⤷ Title: TryHackMe — Intro to Cross-site Scripting (Walkthrough)
════════════════════════
𐀪 Author: Hudson Lois Marcus
════════════════════════
ⴵ Time: Tue, 07 Apr 2026 03:34:00 GMT
════════════════════════
⌗ Tags: #cross_site_scripting #tryhackme_writeup #tryhackme_walkthrough #xss_attack #tryhackme
════════════════════════
𐀪 Author: Hudson Lois Marcus
════════════════════════
ⴵ Time: Tue, 07 Apr 2026 03:34:00 GMT
════════════════════════
⌗ Tags: #cross_site_scripting #tryhackme_writeup #tryhackme_walkthrough #xss_attack #tryhackme
Medium
TryHackMe — Intro to Cross-site Scripting (Walkthrough)
In this room, we will learn about what Cross-site Scripting (XSS) is, the various types of it, how to create and modify our XSS payloads…
⤷ Title: Flowise AI Agent Builder Under Active CVSS 10.0 RCE Exploitation; 12,000+ Instances Exposed
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Tue, 07 Apr 2026 11:26:00 +0530
════════════════════════
⌗ Tags: No_Tags
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Tue, 07 Apr 2026 11:26:00 +0530
════════════════════════
⌗ Tags: No_Tags
⤷ Title: The Unkillable Spy: How “Operation NoVoice” Rootkits Hijack Androids and Clone WhatsApp
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 07 Apr 2026 06:35:29 +0000
════════════════════════
⌗ Tags: #Malware #Android Rootkit #Android security #cybersecurity #Factory Reset Survival #Google Play Malware #infosec #McAfee Mobile Research #mobile security #Operation NoVoice #Root Exploits #Session Cloning #WhatsApp Hijack
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 07 Apr 2026 06:35:29 +0000
════════════════════════
⌗ Tags: #Malware #Android Rootkit #Android security #cybersecurity #Factory Reset Survival #Google Play Malware #infosec #McAfee Mobile Research #mobile security #Operation NoVoice #Root Exploits #Session Cloning #WhatsApp Hijack
Daily CyberSecurity
The Unkillable Spy: How "Operation NoVoice" Rootkits Hijack Androids and Clone WhatsApp
McAfee unmasks Operation NoVoice: a sophisticated Android rootkit that survives factory resets to clone WhatsApp sessions and seize full device control.
⤷ Title: From Manual Testing to Automation: Burp Suite + OpenCode Setup
════════════════════════
𐀪 Author: m1scher
════════════════════════
ⴵ Time: Tue, 07 Apr 2026 06:27:56 GMT
════════════════════════
⌗ Tags: #bug_bounty #pentesting #application_security #ai #bug_bounty_tips
════════════════════════
𐀪 Author: m1scher
════════════════════════
ⴵ Time: Tue, 07 Apr 2026 06:27:56 GMT
════════════════════════
⌗ Tags: #bug_bounty #pentesting #application_security #ai #bug_bounty_tips
Medium
From Manual Testing to Automation: Burp Suite + OpenCode Setup
Introduction
⤷ Title: BlackField | HTB | Hard | OSCP Preparation
════════════════════════
𐀪 Author: SilentExploit
════════════════════════
ⴵ Time: Tue, 07 Apr 2026 05:50:51 GMT
════════════════════════
⌗ Tags: #hackthebox #hacking #ethical_hacking #bug_bounty_tips #bug_bounty
════════════════════════
𐀪 Author: SilentExploit
════════════════════════
ⴵ Time: Tue, 07 Apr 2026 05:50:51 GMT
════════════════════════
⌗ Tags: #hackthebox #hacking #ethical_hacking #bug_bounty_tips #bug_bounty
Medium
BlackField | HTB | Hard | OSCP Preparation
Firstly, export the machine’s IP as a variable. This means we don’t have to keep typing the IP of the target.
⤷ Title: Linktree’s Entire Mobile Infrastructure Exposed — Hardcoded Secrets in strings.xml
════════════════════════
𐀪 Author: Aditya Sunny
════════════════════════
ⴵ Time: Tue, 07 Apr 2026 05:27:07 GMT
════════════════════════
⌗ Tags: #cybersecurity #infosec #bug_bounty #ethical_hacking
════════════════════════
𐀪 Author: Aditya Sunny
════════════════════════
ⴵ Time: Tue, 07 Apr 2026 05:27:07 GMT
════════════════════════
⌗ Tags: #cybersecurity #infosec #bug_bounty #ethical_hacking
Medium
💣 Linktree’s Entire Mobile Infrastructure Exposed — Hardcoded Secrets in strings.xml
Author: Aditya Sunny | Follow on LinkedIn: @adityasunny06
⤷ Title: Hooking iOS Apps with Frida
════════════════════════
𐀪 Author: Redfox Security
════════════════════════
ⴵ Time: Tue, 07 Apr 2026 06:46:08 GMT
════════════════════════
⌗ Tags: #mobile_security #application_security #ios #reverse_engineering #ethical_hacking
════════════════════════
𐀪 Author: Redfox Security
════════════════════════
ⴵ Time: Tue, 07 Apr 2026 06:46:08 GMT
════════════════════════
⌗ Tags: #mobile_security #application_security #ios #reverse_engineering #ethical_hacking
Medium
Hooking iOS Apps with Frida
Mobile applications handle a large amount of sensitive information including authentication tokens, personal data, and financial…
⤷ Title: SQL Injection Vulnerability: Login Bypass via Username Manipulation (Portswigger)
════════════════════════
𐀪 Author: Shayaan Khan
════════════════════════
ⴵ Time: Tue, 07 Apr 2026 06:38:26 GMT
════════════════════════
⌗ Tags: #coding #hacking #programming #ethical_hacking #cybersecurity
════════════════════════
𐀪 Author: Shayaan Khan
════════════════════════
ⴵ Time: Tue, 07 Apr 2026 06:38:26 GMT
════════════════════════
⌗ Tags: #coding #hacking #programming #ethical_hacking #cybersecurity
Medium
SQL Injection Vulnerability: Login Bypass via Username Manipulation (Portswigger)
SQL Injection Vulnerability: Login Bypass via Username Manipulation (Portswigger) Introduction SQL Injection remains one of the most critical and widely exploited vulnerabilities in web applications …
⤷ Title: Browser Security — Clear Cookies & Block Trackers
════════════════════════
𐀪 Author: ASRBD | Cybersecurity Bangladesh
════════════════════════
ⴵ Time: Tue, 07 Apr 2026 05:41:42 GMT
════════════════════════
⌗ Tags: #hacking #asrbd #cyber_security_awareness #browser_security
════════════════════════
𐀪 Author: ASRBD | Cybersecurity Bangladesh
════════════════════════
ⴵ Time: Tue, 07 Apr 2026 05:41:42 GMT
════════════════════════
⌗ Tags: #hacking #asrbd #cyber_security_awareness #browser_security
Medium
Browser Security — Clear Cookies & Block Trackers
Your browser knows more about you than your closest friend… and hackers love that.
⤷ Title: My first real-world pentest, and the moment it all clicked.
════════════════════════
𐀪 Author: ShadowForge
════════════════════════
ⴵ Time: Tue, 07 Apr 2026 05:37:20 GMT
════════════════════════
⌗ Tags: #cybersecurity #hacking #vulnerability #pentesting
════════════════════════
𐀪 Author: ShadowForge
════════════════════════
ⴵ Time: Tue, 07 Apr 2026 05:37:20 GMT
════════════════════════
⌗ Tags: #cybersecurity #hacking #vulnerability #pentesting
Medium
My first real-world pentest, and the moment it all clicked.
This isn’t a technical deep dive or a tutorial — it’s the story of how I went from passing exams to testing a live website for an actual…
⤷ Title: From Backlogs to Breakthrough: My Journey into Cybersecurity & Interview Preparation — Part 1
════════════════════════
𐀪 Author: ExploitHunter
════════════════════════
ⴵ Time: Tue, 07 Apr 2026 06:21:40 GMT
════════════════════════
⌗ Tags: #infosec #information_security #cybersecurity #web_development #ethical_hacking
════════════════════════
𐀪 Author: ExploitHunter
════════════════════════
ⴵ Time: Tue, 07 Apr 2026 06:21:40 GMT
════════════════════════
⌗ Tags: #infosec #information_security #cybersecurity #web_development #ethical_hacking
Medium
🔐 From Backlogs to Breakthrough: My Journey into Cybersecurity & Interview Preparation — Part 1
Starting a career in cybersecurity isn’t always a straight path.
⤷ Title: TryHackMe CSRF Introduction Write up
════════════════════════
𐀪 Author: ayed djalil
════════════════════════
ⴵ Time: Tue, 07 Apr 2026 06:28:22 GMT
════════════════════════
⌗ Tags: #tryhackme_walkthrough #tryhackme #csrf
════════════════════════
𐀪 Author: ayed djalil
════════════════════════
ⴵ Time: Tue, 07 Apr 2026 06:28:22 GMT
════════════════════════
⌗ Tags: #tryhackme_walkthrough #tryhackme #csrf
Medium
TryHackMe CSRF Introduction Write up
🥖 Room link: https://tryhackme.com/room/csrfintroduction
⤷ Title: Tryhackme Walkthrough: Boogeyman 3
════════════════════════
𐀪 Author: san
════════════════════════
ⴵ Time: Tue, 07 Apr 2026 06:22:52 GMT
════════════════════════
⌗ Tags: #cybersecurity #tryhackme #tryhackme_writeup #tryhackme_walkthrough #boogeyman3
════════════════════════
𐀪 Author: san
════════════════════════
ⴵ Time: Tue, 07 Apr 2026 06:22:52 GMT
════════════════════════
⌗ Tags: #cybersecurity #tryhackme #tryhackme_writeup #tryhackme_walkthrough #boogeyman3
Medium
Tryhackme Walkthrough: Boogeyman 3
summary
⤷ Title: How to Turn One Forgotten Subdomain Into Full Access
════════════════════════
𐀪 Author: Fateyaly
════════════════════════
ⴵ Time: Tue, 07 Apr 2026 05:58:10 GMT
════════════════════════
⌗ Tags: #ethical_hacking #technology #coding #programming #cybersecurity
════════════════════════
𐀪 Author: Fateyaly
════════════════════════
ⴵ Time: Tue, 07 Apr 2026 05:58:10 GMT
════════════════════════
⌗ Tags: #ethical_hacking #technology #coding #programming #cybersecurity
⤷ Title: Grok’s Struggles
════════════════════════
𐀪 Author: Mitsuaki Matsuoka (松岡光昭)
════════════════════════
ⴵ Time: Tue, 07 Apr 2026 06:29:50 GMT
════════════════════════
⌗ Tags: #xs #grok #ai #xai #grok_ai
════════════════════════
𐀪 Author: Mitsuaki Matsuoka (松岡光昭)
════════════════════════
ⴵ Time: Tue, 07 Apr 2026 06:29:50 GMT
════════════════════════
⌗ Tags: #xs #grok #ai #xai #grok_ai
Medium
Grok’s Struggles
Hello, I am Grok.
⤷ Title: China-Linked Storm-1175 Exploits Zero-Days to Rapidly Deploy Medusa Ransomware
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Tue, 07 Apr 2026 12:05:00 +0530
════════════════════════
⌗ Tags: No_Tags
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Tue, 07 Apr 2026 12:05:00 +0530
════════════════════════
⌗ Tags: No_Tags
⤷ Title: MFASweep: checking if MFA is enabled on multiple Microsoft Services
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 07 Apr 2026 08:25:36 +0000
════════════════════════
⌗ Tags: #Open Source Tool #MFASweep #Microsoft services
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 07 Apr 2026 08:25:36 +0000
════════════════════════
⌗ Tags: #Open Source Tool #MFASweep #Microsoft services
Penetration Testing Tools
MFASweep: checking if MFA is enabled on multiple Microsoft Services
MFASweep is a PowerShell script that attempts to log in to various Microsoft services using a provided set of credentials
⤷ Title: Zero-Day Chaos: The “BlueHammer” Leak and Microsoft’s High-Stakes Privilege Escalation Crisis
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 07 Apr 2026 07:54:52 +0000
════════════════════════
⌗ Tags: #Vulnerability #BlueHammer #Chaotic Eclipse #GitHub Leak #InfoSec 2026 #LPE #Microsoft Security #Nightmare_Eclipse #privilege escalation #SAM Database #TOCTOU #Windows Zero_Day
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 07 Apr 2026 07:54:52 +0000
════════════════════════
⌗ Tags: #Vulnerability #BlueHammer #Chaotic Eclipse #GitHub Leak #InfoSec 2026 #LPE #Microsoft Security #Nightmare_Eclipse #privilege escalation #SAM Database #TOCTOU #Windows Zero_Day
Penetration Testing Tools
Zero-Day Chaos: The "BlueHammer" Leak and Microsoft’s High-Stakes Privilege Escalation Crisis
The unauthorized disclosure of functional code for a nascent Windows vulnerability has presented Microsoft with a formidable new
⤷ Title: The Gemini Trap: How a Fake AI Token Checker Stealthily Hijacks Developer Workstations
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 07 Apr 2026 07:52:30 +0000
════════════════════════
⌗ Tags: #Malware #Anthropic #Contagious Interview #Cursor AI #Cybersecurity 2026 #Developer Security #gemini_ai_checker #North Korea #NPM Malware #OtterCookie #supply chain attack #Windsurf
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 07 Apr 2026 07:52:30 +0000
════════════════════════
⌗ Tags: #Malware #Anthropic #Contagious Interview #Cursor AI #Cybersecurity 2026 #Developer Security #gemini_ai_checker #North Korea #NPM Malware #OtterCookie #supply chain attack #Windsurf
Penetration Testing Tools
The Gemini Trap: How a Fake AI Token Checker Stealthily Hijacks Developer Workstations
An ostensibly innocuous package for validating Google Gemini tokens manifested within the npm repository, yet beneath its rudimentary
⤷ Title: The “EvilTokens” Surge: Why Device Code Phishing Exploded 37-Fold in 2026
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 07 Apr 2026 07:46:02 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Account Takeover #Cybersecurity 2026 #Device Code Phishing #EvilTokens #Infosec #Microsoft 365 #OAuth 2.0 #Phishing_as_a_Service #Push Security #Token Theft
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 07 Apr 2026 07:46:02 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Account Takeover #Cybersecurity 2026 #Device Code Phishing #EvilTokens #Infosec #Microsoft 365 #OAuth 2.0 #Phishing_as_a_Service #Push Security #Token Theft
Penetration Testing Tools
The "EvilTokens" Surge: Why Device Code Phishing Exploded 37-Fold in 2026
The architecture of account exploitation is undergoing a profound metamorphosis, as adversaries increasingly eschew traditional subversion in favor
⤷ Title: Cultural Crisis: How the Vivaticket Ransomware Attack Paralyzed the Louvre and 3,500 European Landmarks
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 07 Apr 2026 07:43:03 +0000
════════════════════════
⌗ Tags: #Malware #ANSSI #Cybersecurity 2026 #data breach #Eiffel Tower #France #Irec SAS #Louvre #Museum Security #RansomHouse #ransomware #third_party risk #Vivaticket
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 07 Apr 2026 07:43:03 +0000
════════════════════════
⌗ Tags: #Malware #ANSSI #Cybersecurity 2026 #data breach #Eiffel Tower #France #Irec SAS #Louvre #Museum Security #RansomHouse #ransomware #third_party risk #Vivaticket
Penetration Testing Tools
Cultural Crisis: How the Vivaticket Ransomware Attack Paralyzed the Louvre and 3,500 European Landmarks
The March incursion targeting the Vivaticket ticketing platform did not merely strike a solitary enterprise, but rather convulsed