⤷ Title: Breaking It During a Hackathon
════════════════════════
𐀪 Author: debang5hu
════════════════════════
ⴵ Time: Wed, 01 Apr 2026 20:08:39 GMT
════════════════════════
⌗ Tags: #api #bug_bounty_writeup #cybersecurity #bug_bounty #penetration_testing
════════════════════════
𐀪 Author: debang5hu
════════════════════════
ⴵ Time: Wed, 01 Apr 2026 20:08:39 GMT
════════════════════════
⌗ Tags: #api #bug_bounty_writeup #cybersecurity #bug_bounty #penetration_testing
Medium
Breaking It During a Hackathon
Worked on security testing for target.com with a team of four, this write-up highlights the bugs I found and how I approached them.
⤷ Title: BAC: THE Money-Making Machine
════════════════════════
𐀪 Author: Rajveer
════════════════════════
ⴵ Time: Wed, 01 Apr 2026 06:40:14 GMT
════════════════════════
⌗ Tags: #bug_bounty #bug_bounty_writeup #bug_bounty_tips #broken_access_control
════════════════════════
𐀪 Author: Rajveer
════════════════════════
ⴵ Time: Wed, 01 Apr 2026 06:40:14 GMT
════════════════════════
⌗ Tags: #bug_bounty #bug_bounty_writeup #bug_bounty_tips #broken_access_control
Medium
BAC: THE Money-Making Machine
BAC is always my favorite and most of my bounties come from this vulnerability.
It always fascinates me to bypass the intended flow and…
It always fascinates me to bypass the intended flow and…
⤷ Title: GitHub is a Search Engine for Secrets — and Nobody Told You
════════════════════════
𐀪 Author: Shah kaif
════════════════════════
ⴵ Time: Wed, 01 Apr 2026 06:01:53 GMT
════════════════════════
⌗ Tags: #github_dork #bug_bounty_tips #osint #bug_bounty_writeup #bug_bounty
════════════════════════
𐀪 Author: Shah kaif
════════════════════════
ⴵ Time: Wed, 01 Apr 2026 06:01:53 GMT
════════════════════════
⌗ Tags: #github_dork #bug_bounty_tips #osint #bug_bounty_writeup #bug_bounty
Medium
GitHub is a Search Engine for Secrets — and Nobody Told You
By Shah kaif | “Every leaked API key started as a commit someone thought was private.” | LinkedIn | Youtube
⤷ Title: Hi ReadMe.io
════════════════════════
𐀪 Author: shesha sai_c
════════════════════════
ⴵ Time: Tue, 31 Mar 2026 17:10:15 GMT
════════════════════════
⌗ Tags: #bug_bounty_writeup #bug_bounty_tips #bug_bounty #vulnerability_management #vulnerability
════════════════════════
𐀪 Author: shesha sai_c
════════════════════════
ⴵ Time: Tue, 31 Mar 2026 17:10:15 GMT
════════════════════════
⌗ Tags: #bug_bounty_writeup #bug_bounty_tips #bug_bounty #vulnerability_management #vulnerability
Medium
Hi ReadMe.io
Summary:
⤷ Title: How Bug Bounty Hunters Are Using Claude Code.
════════════════════════
𐀪 Author: Abhishek meena
════════════════════════
ⴵ Time: Tue, 31 Mar 2026 09:01:57 GMT
════════════════════════
⌗ Tags: #infosec #bug_bounty #claude_code #bug_bounty_tips #bug_bounty_writeup
════════════════════════
𐀪 Author: Abhishek meena
════════════════════════
ⴵ Time: Tue, 31 Mar 2026 09:01:57 GMT
════════════════════════
⌗ Tags: #infosec #bug_bounty #claude_code #bug_bounty_tips #bug_bounty_writeup
Medium
How Bug Bounty Hunters Are Using Claude Code.
The community has been quietly building something powerful. I went and found it.
⤷ Title: ️ This Vulnerability Was Sitting in Front of Everyone — But No One Noticed
════════════════════════
𐀪 Author: Sukhveer Singh
════════════════════════
ⴵ Time: Tue, 31 Mar 2026 05:37:38 GMT
════════════════════════
⌗ Tags: #bug_bounty_tips #bug_bounty #cybersecurity #bug_bounty_writeup #bug_hunting
════════════════════════
𐀪 Author: Sukhveer Singh
════════════════════════
ⴵ Time: Tue, 31 Mar 2026 05:37:38 GMT
════════════════════════
⌗ Tags: #bug_bounty_tips #bug_bounty #cybersecurity #bug_bounty_writeup #bug_hunting
Medium
🕵️ This Vulnerability Was Sitting in Front of Everyone — But No One Noticed
Most bugs are hidden.
⤷ Title: What a Real Autonomous Recon Pipeline Looks Like
════════════════════════
𐀪 Author: Aeon Flex, Elriel Assoc. 2133 [NEON MAXIMA]
════════════════════════
ⴵ Time: Thu, 02 Apr 2026 20:20:02 GMT
════════════════════════
⌗ Tags: #infosec #cybersecurity #recon #automation #information_security
════════════════════════
𐀪 Author: Aeon Flex, Elriel Assoc. 2133 [NEON MAXIMA]
════════════════════════
ⴵ Time: Thu, 02 Apr 2026 20:20:02 GMT
════════════════════════
⌗ Tags: #infosec #cybersecurity #recon #automation #information_security
Medium
What a Real Autonomous Recon Pipeline Looks Like
If your pipeline doesn’t account for time, it’s already stale.
⤷ Title: Why Most Recon Pipelines Break After a Week
════════════════════════
𐀪 Author: Aeon Flex, Elriel Assoc. 2133 [NEON MAXIMA]
════════════════════════
ⴵ Time: Thu, 02 Apr 2026 16:25:47 GMT
════════════════════════
⌗ Tags: #osint_investigation #recon #information_security #security #hacking
════════════════════════
𐀪 Author: Aeon Flex, Elriel Assoc. 2133 [NEON MAXIMA]
════════════════════════
ⴵ Time: Thu, 02 Apr 2026 16:25:47 GMT
════════════════════════
⌗ Tags: #osint_investigation #recon #information_security #security #hacking
Medium
Why Most Recon Pipelines Break After a Week
Most people never notice because the output still looks technical.
⤷ Title: Subfinder Subdomains Dhundho Like an Elite Hacker! (Hinglish Mein)
════════════════════════
𐀪 Author: Hacker MD
════════════════════════
ⴵ Time: Sat, 28 Mar 2026 10:41:03 GMT
════════════════════════
⌗ Tags: #infosec #recon #cybersecurity #ethical_hacking #bug_bounty
════════════════════════
𐀪 Author: Hacker MD
════════════════════════
ⴵ Time: Sat, 28 Mar 2026 10:41:03 GMT
════════════════════════
⌗ Tags: #infosec #recon #cybersecurity #ethical_hacking #bug_bounty
Medium
Subfinder Subdomains Dhundho Like an Elite Hacker! (Hinglish Mein)
Series: Bug Bounty Zero se Hero 🦸 | Article #6 By HackerMD | 18 min read
⤷ Title: Microsoft Power BI API Credential Exposure: From Public Postman Workspace to Data Exfiltration in…
════════════════════════
𐀪 Author: Dzianis Skliar
════════════════════════
ⴵ Time: Fri, 27 Mar 2026 11:02:23 GMT
════════════════════════
⌗ Tags: #osint #penetration_testing #api_security #recon
════════════════════════
𐀪 Author: Dzianis Skliar
════════════════════════
ⴵ Time: Fri, 27 Mar 2026 11:02:23 GMT
════════════════════════
⌗ Tags: #osint #penetration_testing #api_security #recon
Medium
Microsoft Power BI API Credential Exposure: From Public Postman Workspace to Data Exfiltration in…
You don’t need to hack a government agency when its API credentials are already public.
⤷ Title: I Found a Bug That Could Delete Anyone’s Profile on a U.S. Navy Website
════════════════════════
𐀪 Author: Mohamed Adel
════════════════════════
ⴵ Time: Mon, 30 Mar 2026 00:22:12 GMT
════════════════════════
⌗ Tags: #bugbounty_writeup #bug_bounty_writeup #bug_bounty_tips #bug_bounty #hacking
════════════════════════
𐀪 Author: Mohamed Adel
════════════════════════
ⴵ Time: Mon, 30 Mar 2026 00:22:12 GMT
════════════════════════
⌗ Tags: #bugbounty_writeup #bug_bounty_writeup #bug_bounty_tips #bug_bounty #hacking
Medium
I Found a Bug That Could Delete Anyone’s Profile on a U.S. Navy Website
I was just poking around a U.S. Navy portal one afternoon when I stumbled across something that made me stop and double-check what I was…
⤷ Title: Exploiting Second-Order SQL Injection to Retrieve the Flag
════════════════════════
𐀪 Author: recoxy
════════════════════════
ⴵ Time: Sat, 28 Mar 2026 15:02:46 GMT
════════════════════════
⌗ Tags: #ctf_writeup #picoctf_2026 #bugbounty_writeup #hackerone #picoctf_2025
════════════════════════
𐀪 Author: recoxy
════════════════════════
ⴵ Time: Sat, 28 Mar 2026 15:02:46 GMT
════════════════════════
⌗ Tags: #ctf_writeup #picoctf_2026 #bugbounty_writeup #hackerone #picoctf_2025
Medium
Exploiting Second-Order SQL Injection to Retrieve the Flag
Challenge Overview
⤷ Title: SQL Injection in PHP Reservation System — Breaking Access Control via a Single Parameter
════════════════════════
𐀪 Author: Cyber Tamarin
════════════════════════
ⴵ Time: Fri, 27 Mar 2026 14:46:10 GMT
════════════════════════
⌗ Tags: #cybersecurity #bugbounty_writeup
════════════════════════
𐀪 Author: Cyber Tamarin
════════════════════════
ⴵ Time: Fri, 27 Mar 2026 14:46:10 GMT
════════════════════════
⌗ Tags: #cybersecurity #bugbounty_writeup
Medium
SQL Injection in PHP Reservation System — Breaking Access Control via a Single Parameter
A critical SQL Injection vulnerability in manage_user.php leading to full database exposure.
⤷ Title: From Recon to Critical: Finding an Unauthenticated Security Dashboard ($1895 Bug Bounty)
════════════════════════
𐀪 Author: Vaibhav Kumar Srivastava
════════════════════════
ⴵ Time: Thu, 26 Mar 2026 18:33:45 GMT
════════════════════════
⌗ Tags: #bug_bounty #bugbounty_writeup #security #hacking #cybersecurity
════════════════════════
𐀪 Author: Vaibhav Kumar Srivastava
════════════════════════
ⴵ Time: Thu, 26 Mar 2026 18:33:45 GMT
════════════════════════
⌗ Tags: #bug_bounty #bugbounty_writeup #security #hacking #cybersecurity
Medium
From Recon to Critical: Finding an Unauthenticated Security Dashboard ($1895 Bug Bounty)
Introduction
⤷ Title: A Comprehensive VAPT Methodology Applied in Practical Security Assessments
════════════════════════
𐀪 Author: Ayushmohansah
════════════════════════
ⴵ Time: Thu, 26 Mar 2026 14:24:48 GMT
════════════════════════
⌗ Tags: #bugbounty_writeup #red_team #hacking #methodology #vapt
════════════════════════
𐀪 Author: Ayushmohansah
════════════════════════
ⴵ Time: Thu, 26 Mar 2026 14:24:48 GMT
════════════════════════
⌗ Tags: #bugbounty_writeup #red_team #hacking #methodology #vapt
Medium
A Comprehensive VAPT Methodology Applied in Practical Security Assessments
Introduction
⤷ Title: Side Hustles for Cybersecurity Professionals: Bug Bounties, Consulting, Content & Training
════════════════════════
𐀪 Author: ATNO For Cybersecurity | Hacking
════════════════════════
ⴵ Time: Wed, 25 Mar 2026 07:44:25 GMT
════════════════════════
⌗ Tags: #cybersecurity #bugbounty_writeup #freelancing #side_hustle
════════════════════════
𐀪 Author: ATNO For Cybersecurity | Hacking
════════════════════════
ⴵ Time: Wed, 25 Mar 2026 07:44:25 GMT
════════════════════════
⌗ Tags: #cybersecurity #bugbounty_writeup #freelancing #side_hustle
Medium
💰 Side Hustles for Cybersecurity Professionals: Bug Bounties, Consulting, Content & Training
🐛 Bug Bounty Hunting
⤷ Title: XPFarm: Top 10 AI Tools for Cybersecurity Automation
════════════════════════
𐀪 Author: Pentester Club
════════════════════════
ⴵ Time: Tue, 24 Mar 2026 14:51:27 GMT
════════════════════════
⌗ Tags: #bugbounty_writeup #cybersecurity #web_development #hacking #ai
════════════════════════
𐀪 Author: Pentester Club
════════════════════════
ⴵ Time: Tue, 24 Mar 2026 14:51:27 GMT
════════════════════════
⌗ Tags: #bugbounty_writeup #cybersecurity #web_development #hacking #ai
Medium
XPFarm: Top 10 AI Tools for Cybersecurity Automation 🚀
The Future of Ethical Hacking, Powered by AI
⤷ Title: From Stored XSS to Cookie Tossing into Credit Card Theft
════════════════════════
𐀪 Author: 3NVZ
════════════════════════
ⴵ Time: Tue, 24 Mar 2026 01:09:22 GMT
════════════════════════
⌗ Tags: #bug_bounty_writeup #bug_bounty #bugbounty_writeup #bug_bounty_tips
════════════════════════
𐀪 Author: 3NVZ
════════════════════════
ⴵ Time: Tue, 24 Mar 2026 01:09:22 GMT
════════════════════════
⌗ Tags: #bug_bounty_writeup #bug_bounty #bugbounty_writeup #bug_bounty_tips
Medium
From Stored XSS to Cookie Tossing into Credit Card Theft
Hello Everyone, we are back again!
⤷ Title: What Actually Happens When You Go Looking for API Keys in JavaScript
════════════════════════
𐀪 Author: DrRobik
════════════════════════
ⴵ Time: Fri, 03 Apr 2026 19:49:06 GMT
════════════════════════
⌗ Tags: #web_penetration_testing #bug_bounty_tips #penetration_testing_tools #subdomains_enumeration #api
════════════════════════
𐀪 Author: DrRobik
════════════════════════
ⴵ Time: Fri, 03 Apr 2026 19:49:06 GMT
════════════════════════
⌗ Tags: #web_penetration_testing #bug_bounty_tips #penetration_testing_tools #subdomains_enumeration #api
Medium
What Actually Happens When You Go Looking for API Keys in JavaScript
When I first started doing recon, I thought the process was pretty straightforward — run a few tools, collect data, and somewhere in there…
⤷ Title: APNs Token Registration Issues on iOS A Complete Debugging Journey
════════════════════════
𐀪 Author: Obioma Godswill Michael
════════════════════════
ⴵ Time: Fri, 03 Apr 2026 16:55:38 GMT
════════════════════════
⌗ Tags: #flutter_app_development #bug_bounty_tips #ios_app_development
════════════════════════
𐀪 Author: Obioma Godswill Michael
════════════════════════
ⴵ Time: Fri, 03 Apr 2026 16:55:38 GMT
════════════════════════
⌗ Tags: #flutter_app_development #bug_bounty_tips #ios_app_development
Medium
APNs Token Registration Issues on iOS A Complete Debugging Journey
How a missing entitlement, a corrupted project file, and a few wrong paths cost hours of debugging and exactly how i fixed every single…
⤷ Title: Mobile Deep Link Exploitation: The Hidden Attack Surface Nobody Talks About
════════════════════════
𐀪 Author: Being_brutlix
════════════════════════
ⴵ Time: Fri, 03 Apr 2026 04:27:33 GMT
════════════════════════
⌗ Tags: #android_pentesting #bug_bounty_tips #exported_true #deep_link_android
════════════════════════
𐀪 Author: Being_brutlix
════════════════════════
ⴵ Time: Fri, 03 Apr 2026 04:27:33 GMT
════════════════════════
⌗ Tags: #android_pentesting #bug_bounty_tips #exported_true #deep_link_android
Medium
Mobile Deep Link Exploitation: The Hidden Attack Surface Nobody Talks About
INTRODUCTION