⤷ Title: ⚙️ 09. — Insecure Direct Object References (IDOR)
════════════════════════
𐀪 Author: The4v1
════════════════════════
ⴵ Time: Mon, 13 Apr 2026 00:52:50 GMT
════════════════════════
⌗ Tags: #portswigger #bug_bounty #web_security #cybersecurity
════════════════════════
𐀪 Author: The4v1
════════════════════════
ⴵ Time: Mon, 13 Apr 2026 00:52:50 GMT
════════════════════════
⌗ Tags: #portswigger #bug_bounty #web_security #cybersecurity
Medium
⚙️ 09. — Insecure Direct Object References (IDOR)
⚙️ 09. — Insecure Direct Object References (IDOR) Difficulty: 🟢 Apprentice Goal: 💬 Go to Live chat — send any message — click “View transcript” — observe the download URL …
⤷ Title: ⚙️ 08. — User ID controlled by request parameter with password disclosure
════════════════════════
𐀪 Author: The4v1
════════════════════════
ⴵ Time: Mon, 13 Apr 2026 00:50:20 GMT
════════════════════════
⌗ Tags: #web_security #bug_bounty #cybersecurity #portswigger
════════════════════════
𐀪 Author: The4v1
════════════════════════
ⴵ Time: Mon, 13 Apr 2026 00:50:20 GMT
════════════════════════
⌗ Tags: #web_security #bug_bounty #cybersecurity #portswigger
Medium
⚙️ 08. — User ID controlled by request parameter with password disclosure
⚙️ 08. — User ID controlled by request parameter with password disclosure Difficulty: 🟢 Apprentice Goal: 🔍 Log in as wiener / peter — go to My account — observe the URL is ?id=wiener …
⤷ Title: The Illusion of Security: End to end compromise of a Banking App
════════════════════════
𐀪 Author: Mr_Curiosity
════════════════════════
ⴵ Time: Sun, 12 Apr 2026 23:48:54 GMT
════════════════════════
⌗ Tags: #penetration_testing #cybersecurity #cryptography #hacking #banking_security
════════════════════════
𐀪 Author: Mr_Curiosity
════════════════════════
ⴵ Time: Sun, 12 Apr 2026 23:48:54 GMT
════════════════════════
⌗ Tags: #penetration_testing #cybersecurity #cryptography #hacking #banking_security
Medium
The Illusion of Security: End to end compromise of a Production Banking App
Attack Flow Diagram
⤷ Title: The Artifacts of Presence: Advanced Metadata Analysis
════════════════════════
𐀪 Author: Aeon Flex, Elriel Assoc. 2133 [NEON MAXIMA]
════════════════════════
ⴵ Time: Mon, 13 Apr 2026 01:13:02 GMT
════════════════════════
⌗ Tags: #osint #technology #data_visualization #metadata #infosec
════════════════════════
𐀪 Author: Aeon Flex, Elriel Assoc. 2133 [NEON MAXIMA]
════════════════════════
ⴵ Time: Mon, 13 Apr 2026 01:13:02 GMT
════════════════════════
⌗ Tags: #osint #technology #data_visualization #metadata #infosec
Medium
The Artifacts of Presence: Advanced Metadata Analysis
The room is empty, but the space is still occupied.
⤷ Title: LazyAdmin | TryHackMe Walkthrough
════════════════════════
𐀪 Author: Robert Gooding
════════════════════════
ⴵ Time: Mon, 13 Apr 2026 01:38:37 GMT
════════════════════════
⌗ Tags: #ctf #tryhackme #tryhackme_walkthrough #cybersecurity
════════════════════════
𐀪 Author: Robert Gooding
════════════════════════
ⴵ Time: Mon, 13 Apr 2026 01:38:37 GMT
════════════════════════
⌗ Tags: #ctf #tryhackme #tryhackme_walkthrough #cybersecurity
Medium
LazyAdmin | TryHackMe Walkthrough
TryHackMe: LazyAdmin Writeup
⤷ Title: Supply Chain Alert: Critical 9.4 CVSS RCE Hits Sonatype Nexus Repository Manager
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 13 Apr 2026 03:35:43 +0000
════════════════════════
⌗ Tags: #Vulnerability #DevOps Security #infosec #Nexus Repo 3 #Nexus Repository #rce #Remote Code Execution #Sonatype #Supply Chain Security #vulnerability management
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 13 Apr 2026 03:35:43 +0000
════════════════════════
⌗ Tags: #Vulnerability #DevOps Security #infosec #Nexus Repo 3 #Nexus Repository #rce #Remote Code Execution #Sonatype #Supply Chain Security #vulnerability management
Daily CyberSecurity
Supply Chain Alert: Critical 9.4 CVSS RCE Hits Sonatype Nexus Repository Manager
Sonatype patches a critical 9.4 CVSS RCE in Nexus Repository 3 (CVE-2026-3199). Secure your supply chain—upgrade to version 3.91.0 immediately!
⤷ Title: Under 10 Hours: The marimo Terminal RCE Exploited in a Record-Breaking AI Sprint
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 13 Apr 2026 03:26:15 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #AI Exploitation #CVE_2026_39987 #cybersecurity #infosec #Marimo #Python #rce #Sysdig #threat intelligence #WebSocket Security
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 13 Apr 2026 03:26:15 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #AI Exploitation #CVE_2026_39987 #cybersecurity #infosec #Marimo #Python #rce #Sysdig #threat intelligence #WebSocket Security
Daily CyberSecurity
Under 10 Hours: The marimo Terminal RCE Exploited in a Record-Breaking AI Sprint
Unauthenticated RCE in marimo (CVE-2026-39987) exploited in the wild in record time. Attackers gained root access in under 10 hours. Patch to v0.23.0 now!
⤷ Title: Bug Bounty Hunting — Ethical Hacking for Profit
════════════════════════
𐀪 Author: ASRBD | Cybersecurity Bangladesh
════════════════════════
ⴵ Time: Mon, 13 Apr 2026 04:50:21 GMT
════════════════════════
⌗ Tags: #cybersecurity #bug_bounty #asrbd #ethical_hacking
════════════════════════
𐀪 Author: ASRBD | Cybersecurity Bangladesh
════════════════════════
ⴵ Time: Mon, 13 Apr 2026 04:50:21 GMT
════════════════════════
⌗ Tags: #cybersecurity #bug_bounty #asrbd #ethical_hacking
Medium
Bug Bounty Hunting — Ethical Hacking for Profit
What if hacking could be legal, respected, and even highly profitable?
⤷ Title: Waybackurls + GAU Purane Endpoints Se Bugs Nikalo: Internet Archive Ka Hacking! (Hinglish Mein)
════════════════════════
𐀪 Author: Hacker MD
════════════════════════
ⴵ Time: Mon, 13 Apr 2026 04:31:01 GMT
════════════════════════
⌗ Tags: #usga #ethical_hacking #waybackurls #urlmining #bug_bounty
════════════════════════
𐀪 Author: Hacker MD
════════════════════════
ⴵ Time: Mon, 13 Apr 2026 04:31:01 GMT
════════════════════════
⌗ Tags: #usga #ethical_hacking #waybackurls #urlmining #bug_bounty
Medium
Waybackurls + GAU Purane Endpoints Se Bugs Nikalo: Internet Archive Ka Hacking! (Hinglish Mein)
Series: Bug Bounty Zero se Hero 🦸 | Article #12 By HackerMD | 16 min read
⤷ Title: Breaking the Sandbox Boundary: Writing to Replit’s External Supervisor Config From Unprivileged…
════════════════════════
𐀪 Author: Vashu Vats
════════════════════════
ⴵ Time: Mon, 13 Apr 2026 03:39:58 GMT
════════════════════════
⌗ Tags: #cybersecurity #technology #programming #bug_bounty #linux
════════════════════════
𐀪 Author: Vashu Vats
════════════════════════
ⴵ Time: Mon, 13 Apr 2026 03:39:58 GMT
════════════════════════
⌗ Tags: #cybersecurity #technology #programming #bug_bounty #linux
Medium
Breaking the Sandbox Boundary: Writing to Replit’s External Supervisor Config From Unprivileged…
A sandboxed process could write to a supervisor-owned config file and Linux’s inotify revealed the system was watching it live. Every write…
⤷ Title: I Got Tired of Bug Bounty Platforms Reading My Reports — So I Built something different
════════════════════════
𐀪 Author: Ace Candelario
════════════════════════
ⴵ Time: Mon, 13 Apr 2026 03:34:09 GMT
════════════════════════
⌗ Tags: #bug_bounty #open_source #infosec #cybersecurity #privacy
════════════════════════
𐀪 Author: Ace Candelario
════════════════════════
ⴵ Time: Mon, 13 Apr 2026 03:34:09 GMT
════════════════════════
⌗ Tags: #bug_bounty #open_source #infosec #cybersecurity #privacy
Medium
I Got Tired of Bug Bounty Platforms Reading My Reports — So I Built something different
A few months ago I was writing up a solid vuln report for a private program. Nothing crazy, but decent impact.
⤷ Title: Google Dorks Google Ko Bana Do Apna Hacking Tool: Free Mein Bugs Dhundho! (Hinglish Mein)
════════════════════════
𐀪 Author: Hacker MD
════════════════════════
ⴵ Time: Mon, 13 Apr 2026 03:31:01 GMT
════════════════════════
⌗ Tags: #bug_bounty #penetration_testing #githubdorking #google_dork #ethical_hacking
════════════════════════
𐀪 Author: Hacker MD
════════════════════════
ⴵ Time: Mon, 13 Apr 2026 03:31:01 GMT
════════════════════════
⌗ Tags: #bug_bounty #penetration_testing #githubdorking #google_dork #ethical_hacking
Medium
Google Dorks Google Ko Bana Do Apna Hacking Tool: Free Mein Bugs Dhundho! (Hinglish Mein)
Series: Bug Bounty Zero se Hero 🦸 | Article #11 By HackerMD | 17 min read
⤷ Title: Mengenal Ethical Hacking: Mengubah Hobi “Ngoprek” Menjadi Karier Profesional Melalui Pendidikan…
════════════════════════
𐀪 Author: Trisofella
════════════════════════
ⴵ Time: Mon, 13 Apr 2026 03:53:39 GMT
════════════════════════
⌗ Tags: #hacking #cyber_security_awareness #pkbm_tsm
════════════════════════
𐀪 Author: Trisofella
════════════════════════
ⴵ Time: Mon, 13 Apr 2026 03:53:39 GMT
════════════════════════
⌗ Tags: #hacking #cyber_security_awareness #pkbm_tsm
Medium
Mengenal Ethical Hacking: Mengubah Hobi “Ngoprek” Menjadi Karier Profesional Melalui Pendidikan…
Dunia digital saat ini sedang krisis tenaga ahli keamanan siber. Sayangnya, banyak anak muda berbakat justru terjebak dalam aktivitas…
⤷ Title: IDS vs IPS:Intrusion Detection vs Prevention Systems
════════════════════════
𐀪 Author: ExploitHunter
════════════════════════
ⴵ Time: Mon, 13 Apr 2026 04:52:59 GMT
════════════════════════
⌗ Tags: #ethical_hacking #web_development #information_security #infosec #cybersecurity
════════════════════════
𐀪 Author: ExploitHunter
════════════════════════
ⴵ Time: Mon, 13 Apr 2026 04:52:59 GMT
════════════════════════
⌗ Tags: #ethical_hacking #web_development #information_security #infosec #cybersecurity
Medium
IDS vs IPS:Intrusion Detection vs Prevention Systems
CORE IDEA
⤷ Title: Baron Samedit [CVE-2021–3156] vulnerability exploit TryHackMe walkthrough
════════════════════════
𐀪 Author: Shree
════════════════════════
ⴵ Time: Mon, 13 Apr 2026 03:54:01 GMT
════════════════════════
⌗ Tags: #tryhackme_walkthrough #ctf #cybersecurity #tryhackme #cve
════════════════════════
𐀪 Author: Shree
════════════════════════
ⴵ Time: Mon, 13 Apr 2026 03:54:01 GMT
════════════════════════
⌗ Tags: #tryhackme_walkthrough #ctf #cybersecurity #tryhackme #cve
Medium
Baron Samedit [CVE-2021–3156] vulnerability exploit TryHackMe walkthrough
In January 2021, Qualys released a blog post detailing a terrifying new vulnerability in the Unix sudo program.
⤷ Title: Windows Hacking Report: Exploiting MS17–010 in TryHackMe Ice Lab
════════════════════════
𐀪 Author: Prabin Kumar Sethi
════════════════════════
ⴵ Time: Mon, 13 Apr 2026 04:48:28 GMT
════════════════════════
⌗ Tags: #tryhackme_writeup #tryhackme_ice_lab #ethical_hacking #windows
════════════════════════
𐀪 Author: Prabin Kumar Sethi
════════════════════════
ⴵ Time: Mon, 13 Apr 2026 04:48:28 GMT
════════════════════════
⌗ Tags: #tryhackme_writeup #tryhackme_ice_lab #ethical_hacking #windows
Medium
Windows Hacking Report: Exploiting MS17–010 in TryHackMe Ice Lab
This report demonstrates a practical Windows exploitation scenario performed on the TryHackMe Ice lab. It covers enumeration using Nmap…
⤷ Title: LucidRook: Sophisticated Spear-Phishing Campaign Targets Taiwan with Custom Malware Stack
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 13 Apr 2026 06:13:33 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Malware #Cisco Talos #Gmail Exfiltration #infosec #Lua Malware #LucidKnight #LucidPawn #LucidRook #Rust malware #Taiwan Cyber Attack #threat intelligence #UAT_10362
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 13 Apr 2026 06:13:33 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Malware #Cisco Talos #Gmail Exfiltration #infosec #Lua Malware #LucidKnight #LucidPawn #LucidRook #Rust malware #Taiwan Cyber Attack #threat intelligence #UAT_10362
Daily CyberSecurity
LucidRook: Sophisticated Spear-Phishing Campaign Targets Taiwan with Custom Malware Stack
Cisco Talos reveals UAT-10362’s "Lucid" malware family targeting Taiwan. Using Lua, Rust, and regional locks, this threat prioritizes extreme stealth.
⤷ Title: Bug Bounty Reporting Masterclass: Real Examples That Got Paid (Step-by-Step Guide)
════════════════════════
𐀪 Author: Very Lazy Tech
════════════════════════
ⴵ Time: Mon, 13 Apr 2026 06:47:02 GMT
════════════════════════
⌗ Tags: #hacking #penetration_testing #cybersecurity #bug_bounty #ethical_hacking
════════════════════════
𐀪 Author: Very Lazy Tech
════════════════════════
ⴵ Time: Mon, 13 Apr 2026 06:47:02 GMT
════════════════════════
⌗ Tags: #hacking #penetration_testing #cybersecurity #bug_bounty #ethical_hacking
Medium
Bug Bounty Reporting Masterclass: Real Examples That Got Paid (Step-by-Step Guide)
Ever wonder why some bug bounty reports get ignored while others land $10,000 payouts? Here’s a wild stat: less than 30% of submitted…
⤷ Title: GitHub Dorking for Bug Bounty — How Hackers Find Secrets in Minutes
════════════════════════
𐀪 Author: Pradeeptadi
════════════════════════
ⴵ Time: Mon, 13 Apr 2026 06:23:33 GMT
════════════════════════
⌗ Tags: #penetration_testing #bug_bounty_tips #cybersecurity #bug_bounty #ethical_hacking
════════════════════════
𐀪 Author: Pradeeptadi
════════════════════════
ⴵ Time: Mon, 13 Apr 2026 06:23:33 GMT
════════════════════════
⌗ Tags: #penetration_testing #bug_bounty_tips #cybersecurity #bug_bounty #ethical_hacking
Medium
🔍 GitHub Dorking for Bug Bounty — How Hackers Find Secrets in Minutes
🔍 GitHub Dorking for Bug Bounty — How Hackers Find Secrets in Minutes Most hackers focus only on websites. 👉 But one of the biggest leak sources is: 👉 GitHub Developers accidentally …
⤷ Title: From LinkedIn to Full Account Access in 10 Minutes
════════════════════════
𐀪 Author: Shrivarshan
════════════════════════
ⴵ Time: Mon, 13 Apr 2026 06:09:30 GMT
════════════════════════
⌗ Tags: #cybersecurity #security #ethical_hacking #pentesting #bug_bounty
════════════════════════
𐀪 Author: Shrivarshan
════════════════════════
ⴵ Time: Mon, 13 Apr 2026 06:09:30 GMT
════════════════════════
⌗ Tags: #cybersecurity #security #ethical_hacking #pentesting #bug_bounty
Medium
From LinkedIn to Full Account Access in 10 Minutes 💀
No password. No phishing. No brute force. Just an email… and a very confused MFA system.
⤷ Title: Double Trouble: Finding Both XSS and HTML Injection in an AI Chatbot
════════════════════════
𐀪 Author: Vanshrathore
════════════════════════
ⴵ Time: Mon, 13 Apr 2026 05:23:07 GMT
════════════════════════
⌗ Tags: #xss_attack #bug_hunting #bug_bounty_tips #bug_bounty #money
════════════════════════
𐀪 Author: Vanshrathore
════════════════════════
ⴵ Time: Mon, 13 Apr 2026 05:23:07 GMT
════════════════════════
⌗ Tags: #xss_attack #bug_hunting #bug_bounty_tips #bug_bounty #money
Medium
Double Trouble: Finding Both XSS and HTML Injection in an AI Chatbot
LinkedIn:- https://www.linkedin.com/in/vansh-rathore-cybersecurity?utm_source=share_via&utm_content=profile&utm_medium=member_android