⤷ Title: Internal — TryHackMe Write-up
════════════════════════
𐀪 Author: Monas
════════════════════════
ⴵ Time: Mon, 06 Apr 2026 08:57:38 GMT
════════════════════════
⌗ Tags: #tryhackme_ctf #tryhackme #tryhackme_internal #tryhackme_writeup #ctf_writeup
════════════════════════
𐀪 Author: Monas
════════════════════════
ⴵ Time: Mon, 06 Apr 2026 08:57:38 GMT
════════════════════════
⌗ Tags: #tryhackme_ctf #tryhackme #tryhackme_internal #tryhackme_writeup #ctf_writeup
Medium
Internal — TryHackMe Write-up
Platform: TryHackMe Difficulty: Hard Category: Web Application
⤷ Title: This One-Word URL Change Paid Bug Bounty Hunters $10,000 — Here’s How They Did It
════════════════════════
𐀪 Author: morgan_hack
════════════════════════
ⴵ Time: Mon, 06 Apr 2026 10:18:20 GMT
════════════════════════
⌗ Tags: #web_security #programming #bug_bounty_tips #ethical_hacking #cybersecurity
════════════════════════
𐀪 Author: morgan_hack
════════════════════════
ⴵ Time: Mon, 06 Apr 2026 10:18:20 GMT
════════════════════════
⌗ Tags: #web_security #programming #bug_bounty_tips #ethical_hacking #cybersecurity
Medium
This One-Word URL Change Paid Bug Bounty Hunters $10,000 — Here’s How They Did It
Another step in my Access Control journey. This is my 7th lab, focused on IDOR with data leakage in redirect responses.
⤷ Title: Penetration Test Report
════════════════════════
𐀪 Author: Abdulmalik Adebayo
════════════════════════
ⴵ Time: Mon, 06 Apr 2026 10:07:34 GMT
════════════════════════
⌗ Tags: #web_hacking #web_penetration_testing #ethical_hacking #ctf_walkthrough
════════════════════════
𐀪 Author: Abdulmalik Adebayo
════════════════════════
ⴵ Time: Mon, 06 Apr 2026 10:07:34 GMT
════════════════════════
⌗ Tags: #web_hacking #web_penetration_testing #ethical_hacking #ctf_walkthrough
Medium
Penetration Test Report
Cyber Pride Security Group — CTF Assessment
⤷ Title: From IDOR to SQL Injection in GraphQL WebSocket Escalated to PII & Document Leak
════════════════════════
𐀪 Author: Ahmed Ghadban
════════════════════════
ⴵ Time: Sun, 05 Apr 2026 09:29:20 GMT
════════════════════════
⌗ Tags: #bug_bounty_writeup #bug_bounty_tips #bug_bounty #security #cybersecurity
════════════════════════
𐀪 Author: Ahmed Ghadban
════════════════════════
ⴵ Time: Sun, 05 Apr 2026 09:29:20 GMT
════════════════════════
⌗ Tags: #bug_bounty_writeup #bug_bounty_tips #bug_bounty #security #cybersecurity
Medium
From IDOR to SQL Injection in GraphQL WebSocket Escalated to PII & Document Leak
Bounty: $2,000 Severity: Critical
⤷ Title: How LiteLLM Turned Developer Machines Into Credential Vaults for Attackers
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Mon, 06 Apr 2026 17:15:00 +0530
════════════════════════
⌗ Tags: No_Tags
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Mon, 06 Apr 2026 17:15:00 +0530
════════════════════════
⌗ Tags: No_Tags
⤷ Title: North Korean Hackers Pose as Trading Firm to Steal $285M from Drift
════════════════════════
𐀪 Author: Deeba Ahmed
════════════════════════
ⴵ Time: Mon, 06 Apr 2026 11:09:26 +0000
════════════════════════
⌗ Tags: #Security #Cyber Attacks #Scams and Fraud #Blockchain #Crypto #Drift #Drift Protocol #Fraud #North Korea #Scam #UNC4736
════════════════════════
𐀪 Author: Deeba Ahmed
════════════════════════
ⴵ Time: Mon, 06 Apr 2026 11:09:26 +0000
════════════════════════
⌗ Tags: #Security #Cyber Attacks #Scams and Fraud #Blockchain #Crypto #Drift #Drift Protocol #Fraud #North Korea #Scam #UNC4736
Hackread
North Korean Hackers Pose as Trading Firm to Steal $285M from Drift
North Korean hackers (UNC4736) posed as a trading firm for six months to infiltrate Drift Protocol, using social engineering tactics to steal $285M without suspicion.
⤷ Title: Whitespace Flaw Re-Opens Critical JWT “Algorithm Confusion” Bypass
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 06 Apr 2026 12:11:53 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Algorithm Confusion #Authentication Bypass #Cache Collision #CVE_2026_34950 #CVE_2026_35039 #cybersecurity #fast_jwt #HMAC #infosec #JWT #Node.js #Regex Flaw #RSA #Web Security
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 06 Apr 2026 12:11:53 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Algorithm Confusion #Authentication Bypass #Cache Collision #CVE_2026_34950 #CVE_2026_35039 #cybersecurity #fast_jwt #HMAC #infosec #JWT #Node.js #Regex Flaw #RSA #Web Security
Daily CyberSecurity
Whitespace Flaw Re-Opens Critical JWT "Algorithm Confusion" Bypass
CVE-2026-34950: A critical 9.1 CVSS flaw in fast-jwt allows authentication bypass via leading whitespace. Learn how a regex error leads to algorithm confusion.
⤷ Title: Building a Secure Command Sandbox in Python
════════════════════════
𐀪 Author: Mani vidyadhar
════════════════════════
ⴵ Time: Mon, 06 Apr 2026 12:52:07 GMT
════════════════════════
⌗ Tags: #cybersecurity #bug_bounty #sandbox #kali_linux #soc
════════════════════════
𐀪 Author: Mani vidyadhar
════════════════════════
ⴵ Time: Mon, 06 Apr 2026 12:52:07 GMT
════════════════════════
⌗ Tags: #cybersecurity #bug_bounty #sandbox #kali_linux #soc
Medium
🔐 Building a Secure Command Sandbox in Python
A Practical Approach to Zero-Trust Security (Kali Secure Sandbox v2.0)
⤷ Title: The No-Nonsense Guide to Cybersecurity Vulnerabilities
════════════════════════
𐀪 Author: Dhanush N
════════════════════════
ⴵ Time: Mon, 06 Apr 2026 12:24:24 GMT
════════════════════════
⌗ Tags: #security #information_security #cybersecurity #cyber_security_awareness #bug_bounty
════════════════════════
𐀪 Author: Dhanush N
════════════════════════
ⴵ Time: Mon, 06 Apr 2026 12:24:24 GMT
════════════════════════
⌗ Tags: #security #information_security #cybersecurity #cyber_security_awareness #bug_bounty
Medium
The No-Nonsense Guide to Cybersecurity Vulnerabilities
From CVSS scores to Host Scanners, everything you need to understand your security posture before the bad guys do.
⤷ Title: The Bug Bounty Checklist That Turns Beginners Into Hackers The Day I Missed a $500 Bug…
════════════════════════
𐀪 Author: Krish_cyber
════════════════════════
ⴵ Time: Mon, 06 Apr 2026 11:37:41 GMT
════════════════════════
⌗ Tags: #bug_bounty_writeup #bug_bounty_tips #bug_bounty #info_sec_writeups #cybersecurity
════════════════════════
𐀪 Author: Krish_cyber
════════════════════════
ⴵ Time: Mon, 06 Apr 2026 11:37:41 GMT
════════════════════════
⌗ Tags: #bug_bounty_writeup #bug_bounty_tips #bug_bounty #info_sec_writeups #cybersecurity
Medium
The Bug Bounty Checklist That Turns Beginners Into Hackers 💻🔥The Day I Missed a $500 Bug…
💻 From Zero to Finding Real Vulnerabilities — The Exact Checklist I Wish I Had Earlier
⤷ Title: 2026 Top 10 Chrome Extensions Every Bug Bounty Hunter Must Use
════════════════════════
𐀪 Author: Pradeeptadi
════════════════════════
ⴵ Time: Mon, 06 Apr 2026 11:34:56 GMT
════════════════════════
⌗ Tags: #bug_bounty_tips #cybersecurity #bug_bounty
════════════════════════
𐀪 Author: Pradeeptadi
════════════════════════
ⴵ Time: Mon, 06 Apr 2026 11:34:56 GMT
════════════════════════
⌗ Tags: #bug_bounty_tips #cybersecurity #bug_bounty
Medium
🚀 2026 Top 10 Chrome Extensions Every Bug Bounty Hunter Must Use
🚀 2026 Top 10 Chrome Extensions Every Bug Bounty Hunter Must Use If you’re doing bug bounty, your browser is your main weapon. But here’s the truth: 👉 You don’t need hundreds of …
⤷ Title: How to Crack Passwords Using Kali Linux (John & Hashcat )
════════════════════════
𐀪 Author: Fx03
════════════════════════
ⴵ Time: Mon, 06 Apr 2026 11:07:43 GMT
════════════════════════
⌗ Tags: #cybersecurity #bug_bounty #linux #technology #hacking
════════════════════════
𐀪 Author: Fx03
════════════════════════
ⴵ Time: Mon, 06 Apr 2026 11:07:43 GMT
════════════════════════
⌗ Tags: #cybersecurity #bug_bounty #linux #technology #hacking
Medium
How to Crack Passwords Using Kali Linux (John & Hashcat )
Learn password cracking using this tools really its make you an a good hacker
⤷ Title: Best Cyber Security Institute in Tilak Nagar, West Delhi — Cyberyaan (2026)
════════════════════════
𐀪 Author: Varun Papnai
════════════════════════
ⴵ Time: Mon, 06 Apr 2026 12:35:21 GMT
════════════════════════
⌗ Tags: #ethical_hacking #hacking #cybersecurity #hacker
════════════════════════
𐀪 Author: Varun Papnai
════════════════════════
ⴵ Time: Mon, 06 Apr 2026 12:35:21 GMT
════════════════════════
⌗ Tags: #ethical_hacking #hacking #cybersecurity #hacker
Medium
Best Cyber Security Institute in Tilak Nagar, West Delhi — Cyberyaan (2026)
If you are searching for a reliable and industry-focused cyber security institute in Tilak Nagar, Cyberyaan offers structured training…
⤷ Title: CTF — Kali Linux & Serveur Vulnérable
════════════════════════
𐀪 Author: Karmendra Mungrah
════════════════════════
ⴵ Time: Mon, 06 Apr 2026 11:36:24 GMT
════════════════════════
⌗ Tags: #ctf #linux #cybersecurity #kali_linux #hacking
════════════════════════
𐀪 Author: Karmendra Mungrah
════════════════════════
ⴵ Time: Mon, 06 Apr 2026 11:36:24 GMT
════════════════════════
⌗ Tags: #ctf #linux #cybersecurity #kali_linux #hacking
Medium
CTF — Kali Linux & srv-alien
Contexte :
⤷ Title: Lab: CSRF with broken Referer validation
════════════════════════
𐀪 Author: PRiTi.EX
════════════════════════
ⴵ Time: Mon, 06 Apr 2026 11:19:11 GMT
════════════════════════
⌗ Tags: #portswigger #hacking #portswigger_lab #cybersecurity
════════════════════════
𐀪 Author: PRiTi.EX
════════════════════════
ⴵ Time: Mon, 06 Apr 2026 11:19:11 GMT
════════════════════════
⌗ Tags: #portswigger #hacking #portswigger_lab #cybersecurity
Medium
Lab: CSRF with broken Referer validation
This post = no theory, only practical + all confusing parts explained clearly
⤷ Title: This Week I Learned — Hacking DVDs, Mussolini’s Documents, Which AI to Use
════════════════════════
𐀪 Author: Alberto Piras
════════════════════════
ⴵ Time: Mon, 06 Apr 2026 11:01:01 GMT
════════════════════════
⌗ Tags: #history #technology #hacking #ai #lifestyle
════════════════════════
𐀪 Author: Alberto Piras
════════════════════════
ⴵ Time: Mon, 06 Apr 2026 11:01:01 GMT
════════════════════════
⌗ Tags: #history #technology #hacking #ai #lifestyle
Medium
This Week I Learned — Hacking DVDs, Mussolini’s Documents, Which AI to Use
A short roundup of the things that caught my attention and taught me something new.
⤷ Title: Understanding CWE-613: Insufficient Session Expiration
════════════════════════
𐀪 Author: Walter Moar
════════════════════════
ⴵ Time: Mon, 06 Apr 2026 11:01:01 GMT
════════════════════════
⌗ Tags: #infosec #cwe #cybersecurity #software_development #hacking
════════════════════════
𐀪 Author: Walter Moar
════════════════════════
ⴵ Time: Mon, 06 Apr 2026 11:01:01 GMT
════════════════════════
⌗ Tags: #infosec #cwe #cybersecurity #software_development #hacking
Medium
Understanding CWE-613: Insufficient Session Expiration
When a user logs into a web application, the server creates a session to track their authenticated state. This session is typically…
⤷ Title: $285 million stolen in 12 minutes. Through social engineering and patience.
════════════════════════
𐀪 Author: Stanislav Klevtsov
════════════════════════
ⴵ Time: Mon, 06 Apr 2026 12:06:35 GMT
════════════════════════
⌗ Tags: #cybersecurity #programming #cyber_security_awareness #infosec #cryptocurrency
════════════════════════
𐀪 Author: Stanislav Klevtsov
════════════════════════
ⴵ Time: Mon, 06 Apr 2026 12:06:35 GMT
════════════════════════
⌗ Tags: #cybersecurity #programming #cyber_security_awareness #infosec #cryptocurrency
Medium
$285 million stolen in 12 minutes. Through social engineering and patience.
Solana-based decentralized exchange Drift has confirmed that attackers drained about $285 million from the platform during a security…
⤷ Title: If I Were an Attacker: Breaking Session Management Systems
════════════════════════
𐀪 Author: Mukut | Real-World Cybersecurity
════════════════════════
ⴵ Time: Mon, 06 Apr 2026 11:46:01 GMT
════════════════════════
⌗ Tags: #infosec #cybersecurity #web_security #ethical_hacking #penetration_testing
════════════════════════
𐀪 Author: Mukut | Real-World Cybersecurity
════════════════════════
ⴵ Time: Mon, 06 Apr 2026 11:46:01 GMT
════════════════════════
⌗ Tags: #infosec #cybersecurity #web_security #ethical_hacking #penetration_testing
Medium
If I Were an Attacker: Breaking Session Management Systems
After authentication succeeds, a system needs a way to remember the user.
⤷ Title: Why VAPT Testing is No Longer Optional for Businesses in 2026: A Deep Dive with Qualysec
════════════════════════
𐀪 Author: Sunil Qualysec
════════════════════════
ⴵ Time: Mon, 06 Apr 2026 12:39:25 GMT
════════════════════════
⌗ Tags: #cybersecurity #penetration_testing #vapt
════════════════════════
𐀪 Author: Sunil Qualysec
════════════════════════
ⴵ Time: Mon, 06 Apr 2026 12:39:25 GMT
════════════════════════
⌗ Tags: #cybersecurity #penetration_testing #vapt
Medium
Why VAPT Testing is No Longer Optional for Businesses in 2026: A Deep Dive with Qualysec
Why VAPT Testing is No Longer Optional for Businesses in 2026: A Deep Dive with Qualysec
In the rapidly evolving digital landscape of 2026…
In the rapidly evolving digital landscape of 2026…
⤷ Title: The Complete Penetration Testing Process: Step-by-Step Guide (Beginner to Pro)
════════════════════════
𐀪 Author: Tejas Kamble
════════════════════════
ⴵ Time: Mon, 06 Apr 2026 11:18:18 GMT
════════════════════════
⌗ Tags: #penetration_testing #cybersecurity #pentesting #process #ethical_hacking
════════════════════════
𐀪 Author: Tejas Kamble
════════════════════════
ⴵ Time: Mon, 06 Apr 2026 11:18:18 GMT
════════════════════════
⌗ Tags: #penetration_testing #cybersecurity #pentesting #process #ethical_hacking
Medium
The Complete Penetration Testing Process: Step-by-Step Guide (Beginner to Pro)
Imagine a hacker trying to break into your system right now. Would they succeed? … In today’s digital world, cyberattacks are not just…