Author: Onur Civan
════════════════════════
ⴵ Time: Tue, 17 Mar 2026 13:06:41 GMT
════════════════════════
⌗ Tags: #red_team #cybersecurity #infosec #blue_team #active_directory
Medium
The Ultimate AD Backdoor: Weaponizing a Built-in Windows Feature for Persistence
In a scenario where all Domain Admin passwords have been reset, can the most privileged door in the internal network still be opened or…
⤷ Title: Tr0ll 2 Walkthrough
════════════════════════
𐀪 Author: Kirito
════════════════════════
ⴵ Time: Tue, 17 Mar 2026 14:27:25 GMT
════════════════════════
⌗ Tags: #cybersecurity #red_team #vulnhub_walkthrough #vulnhub #penetration_testing
════════════════════════
𐀪 Author: Kirito
════════════════════════
ⴵ Time: Tue, 17 Mar 2026 14:27:25 GMT
════════════════════════
⌗ Tags: #cybersecurity #red_team #vulnhub_walkthrough #vulnhub #penetration_testing
Medium
Tr0ll 2 Walkthrough
Machine introduction:
⤷ Title: Reflected Cross-Site Scripting (XSS) in Leave Application System (PHP & SQLite3)
════════════════════════
𐀪 Author: Hemant Raj Bhati
════════════════════════
ⴵ Time: Tue, 17 Mar 2026 13:26:03 GMT
════════════════════════
⌗ Tags: #cybersecurity #white_hat_hacker #red_team #web_application_security #penetration_testing
════════════════════════
𐀪 Author: Hemant Raj Bhati
════════════════════════
ⴵ Time: Tue, 17 Mar 2026 13:26:03 GMT
════════════════════════
⌗ Tags: #cybersecurity #white_hat_hacker #red_team #web_application_security #penetration_testing
Medium
Reflected Cross-Site Scripting (XSS) in Leave Application System (PHP & SQLite3)
Author
⤷ Title: Intro to Containerisation TryHackMe
════════════════════════
𐀪 Author: Zohaib Asif
════════════════════════
ⴵ Time: Tue, 17 Mar 2026 14:35:34 GMT
════════════════════════
⌗ Tags: #tryhackme #tryhackme_writeup #tryhackme_walkthrough
════════════════════════
𐀪 Author: Zohaib Asif
════════════════════════
ⴵ Time: Tue, 17 Mar 2026 14:35:34 GMT
════════════════════════
⌗ Tags: #tryhackme #tryhackme_writeup #tryhackme_walkthrough
Medium
Intro to Containerisation TryHackMe
What is Containerisation
⤷ Title: From Chaos to Clarity: My Journey Toward Becoming a SOC Analyst
════════════════════════
𐀪 Author: Çağlanur ARSLAN
════════════════════════
ⴵ Time: Tue, 17 Mar 2026 13:54:47 GMT
════════════════════════
⌗ Tags: #analysis #cybersecurity #soc_l1 #tryhackme
════════════════════════
𐀪 Author: Çağlanur ARSLAN
════════════════════════
ⴵ Time: Tue, 17 Mar 2026 13:54:47 GMT
════════════════════════
⌗ Tags: #analysis #cybersecurity #soc_l1 #tryhackme
Medium
From Chaos to Clarity: My Journey Toward Becoming a SOC Analyst
Introduction: The First Step from Theory to Practice
⤷ Title: Siber Güvenlikte “Görmeye” Başlamak (TR)
════════════════════════
𐀪 Author: Çağlanur ARSLAN
════════════════════════
ⴵ Time: Tue, 17 Mar 2026 13:44:25 GMT
════════════════════════
⌗ Tags: #soc_l1 #cybersecurity #tryhackme #cybersecurity_training
════════════════════════
𐀪 Author: Çağlanur ARSLAN
════════════════════════
ⴵ Time: Tue, 17 Mar 2026 13:44:25 GMT
════════════════════════
⌗ Tags: #soc_l1 #cybersecurity #tryhackme #cybersecurity_training
Medium
Siber Güvenlikte “Görmeye” Başlamak (TR)
Giriş: Teoriden Pratiğe İlk Adım