⤷ Title: Encryption Bypasses and Kubernetes Token Leaks Hit Apache Tomcat
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 13 Apr 2026 01:00:46 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #apache Tomcat #CVE_2026_29146 #CVE_2026_34486 #Encryption Bypass #infosec #Java security #Kubernetes Security #request smuggling #vulnerability management #web server
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 13 Apr 2026 01:00:46 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #apache Tomcat #CVE_2026_29146 #CVE_2026_34486 #Encryption Bypass #infosec #Java security #Kubernetes Security #request smuggling #vulnerability management #web server
Daily CyberSecurity
Encryption Bypasses and Kubernetes Token Leaks Hit Apache Tomcat
Apache Tomcat discloses 10 vulnerabilities including encryption bypasses and Kubernetes token leaks. Upgrade now to secure your Java-based web applications.
⤷ Title: Authentication Bypass — How Attackers Become Anyone
════════════════════════
𐀪 Author: ghostyjoe
════════════════════════
ⴵ Time: Mon, 13 Apr 2026 02:40:54 GMT
════════════════════════
⌗ Tags: #linux #cybersecurity #bug_bounty #hacking #security
════════════════════════
𐀪 Author: ghostyjoe
════════════════════════
ⴵ Time: Mon, 13 Apr 2026 02:40:54 GMT
════════════════════════
⌗ Tags: #linux #cybersecurity #bug_bounty #hacking #security
Medium
🔐 Authentication Bypass — How Attackers Become Anyone
✍️ Introduction
⤷ Title: My Bug Bounty Journey #10: Start Your Bug Bounty Journey Today
════════════════════════
𐀪 Author: awchjimmy
════════════════════════
ⴵ Time: Mon, 13 Apr 2026 02:06:25 GMT
════════════════════════
⌗ Tags: #web_development #bug_bounty #cybersecurity
════════════════════════
𐀪 Author: awchjimmy
════════════════════════
ⴵ Time: Mon, 13 Apr 2026 02:06:25 GMT
════════════════════════
⌗ Tags: #web_development #bug_bounty #cybersecurity
Medium
My Bug Bounty Journey #10: Start Your Bug Bounty Journey Today
The End
⤷ Title: Cool Open Redirect With Bypass
════════════════════════
𐀪 Author: pm
════════════════════════
ⴵ Time: Mon, 13 Apr 2026 01:50:35 GMT
════════════════════════
⌗ Tags: #bug_bounty_writeup #hacking #bug_bounty #hackerone
════════════════════════
𐀪 Author: pm
════════════════════════
ⴵ Time: Mon, 13 Apr 2026 01:50:35 GMT
════════════════════════
⌗ Tags: #bug_bounty_writeup #hacking #bug_bounty #hackerone
Medium
Cool Open Redirect With Bypass
Hey Guys,
⤷ Title: Blind SQL injection with conditional errors
════════════════════════
𐀪 Author: Mohamed Ahmed
════════════════════════
ⴵ Time: Mon, 13 Apr 2026 01:28:31 GMT
════════════════════════
⌗ Tags: #sql_injection #cybersecurity #amazon_web_services #portswigger #bug_bounty
════════════════════════
𐀪 Author: Mohamed Ahmed
════════════════════════
ⴵ Time: Mon, 13 Apr 2026 01:28:31 GMT
════════════════════════
⌗ Tags: #sql_injection #cybersecurity #amazon_web_services #portswigger #bug_bounty
Medium
Blind SQL injection with conditional errors
Lab Description (Enhanced)
⤷ Title: ⚙️ 09. — Insecure Direct Object References (IDOR)
════════════════════════
𐀪 Author: The4v1
════════════════════════
ⴵ Time: Mon, 13 Apr 2026 00:52:50 GMT
════════════════════════
⌗ Tags: #portswigger #bug_bounty #web_security #cybersecurity
════════════════════════
𐀪 Author: The4v1
════════════════════════
ⴵ Time: Mon, 13 Apr 2026 00:52:50 GMT
════════════════════════
⌗ Tags: #portswigger #bug_bounty #web_security #cybersecurity
Medium
⚙️ 09. — Insecure Direct Object References (IDOR)
⚙️ 09. — Insecure Direct Object References (IDOR) Difficulty: 🟢 Apprentice Goal: 💬 Go to Live chat — send any message — click “View transcript” — observe the download URL …
⤷ Title: ⚙️ 08. — User ID controlled by request parameter with password disclosure
════════════════════════
𐀪 Author: The4v1
════════════════════════
ⴵ Time: Mon, 13 Apr 2026 00:50:20 GMT
════════════════════════
⌗ Tags: #web_security #bug_bounty #cybersecurity #portswigger
════════════════════════
𐀪 Author: The4v1
════════════════════════
ⴵ Time: Mon, 13 Apr 2026 00:50:20 GMT
════════════════════════
⌗ Tags: #web_security #bug_bounty #cybersecurity #portswigger
Medium
⚙️ 08. — User ID controlled by request parameter with password disclosure
⚙️ 08. — User ID controlled by request parameter with password disclosure Difficulty: 🟢 Apprentice Goal: 🔍 Log in as wiener / peter — go to My account — observe the URL is ?id=wiener …
⤷ Title: The Illusion of Security: End to end compromise of a Banking App
════════════════════════
𐀪 Author: Mr_Curiosity
════════════════════════
ⴵ Time: Sun, 12 Apr 2026 23:48:54 GMT
════════════════════════
⌗ Tags: #penetration_testing #cybersecurity #cryptography #hacking #banking_security
════════════════════════
𐀪 Author: Mr_Curiosity
════════════════════════
ⴵ Time: Sun, 12 Apr 2026 23:48:54 GMT
════════════════════════
⌗ Tags: #penetration_testing #cybersecurity #cryptography #hacking #banking_security
Medium
The Illusion of Security: End to end compromise of a Production Banking App
Attack Flow Diagram
⤷ Title: The Artifacts of Presence: Advanced Metadata Analysis
════════════════════════
𐀪 Author: Aeon Flex, Elriel Assoc. 2133 [NEON MAXIMA]
════════════════════════
ⴵ Time: Mon, 13 Apr 2026 01:13:02 GMT
════════════════════════
⌗ Tags: #osint #technology #data_visualization #metadata #infosec
════════════════════════
𐀪 Author: Aeon Flex, Elriel Assoc. 2133 [NEON MAXIMA]
════════════════════════
ⴵ Time: Mon, 13 Apr 2026 01:13:02 GMT
════════════════════════
⌗ Tags: #osint #technology #data_visualization #metadata #infosec
Medium
The Artifacts of Presence: Advanced Metadata Analysis
The room is empty, but the space is still occupied.
⤷ Title: LazyAdmin | TryHackMe Walkthrough
════════════════════════
𐀪 Author: Robert Gooding
════════════════════════
ⴵ Time: Mon, 13 Apr 2026 01:38:37 GMT
════════════════════════
⌗ Tags: #ctf #tryhackme #tryhackme_walkthrough #cybersecurity
════════════════════════
𐀪 Author: Robert Gooding
════════════════════════
ⴵ Time: Mon, 13 Apr 2026 01:38:37 GMT
════════════════════════
⌗ Tags: #ctf #tryhackme #tryhackme_walkthrough #cybersecurity
Medium
LazyAdmin | TryHackMe Walkthrough
TryHackMe: LazyAdmin Writeup
⤷ Title: Supply Chain Alert: Critical 9.4 CVSS RCE Hits Sonatype Nexus Repository Manager
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 13 Apr 2026 03:35:43 +0000
════════════════════════
⌗ Tags: #Vulnerability #DevOps Security #infosec #Nexus Repo 3 #Nexus Repository #rce #Remote Code Execution #Sonatype #Supply Chain Security #vulnerability management
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 13 Apr 2026 03:35:43 +0000
════════════════════════
⌗ Tags: #Vulnerability #DevOps Security #infosec #Nexus Repo 3 #Nexus Repository #rce #Remote Code Execution #Sonatype #Supply Chain Security #vulnerability management
Daily CyberSecurity
Supply Chain Alert: Critical 9.4 CVSS RCE Hits Sonatype Nexus Repository Manager
Sonatype patches a critical 9.4 CVSS RCE in Nexus Repository 3 (CVE-2026-3199). Secure your supply chain—upgrade to version 3.91.0 immediately!
⤷ Title: Under 10 Hours: The marimo Terminal RCE Exploited in a Record-Breaking AI Sprint
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 13 Apr 2026 03:26:15 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #AI Exploitation #CVE_2026_39987 #cybersecurity #infosec #Marimo #Python #rce #Sysdig #threat intelligence #WebSocket Security
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 13 Apr 2026 03:26:15 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #AI Exploitation #CVE_2026_39987 #cybersecurity #infosec #Marimo #Python #rce #Sysdig #threat intelligence #WebSocket Security
Daily CyberSecurity
Under 10 Hours: The marimo Terminal RCE Exploited in a Record-Breaking AI Sprint
Unauthenticated RCE in marimo (CVE-2026-39987) exploited in the wild in record time. Attackers gained root access in under 10 hours. Patch to v0.23.0 now!
⤷ Title: Bug Bounty Hunting — Ethical Hacking for Profit
════════════════════════
𐀪 Author: ASRBD | Cybersecurity Bangladesh
════════════════════════
ⴵ Time: Mon, 13 Apr 2026 04:50:21 GMT
════════════════════════
⌗ Tags: #cybersecurity #bug_bounty #asrbd #ethical_hacking
════════════════════════
𐀪 Author: ASRBD | Cybersecurity Bangladesh
════════════════════════
ⴵ Time: Mon, 13 Apr 2026 04:50:21 GMT
════════════════════════
⌗ Tags: #cybersecurity #bug_bounty #asrbd #ethical_hacking
Medium
Bug Bounty Hunting — Ethical Hacking for Profit
What if hacking could be legal, respected, and even highly profitable?
⤷ Title: Waybackurls + GAU Purane Endpoints Se Bugs Nikalo: Internet Archive Ka Hacking! (Hinglish Mein)
════════════════════════
𐀪 Author: Hacker MD
════════════════════════
ⴵ Time: Mon, 13 Apr 2026 04:31:01 GMT
════════════════════════
⌗ Tags: #usga #ethical_hacking #waybackurls #urlmining #bug_bounty
════════════════════════
𐀪 Author: Hacker MD
════════════════════════
ⴵ Time: Mon, 13 Apr 2026 04:31:01 GMT
════════════════════════
⌗ Tags: #usga #ethical_hacking #waybackurls #urlmining #bug_bounty
Medium
Waybackurls + GAU Purane Endpoints Se Bugs Nikalo: Internet Archive Ka Hacking! (Hinglish Mein)
Series: Bug Bounty Zero se Hero 🦸 | Article #12 By HackerMD | 16 min read
⤷ Title: Breaking the Sandbox Boundary: Writing to Replit’s External Supervisor Config From Unprivileged…
════════════════════════
𐀪 Author: Vashu Vats
════════════════════════
ⴵ Time: Mon, 13 Apr 2026 03:39:58 GMT
════════════════════════
⌗ Tags: #cybersecurity #technology #programming #bug_bounty #linux
════════════════════════
𐀪 Author: Vashu Vats
════════════════════════
ⴵ Time: Mon, 13 Apr 2026 03:39:58 GMT
════════════════════════
⌗ Tags: #cybersecurity #technology #programming #bug_bounty #linux
Medium
Breaking the Sandbox Boundary: Writing to Replit’s External Supervisor Config From Unprivileged…
A sandboxed process could write to a supervisor-owned config file and Linux’s inotify revealed the system was watching it live. Every write…
⤷ Title: I Got Tired of Bug Bounty Platforms Reading My Reports — So I Built something different
════════════════════════
𐀪 Author: Ace Candelario
════════════════════════
ⴵ Time: Mon, 13 Apr 2026 03:34:09 GMT
════════════════════════
⌗ Tags: #bug_bounty #open_source #infosec #cybersecurity #privacy
════════════════════════
𐀪 Author: Ace Candelario
════════════════════════
ⴵ Time: Mon, 13 Apr 2026 03:34:09 GMT
════════════════════════
⌗ Tags: #bug_bounty #open_source #infosec #cybersecurity #privacy
Medium
I Got Tired of Bug Bounty Platforms Reading My Reports — So I Built something different
A few months ago I was writing up a solid vuln report for a private program. Nothing crazy, but decent impact.
⤷ Title: Google Dorks Google Ko Bana Do Apna Hacking Tool: Free Mein Bugs Dhundho! (Hinglish Mein)
════════════════════════
𐀪 Author: Hacker MD
════════════════════════
ⴵ Time: Mon, 13 Apr 2026 03:31:01 GMT
════════════════════════
⌗ Tags: #bug_bounty #penetration_testing #githubdorking #google_dork #ethical_hacking
════════════════════════
𐀪 Author: Hacker MD
════════════════════════
ⴵ Time: Mon, 13 Apr 2026 03:31:01 GMT
════════════════════════
⌗ Tags: #bug_bounty #penetration_testing #githubdorking #google_dork #ethical_hacking
Medium
Google Dorks Google Ko Bana Do Apna Hacking Tool: Free Mein Bugs Dhundho! (Hinglish Mein)
Series: Bug Bounty Zero se Hero 🦸 | Article #11 By HackerMD | 17 min read
⤷ Title: Mengenal Ethical Hacking: Mengubah Hobi “Ngoprek” Menjadi Karier Profesional Melalui Pendidikan…
════════════════════════
𐀪 Author: Trisofella
════════════════════════
ⴵ Time: Mon, 13 Apr 2026 03:53:39 GMT
════════════════════════
⌗ Tags: #hacking #cyber_security_awareness #pkbm_tsm
════════════════════════
𐀪 Author: Trisofella
════════════════════════
ⴵ Time: Mon, 13 Apr 2026 03:53:39 GMT
════════════════════════
⌗ Tags: #hacking #cyber_security_awareness #pkbm_tsm
Medium
Mengenal Ethical Hacking: Mengubah Hobi “Ngoprek” Menjadi Karier Profesional Melalui Pendidikan…
Dunia digital saat ini sedang krisis tenaga ahli keamanan siber. Sayangnya, banyak anak muda berbakat justru terjebak dalam aktivitas…
⤷ Title: IDS vs IPS:Intrusion Detection vs Prevention Systems
════════════════════════
𐀪 Author: ExploitHunter
════════════════════════
ⴵ Time: Mon, 13 Apr 2026 04:52:59 GMT
════════════════════════
⌗ Tags: #ethical_hacking #web_development #information_security #infosec #cybersecurity
════════════════════════
𐀪 Author: ExploitHunter
════════════════════════
ⴵ Time: Mon, 13 Apr 2026 04:52:59 GMT
════════════════════════
⌗ Tags: #ethical_hacking #web_development #information_security #infosec #cybersecurity
Medium
IDS vs IPS:Intrusion Detection vs Prevention Systems
CORE IDEA
⤷ Title: Baron Samedit [CVE-2021–3156] vulnerability exploit TryHackMe walkthrough
════════════════════════
𐀪 Author: Shree
════════════════════════
ⴵ Time: Mon, 13 Apr 2026 03:54:01 GMT
════════════════════════
⌗ Tags: #tryhackme_walkthrough #ctf #cybersecurity #tryhackme #cve
════════════════════════
𐀪 Author: Shree
════════════════════════
ⴵ Time: Mon, 13 Apr 2026 03:54:01 GMT
════════════════════════
⌗ Tags: #tryhackme_walkthrough #ctf #cybersecurity #tryhackme #cve
Medium
Baron Samedit [CVE-2021–3156] vulnerability exploit TryHackMe walkthrough
In January 2021, Qualys released a blog post detailing a terrifying new vulnerability in the Unix sudo program.
⤷ Title: Windows Hacking Report: Exploiting MS17–010 in TryHackMe Ice Lab
════════════════════════
𐀪 Author: Prabin Kumar Sethi
════════════════════════
ⴵ Time: Mon, 13 Apr 2026 04:48:28 GMT
════════════════════════
⌗ Tags: #tryhackme_writeup #tryhackme_ice_lab #ethical_hacking #windows
════════════════════════
𐀪 Author: Prabin Kumar Sethi
════════════════════════
ⴵ Time: Mon, 13 Apr 2026 04:48:28 GMT
════════════════════════
⌗ Tags: #tryhackme_writeup #tryhackme_ice_lab #ethical_hacking #windows
Medium
Windows Hacking Report: Exploiting MS17–010 in TryHackMe Ice Lab
This report demonstrates a practical Windows exploitation scenario performed on the TryHackMe Ice lab. It covers enumeration using Nmap…