⤷ Title: Connectors CTF All web challenges
════════════════════════
𐀪 Author: Karim Mohamed
════════════════════════
ⴵ Time: Sun, 14 Sep 2025 16:18:28 GMT
════════════════════════
⌗ Tags: #bug_bounty #web_pentesting #hacking #ctf
════════════════════════
𐀪 Author: Karim Mohamed
════════════════════════
ⴵ Time: Sun, 14 Sep 2025 16:18:28 GMT
════════════════════════
⌗ Tags: #bug_bounty #web_pentesting #hacking #ctf
Medium
Connectors CTF All web challenges
Me and my amazing team got 2nd place in Connectors CTF this year and I have some web challenges to share with you
⤷ Title: Blind SQL Injection Walkthrough — DVWA (Low, Medium, High)
════════════════════════
𐀪 Author: Vaishnavkp
════════════════════════
ⴵ Time: Wed, 01 Oct 2025 19:02:10 GMT
════════════════════════
⌗ Tags: #dvwa #blind_sql_injection #web_pentesting #bug_bounty #cybersecurity
════════════════════════
𐀪 Author: Vaishnavkp
════════════════════════
ⴵ Time: Wed, 01 Oct 2025 19:02:10 GMT
════════════════════════
⌗ Tags: #dvwa #blind_sql_injection #web_pentesting #bug_bounty #cybersecurity
Medium
Blind SQL Injection Walkthrough — DVWA (Low, Medium, High)
Introduction
⤷ Title: Dancing API Challenge — Solution Guide CSEM
════════════════════════
𐀪 Author: CSEM
════════════════════════
ⴵ Time: Wed, 22 Oct 2025 14:57:52 GMT
════════════════════════
⌗ Tags: #web_security #web_pentesting #sql_injection #web_penetration_testing #ctf
════════════════════════
𐀪 Author: CSEM
════════════════════════
ⴵ Time: Wed, 22 Oct 2025 14:57:52 GMT
════════════════════════
⌗ Tags: #web_security #web_pentesting #sql_injection #web_penetration_testing #ctf
Medium
Dancing API Challenge — Solution Guide CSEM
🎯 Challenge Overview
⤷ Title: The Ultimate Bug Hunter’s Recon workflow: From Subdomains to Critical Vulnerabilities
════════════════════════
𐀪 Author: Manoj
════════════════════════
ⴵ Time: Fri, 31 Oct 2025 16:40:31 GMT
════════════════════════
⌗ Tags: #cybersecurity #bug_bounty_tips #bug_bounty #web_pentesting
════════════════════════
𐀪 Author: Manoj
════════════════════════
ⴵ Time: Fri, 31 Oct 2025 16:40:31 GMT
════════════════════════
⌗ Tags: #cybersecurity #bug_bounty_tips #bug_bounty #web_pentesting
Medium
The Ultimate Bug Hunter’s Recon workflow: From Subdomains to Critical Vulnerabilities
By an impatient, caffeinated bug hunter who’s broken more things than they’d like to admit — and learned the right way to tell people…
⤷ Title: How I Accidentally Discovered an Undocumented Behavior in “Web for Pentester 1”
════════════════════════
𐀪 Author: Zahi halimi
════════════════════════
ⴵ Time: Mon, 17 Nov 2025 01:34:44 GMT
════════════════════════
⌗ Tags: #web_pentesting #pentesting #hacking
════════════════════════
𐀪 Author: Zahi halimi
════════════════════════
ⴵ Time: Mon, 17 Nov 2025 01:34:44 GMT
════════════════════════
⌗ Tags: #web_pentesting #pentesting #hacking
Medium
How I Accidentally Discovered an Undocumented Behavior in “Web for Pentester 1”
Most security labs are built around predictable, well-documented vulnerabilities. But every once in a while, during experimentation, you…
⤷ Title: Broken 2FA Authentication
════════════════════════
𐀪 Author: Daemi Jack
════════════════════════
ⴵ Time: Wed, 10 Dec 2025 13:46:58 GMT
════════════════════════
⌗ Tags: #penetration_testing #web_pentesting #authentication_bypass
════════════════════════
𐀪 Author: Daemi Jack
════════════════════════
ⴵ Time: Wed, 10 Dec 2025 13:46:58 GMT
════════════════════════
⌗ Tags: #penetration_testing #web_pentesting #authentication_bypass
Medium
Broken 2FA Authentication
This is how broken access control led to a 2FA authentication bypass on a popular web application. While testing I could directly access…
⤷ Title: No CSRF Protection: How a Logged-In User’s Email Can Be Changed Silently
════════════════════════
𐀪 Author: Istiyak
════════════════════════
ⴵ Time: Wed, 04 Feb 2026 12:22:40 GMT
════════════════════════
⌗ Tags: #web_pentesting #cybersecurity #bug_bounty_writeup #csrf #web_security
════════════════════════
𐀪 Author: Istiyak
════════════════════════
ⴵ Time: Wed, 04 Feb 2026 12:22:40 GMT
════════════════════════
⌗ Tags: #web_pentesting #cybersecurity #bug_bounty_writeup #csrf #web_security
Medium
No CSRF Protection: How a Logged-In User’s Email Can Be Changed Silently
Introduction
⤷ Title: API Bug Bounty Mastery 2026: Hunt Hidden Endpoints to Land $10k+ Payouts
════════════════════════
𐀪 Author: Manoj
════════════════════════
ⴵ Time: Thu, 19 Feb 2026 12:44:57 GMT
════════════════════════
⌗ Tags: #cybersecurity #web_pentesting #bug_bounty #apihacking
════════════════════════
𐀪 Author: Manoj
════════════════════════
ⴵ Time: Thu, 19 Feb 2026 12:44:57 GMT
════════════════════════
⌗ Tags: #cybersecurity #web_pentesting #bug_bounty #apihacking
Medium
API Bug Bounty Mastery 2026: Hunt Hidden Endpoints to Land $10k+ Payouts
A Step‑by‑Step Methodology — From Passive Recon & JavaScript Leakage to Mass Assignment, BOLA Chains, and Critical Privilege Escalation
⤷ Title: Solving a Bugforge Daily Challenge — Exploiting SQL Injection in Cafe Club
════════════════════════
𐀪 Author: Pranaya Shrestha
════════════════════════
ⴵ Time: Mon, 23 Feb 2026 14:22:48 GMT
════════════════════════
⌗ Tags: #bugforge #web_pentesting #cybersecurity #sql_injection #caido
════════════════════════
𐀪 Author: Pranaya Shrestha
════════════════════════
ⴵ Time: Mon, 23 Feb 2026 14:22:48 GMT
════════════════════════
⌗ Tags: #bugforge #web_pentesting #cybersecurity #sql_injection #caido
Medium
Solving a Bugforge Daily Challenge — Exploiting SQL Injection in Cafe Club
Today, I solved a daily challenge on Bugforge, targeting a web application called Cafe Club.
⤷ Title: CyCTF Luxor web writeup
════════════════════════
𐀪 Author: 00xCanelo
════════════════════════
ⴵ Time: Sat, 14 Mar 2026 23:39:01 GMT
════════════════════════
⌗ Tags: #web_pentesting #cyctf #penetration_testing #ctf #ethical_hacking
════════════════════════
𐀪 Author: 00xCanelo
════════════════════════
ⴵ Time: Sat, 14 Mar 2026 23:39:01 GMT
════════════════════════
⌗ Tags: #web_pentesting #cyctf #penetration_testing #ctf #ethical_hacking
Medium
CyCTF Luxor web writeup
Hey guys this a writeup for the all the web challenges
⤷ Title: WebVersePro Labs — Challenge: Ember Kettle Writeup (Reflected XSS)
════════════════════════
𐀪 Author: Zor0ark
════════════════════════
ⴵ Time: Thu, 23 Apr 2026 17:56:27 GMT
════════════════════════
⌗ Tags: #web_pentesting #ctf_writeup #reflected_xss #ctf #xs
════════════════════════
𐀪 Author: Zor0ark
════════════════════════
ⴵ Time: Thu, 23 Apr 2026 17:56:27 GMT
════════════════════════
⌗ Tags: #web_pentesting #ctf_writeup #reflected_xss #ctf #xs
Medium
WebVersePro Labs — Challenge: Ember Kettle Writeup (Reflected XSS)
OBJECTIVE: To exploit a web application featuring a vulnerable search input that lacks filtering, allowing for the execution of arbitrary…
⤷ Title: WebVersePro Labs — Challenge: Fermata Writeup (Reflected XSS)
════════════════════════
𐀪 Author: Zor0ark
════════════════════════
ⴵ Time: Thu, 23 Apr 2026 21:04:10 GMT
════════════════════════
⌗ Tags: #webverse #web_pentesting #bug_bounty #xs #ctf
════════════════════════
𐀪 Author: Zor0ark
════════════════════════
ⴵ Time: Thu, 23 Apr 2026 21:04:10 GMT
════════════════════════
⌗ Tags: #webverse #web_pentesting #bug_bounty #xs #ctf
Medium
WebVersePro Labs — Challenge: Fermata Writeup (Reflected XSS)
OBJECTIVE: To identify the injection point, break out of an HTML comment block, and execute arbitrary JavaScript to retrieve the challenge…
⤷ Title: I Was Getting 401 Everywhere… Until One Login Field Gave Me Full Access
════════════════════════
𐀪 Author: Tanvi Chauhan
════════════════════════
ⴵ Time: Sun, 26 Apr 2026 16:40:59 GMT
════════════════════════
⌗ Tags: #web_pentesting #cybersecurity #bug_bounty #information_security #pentesting
════════════════════════
𐀪 Author: Tanvi Chauhan
════════════════════════
ⴵ Time: Sun, 26 Apr 2026 16:40:59 GMT
════════════════════════
⌗ Tags: #web_pentesting #cybersecurity #bug_bounty #information_security #pentesting
Medium
I Was Getting 401 Everywhere… Until One Login Field Gave Me Full Access
Most bug bounty sessions end the same way.
⤷ Title: TryHackMe — Guided Pentest: Web (Walkthrough)
════════════════════════
𐀪 Author: Hudson Lois Marcus
════════════════════════
ⴵ Time: Tue, 02 Jun 2026 06:50:49 GMT
════════════════════════
⌗ Tags: #tryhackme_writeup #tryhackme_walkthrough #offensive_security #tryhackme #web_pentesting
════════════════════════
𐀪 Author: Hudson Lois Marcus
════════════════════════
ⴵ Time: Tue, 02 Jun 2026 06:50:49 GMT
════════════════════════
⌗ Tags: #tryhackme_writeup #tryhackme_walkthrough #offensive_security #tryhackme #web_pentesting
Medium
TryHackMe — Guided Pentest: Web (Walkthrough)
In this room, we will be guided step-by-step to do a web penetration testing to find out any vulnerabilities, and ultimately know the way…
⤷ Title: Introduction to Web Application Penetration Testing
════════════════════════
𐀪 Author: Mohd Kaif
════════════════════════
ⴵ Time: Fri, 05 Jun 2026 11:38:08 GMT
════════════════════════
⌗ Tags: #penetration_testing #cybersecurity #web_penetration_testing #intro_to_web_pen_testing #web_pentesting
════════════════════════
𐀪 Author: Mohd Kaif
════════════════════════
ⴵ Time: Fri, 05 Jun 2026 11:38:08 GMT
════════════════════════
⌗ Tags: #penetration_testing #cybersecurity #web_penetration_testing #intro_to_web_pen_testing #web_pentesting
Medium
Introduction to Web Application Penetration Testing
As businesses increasingly rely on web applications for banking, shopping, education, healthcare, and communication, securing these…