⤷ Title: File Path Traversal, Validation of Start of Path
════════════════════════
𐀪 Author: Bash Overflow
════════════════════════
ⴵ Time: Fri, 09 Jan 2026 10:54:14 GMT
════════════════════════
⌗ Tags: #file_path_traversal #path_validation_bypass #arbitrary_file_read #directory_traversal #bug_bounty
════════════════════════
𐀪 Author: Bash Overflow
════════════════════════
ⴵ Time: Fri, 09 Jan 2026 10:54:14 GMT
════════════════════════
⌗ Tags: #file_path_traversal #path_validation_bypass #arbitrary_file_read #directory_traversal #bug_bounty
Medium
File Path Traversal, Validation of Start of Path
File Path Traversal via Weak Path Validation | Arbitrary File Read Explained.
⤷ Title: File Path Traversal, Validation of File Extension with Null Byte Bypass
════════════════════════
𐀪 Author: Bash Overflow
════════════════════════
ⴵ Time: Sat, 10 Jan 2026 05:52:55 GMT
════════════════════════
⌗ Tags: #directory_traversal #file_path_traversal #bug_bounty #bypass_extension_file #null_byte_bypass
════════════════════════
𐀪 Author: Bash Overflow
════════════════════════
ⴵ Time: Sat, 10 Jan 2026 05:52:55 GMT
════════════════════════
⌗ Tags: #directory_traversal #file_path_traversal #bug_bounty #bypass_extension_file #null_byte_bypass
Medium
File Path Traversal, Validation of File Extension with Null Byte Bypass
How weak filename checks lead to arbitrary file reads in web applications.
⤷ Title: Ghost Folders: “Directory Shadowing” Hack Hijacks WordPress SEO
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 05 Feb 2026 00:11:09 +0000
════════════════════════
⌗ Tags: #Cybercriminals #apache #Directory Shadowing #Gambling Spam #Googlebot Cloaking #malware #nginx #SEO Spam #Sucuri #Web Server Security #wordpress
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 05 Feb 2026 00:11:09 +0000
════════════════════════
⌗ Tags: #Cybercriminals #apache #Directory Shadowing #Gambling Spam #Googlebot Cloaking #malware #nginx #SEO Spam #Sucuri #Web Server Security #wordpress
Daily CyberSecurity
Ghost Folders: "Directory Shadowing" Hack Hijacks WordPress SEO
New "directory shadowing" malware creates physical folders to hijack WordPress URLs. It feeds gambling spam to Googlebots while staying invisible.
⤷ Title: HTB: Imagery
════════════════════════
𐀪 Author: bluesnow
════════════════════════
ⴵ Time: Sat, 21 Feb 2026 08:44:55 GMT
════════════════════════
⌗ Tags: #aes_file #xs #cronjob #directory_traversal #command_injection
════════════════════════
𐀪 Author: bluesnow
════════════════════════
ⴵ Time: Sat, 21 Feb 2026 08:44:55 GMT
════════════════════════
⌗ Tags: #aes_file #xs #cronjob #directory_traversal #command_injection
Medium
HTB: Imagery
| XSS | Session Cookie Hijacking | Directory Traversal | DB.JSON | Command Injection | AES File | AES Decrytion | SUDO | Charcol | Cron Job…
⤷ Title: Trend Micro Issues Critical Patch for Apex One: Severe RCE Flaws Addressed
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 26 Feb 2026 07:16:13 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #critical patch #CVE_2025_71210 #CVE_2025_71211 #Directory Traversal #endpoint security #infosec #Patch Alert #rce #Remote Code Execution #Trend Micro Apex One
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 26 Feb 2026 07:16:13 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #critical patch #CVE_2025_71210 #CVE_2025_71211 #Directory Traversal #endpoint security #infosec #Patch Alert #rce #Remote Code Execution #Trend Micro Apex One
Daily CyberSecurity
Trend Micro Issues Critical Patch for Apex One: Severe RCE Flaws Addressed
Trend Micro issues a critical patch for Apex One to fix 9.8 severity vulnerabilities (CVE-2025-71210) that allow remote code execution. Update your console now!
⤷ Title: Walkthrough: Web Application Attacks - XSS, SQL Injections, Directory Traversals, and File…
════════════════════════
𐀪 Author: Daryl Brooks
════════════════════════
ⴵ Time: Fri, 27 Feb 2026 00:44:16 GMT
════════════════════════
⌗ Tags: #stored_xss #local_file_inclusion #sql_injection #directory_traversal #reflected_xss
════════════════════════
𐀪 Author: Daryl Brooks
════════════════════════
ⴵ Time: Fri, 27 Feb 2026 00:44:16 GMT
════════════════════════
⌗ Tags: #stored_xss #local_file_inclusion #sql_injection #directory_traversal #reflected_xss
Medium
Walkthrough: Web Application Attacks - XSS, SQL Injections, Directory Traversals, and File…
In this project, I discuss and demonstrate a variety of web‑based cyberattacks. To do so, I take on the role of a malicious actor and…
⤷ Title: [Kubernetes for Everyone] — Exploiting Grafana (CVE-2021-43798) To Gain SSH Access and Extract…
════════════════════════
𐀪 Author: Bash Overflow
════════════════════════
ⴵ Time: Thu, 12 Mar 2026 05:01:15 GMT
════════════════════════
⌗ Tags: #kubernetes #directory_traversal #grafana #cve_2021_43798 #bug_bounty
════════════════════════
𐀪 Author: Bash Overflow
════════════════════════
ⴵ Time: Thu, 12 Mar 2026 05:01:15 GMT
════════════════════════
⌗ Tags: #kubernetes #directory_traversal #grafana #cve_2021_43798 #bug_bounty
Medium
[Kubernetes for Everyone] — Exploiting Grafana (CVE-2021-43798) To Gain SSH Access and Extract Secrets From a Kubernetes Cluster
Grafana CVE-2021-43798 to Kubernetes Secrets — Full Exploitation Chain with Pod Enumeration.
⤷ Title: Discover Hidden Attack Surfaces with FFUF Fuzzing
════════════════════════
𐀪 Author: Cyb3rV0lt
════════════════════════
ⴵ Time: Wed, 01 Apr 2026 07:17:18 GMT
════════════════════════
⌗ Tags: #ffuf #directory_brute_force #bug_bounty_tips #fuzzing #cybersecurity
════════════════════════
𐀪 Author: Cyb3rV0lt
════════════════════════
ⴵ Time: Wed, 01 Apr 2026 07:17:18 GMT
════════════════════════
⌗ Tags: #ffuf #directory_brute_force #bug_bounty_tips #fuzzing #cybersecurity
Medium
🔍 Discover Hidden Attack Surfaces with FFUF Fuzzing
In the world of web application security, attackers don’t just look at what’s visible — they dig deeper to uncover hidden endpoints…
⤷ Title: Hydra: TryHackMe Walkthrough
════════════════════════
𐀪 Author: Shree
════════════════════════
ⴵ Time: Mon, 06 Apr 2026 16:08:16 GMT
════════════════════════
⌗ Tags: #tryhackme_walkthrough #hydra #tryhackme #cybersecurity #directory_brute_force
════════════════════════
𐀪 Author: Shree
════════════════════════
ⴵ Time: Mon, 06 Apr 2026 16:08:16 GMT
════════════════════════
⌗ Tags: #tryhackme_walkthrough #hydra #tryhackme #cybersecurity #directory_brute_force
Medium
Hydra: TryHackMe Walkthrough
Let’s try and find out a password using bruteforce attack using Hydra!
⤷ Title: Critical Spring Cloud Config Flaws Expose Arbitrary Files and GCP Secrets
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 07 May 2026 02:10:56 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2026_40981 #CVE_2026_40982 #cybersecurity #Directory Traversal #GCP Security #Google Secrets Manager #infosec #Patch Alert #Spring Boot #Spring Cloud Config
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 07 May 2026 02:10:56 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2026_40981 #CVE_2026_40982 #cybersecurity #Directory Traversal #GCP Security #Google Secrets Manager #infosec #Patch Alert #Spring Boot #Spring Cloud Config
Daily CyberSecurity
Critical Spring Cloud Config Flaws Expose Arbitrary Files and GCP Secrets
Spring Cloud Config fixes a 9.1 CVSS directory traversal (CVE-2026-40982) and a GCP secret leak. Secure your distributed system—upgrade to the latest patches!
⤷ Title: Your Server Is Showing Everything It Shouldn’t -The Apache Directory Listing Deep Dive
════════════════════════
𐀪 Author: Blue_eye
════════════════════════
ⴵ Time: Sat, 09 May 2026 01:31:00 GMT
════════════════════════
⌗ Tags: #software_development #directory_listing #web_development #ai #bug_bounty
════════════════════════
𐀪 Author: Blue_eye
════════════════════════
ⴵ Time: Sat, 09 May 2026 01:31:00 GMT
════════════════════════
⌗ Tags: #software_development #directory_listing #web_development #ai #bug_bounty
Medium
Your Server Is Showing Everything It Shouldn’t -The Apache Directory Listing Deep Dive
A misconfigured Apache directive just one line can turn your private server filesystem into an open catalogue for anyone with a browser…
⤷ Title: CISA Sound the Alarm: Langflow AI Platform and Trend Micro Added to KEV Catalog Due to Active Exploitation
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 21 May 2026 23:29:12 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Binding Operational Directive #CISA KEV #Cross_Origin Resource Sharing #CVE_2025_34291 #CVE_2026_34926 #Cyber Security #Directory Traversal #infosec #Langflow #Remote Code Execution #SameSite Cookie #Trend Micro Apex One
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 21 May 2026 23:29:12 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Binding Operational Directive #CISA KEV #Cross_Origin Resource Sharing #CVE_2025_34291 #CVE_2026_34926 #Cyber Security #Directory Traversal #infosec #Langflow #Remote Code Execution #SameSite Cookie #Trend Micro Apex One
Daily CyberSecurity
CISA Sound the Alarm: Langflow AI Platform and Trend Micro Added to KEV Catalog Due to Active Exploitation
CISA updates its KEV Catalog with critical flaws in Langflow (CVE-2025-34291) and Trend Micro Apex One. Federal agencies ordered to patch by June 4, 2026.
⤷ Title: Critical ArcGIS Server Security Patch Fixes Severe Flaws
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 02 Jun 2026 00:30:01 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #ArcGIS Server #CVE_2026_9181 #Directory Traversal #Esri Security #Software Patch
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 02 Jun 2026 00:30:01 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #ArcGIS Server #CVE_2026_9181 #Directory Traversal #Esri Security #Software Patch
Daily CyberSecurity
Critical ArcGIS Server Security Patch Fixes Severe Flaws
Esri recently launched an urgent ArcGIS Server security patch to address critical vulnerabilities within its core application framework. Specifically, the newly issued software update resolves mul…
⤷ Title: The Biggest Path Traversal Mistake I Didn’t Know I Was Making — Here’s The Path Traversal Checklist…
════════════════════════
𐀪 Author: Swati Choudhary
════════════════════════
ⴵ Time: Sat, 04 Jul 2026 17:53:34 GMT
════════════════════════
⌗ Tags: #directory_traversal #web_security #application_security #cybersecurity #bug_bounty
════════════════════════
𐀪 Author: Swati Choudhary
════════════════════════
ⴵ Time: Sat, 04 Jul 2026 17:53:34 GMT
════════════════════════
⌗ Tags: #directory_traversal #web_security #application_security #cybersecurity #bug_bounty
Medium
The Biggest Path Traversal Mistake I Didn’t Know I Was Making — Here’s The Path Traversal Checklist…
A few weeks ago, I was testing a web application when I noticed something that looked interesting — a “.jpeg” file being loaded by the…
⤷ Title: Exim Directory Traversal Flaw Enables Privilege Escalation, Fixed in 4.99.5
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 22 Jul 2026 17:10:32 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Directory Traversal #Exim #Exim 4.99.5 #Linux Security #Mail Transfer Agent #privilege escalation
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 22 Jul 2026 17:10:32 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Directory Traversal #Exim #Exim 4.99.5 #Linux Security #Mail Transfer Agent #privilege escalation
Daily CyberSecurity
Exim Directory Traversal Flaw Enables Privilege Escalation, Fixed in 4.99.5
TL;DR The Exim team published advisory EXIM-Security-2026-06-22.1 on July 22, 2026. It describes an Exim vulnerability that lets a local attacker read files outside the mail spool. The bug can lea…
⤷ Title: Room 404 — TryHackMe Answers | by Deepti Gupta
════════════════════════
𐀪 Author: Deepti Gupta
════════════════════════
ⴵ Time: Tue, 28 Jul 2026 17:22:07 GMT
════════════════════════
⌗ Tags: #web_security #directory_enumeration #web_design #tryhackme #git
════════════════════════
𐀪 Author: Deepti Gupta
════════════════════════
ⴵ Time: Tue, 28 Jul 2026 17:22:07 GMT
════════════════════════
⌗ Tags: #web_security #directory_enumeration #web_design #tryhackme #git
Medium
Room 404 — TryHackMe Answers | by Deepti Gupta
Platform: TryHackMe
⤷ Title: TryHackMe Hacker Holidays: Room 404 Walkthrough
════════════════════════
𐀪 Author: iamdonu
════════════════════════
ⴵ Time: Tue, 28 Jul 2026 19:34:34 GMT
════════════════════════
⌗ Tags: #directory_enumeration #hacker_holidays_2026 #tryhackme #web #hacker_holidays
════════════════════════
𐀪 Author: iamdonu
════════════════════════
ⴵ Time: Tue, 28 Jul 2026 19:34:34 GMT
════════════════════════
⌗ Tags: #directory_enumeration #hacker_holidays_2026 #tryhackme #web #hacker_holidays
Medium
TryHackMe Hacker Holidays: Room 404 Walkthrough
A quiet hotel room, one open port, and a web misconfiguration that proved to be a goldmine.