⤷ Title: 1-HTML Injection Bug- Web Penetration Testing Series
════════════════════════
𐀪 Author: Hackerssg
════════════════════════
ⴵ Time: Fri, 20 Feb 2026 21:08:22 GMT
════════════════════════
⌗ Tags: #web_penetration_testing #html_injection #owasp_top_10 #penetration_testing #bug_bounty
════════════════════════
𐀪 Author: Hackerssg
════════════════════════
ⴵ Time: Fri, 20 Feb 2026 21:08:22 GMT
════════════════════════
⌗ Tags: #web_penetration_testing #html_injection #owasp_top_10 #penetration_testing #bug_bounty
Medium
1-HTML Injection Bug- Web Penetration Testing Series
This article explains HTML Injection in the most beginner-friendly way — with examples, real impact, and how to prevent it. Whether you’re…
⤷ Title: HTML Attribute Injection: Breaking Out of the Tag
════════════════════════
𐀪 Author: Issan
════════════════════════
ⴵ Time: Tue, 24 Feb 2026 07:18:24 GMT
════════════════════════
⌗ Tags: #injection_attacks #cybersecurity #html_attribute #ethical_hacking #web_app_pentesting
════════════════════════
𐀪 Author: Issan
════════════════════════
ⴵ Time: Tue, 24 Feb 2026 07:18:24 GMT
════════════════════════
⌗ Tags: #injection_attacks #cybersecurity #html_attribute #ethical_hacking #web_app_pentesting
Medium
🚀 HTML Attribute Injection: Breaking Out of the Tag
Target Application:
https://github.com/Yavuzlar/VulnLab/tree/main
https://github.com/Yavuzlar/VulnLab/tree/main
⤷ Title: Lab: Reflected XSS into HTML context with nothing encoded
════════════════════════
𐀪 Author: jaejun835
════════════════════════
ⴵ Time: Thu, 26 Feb 2026 05:31:20 GMT
════════════════════════
⌗ Tags: #csp #html #burpsuite #xs #portswigger
════════════════════════
𐀪 Author: jaejun835
════════════════════════
ⴵ Time: Thu, 26 Feb 2026 05:31:20 GMT
════════════════════════
⌗ Tags: #csp #html #burpsuite #xs #portswigger
Medium
Lab: Reflected XSS into HTML context with nothing encoded
[Problem]
⤷ Title: Forcing an AI App to generate Payloads to Cause HTML Injection
════════════════════════
𐀪 Author: Rahul Singh Chauhan
════════════════════════
ⴵ Time: Wed, 04 Mar 2026 01:11:07 GMT
════════════════════════
⌗ Tags: #html_injection #bug_bounty #cybersecurity #ai #bug_bounty_reports
════════════════════════
𐀪 Author: Rahul Singh Chauhan
════════════════════════
ⴵ Time: Wed, 04 Mar 2026 01:11:07 GMT
════════════════════════
⌗ Tags: #html_injection #bug_bounty #cybersecurity #ai #bug_bounty_reports
Medium
Forcing an AI App to generate Payloads to Cause HTML Injection
Hi everyone, in this article, I’ll walk through a recent penetration test I conducted against a custom-built AI chatbot. As usual, we’ll…
⤷ Title: ️♂️ A Fun HTML Injection Story — When a “File Name” Became My Entry Point
════════════════════════
𐀪 Author: Diwas mundra
════════════════════════
ⴵ Time: Wed, 18 Mar 2026 21:42:18 GMT
════════════════════════
⌗ Tags: #penetration_testing #cybersecurity #sql_injection #vulnerability #html_injection
════════════════════════
𐀪 Author: Diwas mundra
════════════════════════
ⴵ Time: Wed, 18 Mar 2026 21:42:18 GMT
════════════════════════
⌗ Tags: #penetration_testing #cybersecurity #sql_injection #vulnerability #html_injection
Medium
🕵️♂️ A Fun HTML Injection Story — When a “File Name” Became My Entry Point
Sometimes, vulnerabilities don’t scream… They just quietly sit inside something as innocent as a file name field 😄
⤷ Title: Invisible Ink: Critical 9.6 CVSS jsPDF Flaw Turns Generated Documents into XSS Traps
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 19 Mar 2026 13:30:38 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Cross_Site Scripting #CVE_2026_31938 #cybersecurity #HTML Injection #infosec #JavaScript Security #jsPDF #Vulnerability #web development #XSS
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 19 Mar 2026 13:30:38 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Cross_Site Scripting #CVE_2026_31938 #cybersecurity #HTML Injection #infosec #JavaScript Security #jsPDF #Vulnerability #web development #XSS
Daily CyberSecurity
Invisible Ink: Critical 9.6 CVSS jsPDF Flaw Turns Generated Documents into XSS Traps
A critical 9.6 CVSS vulnerability in jsPDF (CVE-2026-31938) allows attackers to inject malicious scripts via XSS. Update to version 4.2.1 immediately.
⤷ Title: HTML Injection Bug Bounty: How I Found a Persistent Vulnerability on a Government of India Portal
════════════════════════
𐀪 Author: Vanshrathore
════════════════════════
ⴵ Time: Mon, 06 Apr 2026 18:22:08 GMT
════════════════════════
⌗ Tags: #bug_bounty #html_injection #pentesting #money #bug_hunting
════════════════════════
𐀪 Author: Vanshrathore
════════════════════════
ⴵ Time: Mon, 06 Apr 2026 18:22:08 GMT
════════════════════════
⌗ Tags: #bug_bounty #html_injection #pentesting #money #bug_hunting
Medium
HTML Injection Bug Bounty: How I Found a Persistent Vulnerability on a Government of India Portal
LinkedIn:- https://www.linkedin.com/in/vansh-rathore-cybersecurity?utm_source=share_via&utm_content=profile&utm_medium=member_android
⤷ Title: From P4 to Critical: How I Weaponized target.com’s Email Infrastructure
════════════════════════
𐀪 Author: Vanshrathore
════════════════════════
ⴵ Time: Thu, 16 Apr 2026 15:18:58 GMT
════════════════════════
⌗ Tags: #penetration_testing #bug_bounty #html_injection #bug_hunting #money
════════════════════════
𐀪 Author: Vanshrathore
════════════════════════
ⴵ Time: Thu, 16 Apr 2026 15:18:58 GMT
════════════════════════
⌗ Tags: #penetration_testing #bug_bounty #html_injection #bug_hunting #money
Medium
🔥From P4 to Critical: How I Weaponized target.com’s Email Infrastructure
LinkedIn:- https://www.linkedin.com/in/vansh-rathore-cybersecurity?utm_source=share_via&utm_content=profile&utm_medium=member_android
⤷ Title: How A Simple Bug That Refused to Die, Paid Twice.
════════════════════════
𐀪 Author: kjulius
════════════════════════
ⴵ Time: Sun, 26 Apr 2026 03:03:44 GMT
════════════════════════
⌗ Tags: #injection #ui_interaction #html #bug_bounty #inconsistencies
════════════════════════
𐀪 Author: kjulius
════════════════════════
ⴵ Time: Sun, 26 Apr 2026 03:03:44 GMT
════════════════════════
⌗ Tags: #injection #ui_interaction #html #bug_bounty #inconsistencies
Medium
How A Simple Bug That Refused to Die, Paid Twice. 💰
⚠️ Disclaimer
⤷ Title: How A Simple Bug That Refused to Die, Paid Twice.
════════════════════════
𐀪 Author: kjulius
════════════════════════
ⴵ Time: Sun, 26 Apr 2026 03:03:42 GMT
════════════════════════
⌗ Tags: #injection #ui_interaction #html #bug_bounty #inconsistencies
════════════════════════
𐀪 Author: kjulius
════════════════════════
ⴵ Time: Sun, 26 Apr 2026 03:03:42 GMT
════════════════════════
⌗ Tags: #injection #ui_interaction #html #bug_bounty #inconsistencies
Medium
How A Simple Bug That Refused to Die, Paid Twice. 💰
⚠️ Disclaimer
⤷ Title: bWAPP: HTML Injection — Reflected (GET) Challenge (Low & Medium Security)
════════════════════════
𐀪 Author: Kamal S
════════════════════════
ⴵ Time: Sat, 09 May 2026 12:04:24 GMT
════════════════════════
⌗ Tags: #injection #owasp #html_injection #bwapp #bug_bounty
════════════════════════
𐀪 Author: Kamal S
════════════════════════
ⴵ Time: Sat, 09 May 2026 12:04:24 GMT
════════════════════════
⌗ Tags: #injection #owasp #html_injection #bwapp #bug_bounty
Medium
bWAPP: HTML Injection — Reflected (GET) Challenge (Low & Medium Security)
HTML Injection is one of the most fundamental web application vulnerabilities and often serves as a stepping stone to more advanced attacks…
⤷ Title: HTML Should Have Embedded Markdown 30 Years Ago
════════════════════════
𐀪 Author: Outermostkt
════════════════════════
ⴵ Time: Sun, 17 May 2026 02:08:54 GMT
════════════════════════
⌗ Tags: #thariq #ai #xs #html #markdown
════════════════════════
𐀪 Author: Outermostkt
════════════════════════
ⴵ Time: Sun, 17 May 2026 02:08:54 GMT
════════════════════════
⌗ Tags: #thariq #ai #xs #html #markdown
Medium
HTML Should Have Embedded Markdown 30 Years Ago
As you may know, there’s been a lot of buzz in the AI community lately about shifting back from Markdown to HTML. For instance, in articles…
⤷ Title: The Sleeper Agent Bug: How One HTML Payload Lay Hidden for Months to Attack My Inbox ⏳
════════════════════════
𐀪 Author: LordofHeaven
════════════════════════
ⴵ Time: Tue, 19 May 2026 09:00:53 GMT
════════════════════════
⌗ Tags: #html_injection #web_security #infosec #coffinxp #bug_bounty
════════════════════════
𐀪 Author: LordofHeaven
════════════════════════
ⴵ Time: Tue, 19 May 2026 09:00:53 GMT
════════════════════════
⌗ Tags: #html_injection #web_security #infosec #coffinxp #bug_bounty
Medium
The Sleeper Agent Bug: How One HTML Payload Lay Hidden for Months to Attack My Inbox ⏳
The Sleeper Agent Bug: How One HTML Payload Lay Hidden for Months to Attack My Inbox ⏳ A short recon story about a delayed HTML injection, a surprising phishing vector, and why every output channel …
⤷ Title: Living Off the HTA Land: How Hackers Weaponize a 1999 Windows Utility for Silent Malware Delivery
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 21 May 2026 07:04:27 +0000
════════════════════════
⌗ Tags: #Malware #Amatera Info Harvester #ClickFix Social Engineering LummaStealer #ClipBanker Crypto Stealer #CountLoader Staging Framework #Emmenhtal Loader #HTML Application HTA Payload #Living off the Land Binaries #MSHTA Weaponization Malware Delivery #mshta.exe Windows Binary #PurpleFox Rootkit Lineage
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 21 May 2026 07:04:27 +0000
════════════════════════
⌗ Tags: #Malware #Amatera Info Harvester #ClickFix Social Engineering LummaStealer #ClipBanker Crypto Stealer #CountLoader Staging Framework #Emmenhtal Loader #HTML Application HTA Payload #Living off the Land Binaries #MSHTA Weaponization Malware Delivery #mshta.exe Windows Binary #PurpleFox Rootkit Lineage
Penetration Testing Tools
Living Off the HTA Land: How Hackers Weaponize a 1999 Windows Utility for Silent Malware Delivery
Threat actors are increasingly weaponizing MSHTA, a legacy Windows utility, as a highly efficient conduit to execute malicious
⤷ Title: HTML Injection in Outbound Emails: An Overlooked Security Risk
════════════════════════
𐀪 Author: vibhuti bhatt
════════════════════════
ⴵ Time: Fri, 05 Jun 2026 12:26:37 GMT
════════════════════════
⌗ Tags: #html_injection #vulnerability #application_security #pentesting #injection_in_email
════════════════════════
𐀪 Author: vibhuti bhatt
════════════════════════
ⴵ Time: Fri, 05 Jun 2026 12:26:37 GMT
════════════════════════
⌗ Tags: #html_injection #vulnerability #application_security #pentesting #injection_in_email
Medium
HTML Injection in Outbound Emails: An Overlooked Security Risk
Introduction
⤷ Title: Telegram Bots Receive Rich HTML and Markdown Formatting Options
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Tue, 16 Jun 2026 08:44:45 +0000
════════════════════════
⌗ Tags: #Technology #bot development #HTML formatting #Markdown #Rich Text #Telegram Bots
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Tue, 16 Jun 2026 08:44:45 +0000
════════════════════════
⌗ Tags: #Technology #bot development #HTML formatting #Markdown #Rich Text #Telegram Bots
Daily CyberSecurity
Telegram Bots Receive Rich HTML and Markdown Formatting Options
Pavel Durov recently announced expanded capabilities for all automated systems on the platform. Specifically, Telegram now supports intricate HTML and Markdown structures. Consequently, bots can g…