⤷ Title: How I Earned the HTB CPTS (Certified Penetration Testing Specialist) — From Failure to 100 Points
════════════════════════
𐀪 Author: Aung Myint
════════════════════════
ⴵ Time: Tue, 14 Apr 2026 18:54:12 GMT
════════════════════════
⌗ Tags: #hackthebox #penetration_testing #cybersecurity #red_team #active_directory
════════════════════════
𐀪 Author: Aung Myint
════════════════════════
ⴵ Time: Tue, 14 Apr 2026 18:54:12 GMT
════════════════════════
⌗ Tags: #hackthebox #penetration_testing #cybersecurity #red_team #active_directory
Medium
How I Earned the HTB CPTS (Certified Penetration Testing Specialist) — From Failure to 100 Points
The HTB Certified Penetration Testing Specialist (CPTS) is one of the most realistic penetration testing certifications available today.
⤷ Title: UnIndexed CTF Notes | TryHackMe
════════════════════════
𐀪 Author: Sle3pyHead
════════════════════════
ⴵ Time: Tue, 14 Apr 2026 19:38:58 GMT
════════════════════════
⌗ Tags: #ctf_walkthrough #tryhackme_walkthrough #tryhackme #ctf_writeup #tryhackme_writeup
════════════════════════
𐀪 Author: Sle3pyHead
════════════════════════
ⴵ Time: Tue, 14 Apr 2026 19:38:58 GMT
════════════════════════
⌗ Tags: #ctf_walkthrough #tryhackme_walkthrough #tryhackme #ctf_writeup #tryhackme_writeup
Medium
UnIndexed CTF Notes | TryHackMe
UnIndexed challenge walkthrough exploring prompts and hidden information in AI
⤷ Title: I Thought I Found an SSH Bug… But It Taught Me Something Better
════════════════════════
𐀪 Author: Anuj Kumar
════════════════════════
ⴵ Time: Tue, 14 Apr 2026 19:49:14 GMT
════════════════════════
⌗ Tags: #cybersecurity #sshd #ethical_hacking #networking #linux
════════════════════════
𐀪 Author: Anuj Kumar
════════════════════════
ⴵ Time: Tue, 14 Apr 2026 19:49:14 GMT
════════════════════════
⌗ Tags: #cybersecurity #sshd #ethical_hacking #networking #linux
Medium
🚨 I Thought I Found an SSH Bug… But It Taught Me Something Better
I was sitting in my lab, running two virtual machines — Kali Linux and Ubuntu.
⤷ Title: How Digital Annotations Are Replacing Paper Markups in Business
════════════════════════
𐀪 Author: Owais Sultan
════════════════════════
ⴵ Time: Tue, 14 Apr 2026 21:01:56 +0000
════════════════════════
⌗ Tags: #Technology #Business #Fintech #Annotation
════════════════════════
𐀪 Author: Owais Sultan
════════════════════════
ⴵ Time: Tue, 14 Apr 2026 21:01:56 +0000
════════════════════════
⌗ Tags: #Technology #Business #Fintech #Annotation
Hackread
How Digital Annotations Are Replacing Paper Markups in Business
Digital Annotations replace paper markups in business, enabling real time collaboration, version control, and secure document workflows across teams
⤷ Title: Agent Smith: Obfuscating Shellcode via Matrix Transformation(s)
════════════════════════
𐀪 Author: Doob
════════════════════════
ⴵ Time: Tue, 14 Apr 2026 22:15:33 GMT
════════════════════════
⌗ Tags: #shellcode #obfuscation #hacking #mathematics #golang
════════════════════════
𐀪 Author: Doob
════════════════════════
ⴵ Time: Tue, 14 Apr 2026 22:15:33 GMT
════════════════════════
⌗ Tags: #shellcode #obfuscation #hacking #mathematics #golang
Medium
Agent Smith: Obfuscating Shellcode via Matrix Transformation(s)
In this write up, we explore a slightly different approach of obfuscation aside from the tried-and-true — XOR.
⤷ Title: Where Do We Store Encryption Keys (TPM, HSM, and Secure Enclave)?
════════════════════════
𐀪 Author: Mahdi
════════════════════════
ⴵ Time: Tue, 14 Apr 2026 22:00:57 GMT
════════════════════════
⌗ Tags: #programming #cybersecurity #cryptography #technology #infosec
════════════════════════
𐀪 Author: Mahdi
════════════════════════
ⴵ Time: Tue, 14 Apr 2026 22:00:57 GMT
════════════════════════
⌗ Tags: #programming #cybersecurity #cryptography #technology #infosec
Medium
Where Do We Store Encryption Keys (TPM, HSM, and Secure Enclave)?
In the last article, we talked about Kerckhoffs' Principle (Algorithms are known entities; the only thing unknown is the key). We know that…
⤷ Title: 13 Years in the Dark: How a Hidden ActiveMQ Flaw Turns Your Message Broker Into a Backdoor…
════════════════════════
𐀪 Author: Kerem
════════════════════════
ⴵ Time: Tue, 14 Apr 2026 21:28:29 GMT
════════════════════════
⌗ Tags: #apache_activemq #infosec #vulnerability_research #java #cybersecurity
════════════════════════
𐀪 Author: Kerem
════════════════════════
ⴵ Time: Tue, 14 Apr 2026 21:28:29 GMT
════════════════════════
⌗ Tags: #apache_activemq #infosec #vulnerability_research #java #cybersecurity
Medium
13 Years in the Dark: How a Hidden ActiveMQ Flaw Turns Your Message Broker Into a Backdoor…
Breaking down CVE-2026–34197: a remote code execution vulnerability in Apache ActiveMQ Classic that hid in the Jolokia API for over a…
⤷ Title: The Conversation the Security Industry Keeps Having Wrong
════════════════════════
𐀪 Author: Joshua Moses
════════════════════════
ⴵ Time: Tue, 14 Apr 2026 22:16:01 GMT
════════════════════════
⌗ Tags: #penetration_testing #cybersecurity #technology #money #business
════════════════════════
𐀪 Author: Joshua Moses
════════════════════════
ⴵ Time: Tue, 14 Apr 2026 22:16:01 GMT
════════════════════════
⌗ Tags: #penetration_testing #cybersecurity #technology #money #business
Medium
The Conversation the Security Industry Keeps Having Wrong
By Joshua Moses
⤷ Title: TryHackMe: Nmap Live Host Discovery
════════════════════════
𐀪 Author: Robert Perez
════════════════════════
ⴵ Time: Tue, 14 Apr 2026 21:41:02 GMT
════════════════════════
⌗ Tags: #networking #nmap #tryhackme #cybersecurity #penetration_testing
════════════════════════
𐀪 Author: Robert Perez
════════════════════════
ⴵ Time: Tue, 14 Apr 2026 21:41:02 GMT
════════════════════════
⌗ Tags: #networking #nmap #tryhackme #cybersecurity #penetration_testing
Medium
TryHackMe: Nmap Live Host Discovery
Why I Did This Lab
⤷ Title: TryHackMe: Introduction to SIEM
════════════════════════
𐀪 Author: Robert Perez
════════════════════════
ⴵ Time: Tue, 14 Apr 2026 21:34:54 GMT
════════════════════════
⌗ Tags: #tryhackme #blue_team #cybersecurity #soc #siem
════════════════════════
𐀪 Author: Robert Perez
════════════════════════
ⴵ Time: Tue, 14 Apr 2026 21:34:54 GMT
════════════════════════
⌗ Tags: #tryhackme #blue_team #cybersecurity #soc #siem
Medium
TryHackMe: Introduction to SIEM
Why I Did This Lab
⤷ Title: Reverse Engineering on CyberTalents: Solving All Easy Challenges Part 4
════════════════════════
𐀪 Author: Isv0x1
════════════════════════
ⴵ Time: Tue, 14 Apr 2026 23:01:38 GMT
════════════════════════
⌗ Tags: #ethical_hacking #cybersecurity #reverse_engineering #malware_development #software_development
════════════════════════
𐀪 Author: Isv0x1
════════════════════════
ⴵ Time: Tue, 14 Apr 2026 23:01:38 GMT
════════════════════════
⌗ Tags: #ethical_hacking #cybersecurity #reverse_engineering #malware_development #software_development
Medium
Reverse Engineering on CyberTalents: Solving All Easy Challenges Part 4
🚩Challenge 12 : (chall )
⤷ Title: Language-Specific File Upload Exploits and EXIF-Based Attacks
════════════════════════
𐀪 Author: Odiomonafe Jamal . A
════════════════════════
ⴵ Time: Tue, 14 Apr 2026 21:27:21 GMT
════════════════════════
⌗ Tags: #exif #rce #web_attack #file_upload_vulnerability #thm
════════════════════════
𐀪 Author: Odiomonafe Jamal . A
════════════════════════
ⴵ Time: Tue, 14 Apr 2026 21:27:21 GMT
════════════════════════
⌗ Tags: #exif #rce #web_attack #file_upload_vulnerability #thm
Medium
Language-Specific File Upload Exploits and EXIF-Based Attacks
Introduction
⤷ Title: OAuth Guide: Vulnerabilities, Attack Vectors, and Security
════════════════════════
𐀪 Author: JPablo13
════════════════════════
ⴵ Time: Wed, 15 Apr 2026 00:01:02 GMT
════════════════════════
⌗ Tags: #cybersecurity #web_development #technology #bug_bounty #hacking
════════════════════════
𐀪 Author: JPablo13
════════════════════════
ⴵ Time: Wed, 15 Apr 2026 00:01:02 GMT
════════════════════════
⌗ Tags: #cybersecurity #web_development #technology #bug_bounty #hacking
Medium
OAuth Guide: Vulnerabilities, Attack Vectors, and Security
Master OAuth: Learn about its vulnerabilities, critical attack vectors such as JKU and account takeover, and chaining strategies.
⤷ Title: Cmess — TryHackMe Walkthrough
════════════════════════
𐀪 Author: Abdallah_samir
════════════════════════
ⴵ Time: Wed, 15 Apr 2026 00:38:46 GMT
════════════════════════
⌗ Tags: #hacking #pentesting #cybersecurity #ctf #tryhackme
════════════════════════
𐀪 Author: Abdallah_samir
════════════════════════
ⴵ Time: Wed, 15 Apr 2026 00:38:46 GMT
════════════════════════
⌗ Tags: #hacking #pentesting #cybersecurity #ctf #tryhackme
Medium
Cmess — TryHackMe Walkthrough
Hosts File Configuration
⤷ Title: Why Anthropic’s Claude Mythos Is Not Fearmongering but a Force Reshaping Cybersecurity
════════════════════════
𐀪 Author: David SEHYEON Baek
════════════════════════
ⴵ Time: Wed, 15 Apr 2026 00:15:33 GMT
════════════════════════
⌗ Tags: #cybersecurity #ai #artificial_intelligence #hacking #anthropic_claude
════════════════════════
𐀪 Author: David SEHYEON Baek
════════════════════════
ⴵ Time: Wed, 15 Apr 2026 00:15:33 GMT
════════════════════════
⌗ Tags: #cybersecurity #ai #artificial_intelligence #hacking #anthropic_claude
Medium
Why Anthropic’s Claude Mythos Is Not Fearmongering but a Force Reshaping Cybersecurity
Why Anthropic’s Claude Mythos Is Not Fearmongering but a Force Reshaping Cybersecurity Claude has become the most consequential AI system in cybersecurity, simultaneously the best tool defenders …
⤷ Title: BlueHammer Isn’t a Defender Bug — It’s a Windows Design Flaw. Here’s the Real Fix.
════════════════════════
𐀪 Author: AndrewCharalambous
════════════════════════
ⴵ Time: Wed, 15 Apr 2026 00:31:08 GMT
════════════════════════
⌗ Tags: #infosec #cybersecurity #microsoft #windows #zero_day
════════════════════════
𐀪 Author: AndrewCharalambous
════════════════════════
ⴵ Time: Wed, 15 Apr 2026 00:31:08 GMT
════════════════════════
⌗ Tags: #infosec #cybersecurity #microsoft #windows #zero_day
Medium
BlueHammer Isn’t a Defender Bug — It’s a Windows Design Flaw. Here’s the Real Fix.
Why detection rules won’t save you, and what Microsoft should actually do.
⤷ Title: The Church of Malware Presents: The Most Braindead Python Botnet We’ve Ever Seen
════════════════════════
𐀪 Author: ekomsSavior
════════════════════════
ⴵ Time: Tue, 14 Apr 2026 23:40:21 GMT
════════════════════════
⌗ Tags: #python #cybersecurity #infosec #hacker #malware
════════════════════════
𐀪 Author: ekomsSavior
════════════════════════
ⴵ Time: Tue, 14 Apr 2026 23:40:21 GMT
════════════════════════
⌗ Tags: #python #cybersecurity #infosec #hacker #malware
Medium
The Church of Malware Presents: The Most Braindead Python Botnet We’ve Ever Seen
┼┼┼┼┼┼┼┼┼┼┼┼┼┼┼┼┼┼┼┼┼┼┼┼┼┼┼┼┼┼┼┼┼┼┼┼
┼┼┼┼┼┼┼┼██┼┼┼┼┼┼┼┼┼┼┼┼┼┼┼██┼┼┼┼┼┼┼┼┼
┼┼┼┼┼┼████▄┼┼┼▄▄▄▄▄▄▄┼┼┼▄████┼┼┼┼┼┼┼…
┼┼┼┼┼┼┼┼██┼┼┼┼┼┼┼┼┼┼┼┼┼┼┼██┼┼┼┼┼┼┼┼┼
┼┼┼┼┼┼████▄┼┼┼▄▄▄▄▄▄▄┼┼┼▄████┼┼┼┼┼┼┼…
⤷ Title: Active SharePoint Spoofing and Legacy Office RCE: CISA Alerts on New KEV Exploits
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 15 Apr 2026 02:34:56 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CISA KEV #CVE_2009_0238 #CVE_2026_32201 #cybersecurity #Federal Directive #infosec #Known Exploited Vulnerabilities #microsoft office #Microsoft SharePoint #rce #spoofing
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 15 Apr 2026 02:34:56 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CISA KEV #CVE_2009_0238 #CVE_2026_32201 #cybersecurity #Federal Directive #infosec #Known Exploited Vulnerabilities #microsoft office #Microsoft SharePoint #rce #spoofing
Daily CyberSecurity
Active SharePoint Spoofing and Legacy Office RCE: CISA Alerts on New KEV Exploits
CISA adds Microsoft SharePoint spoofing (CVE-2026-32201) and legacy Office RCE (CVE-2009-0238) to its KEV Catalog. Remediation deadline: April 28, 2026.
⤷ Title: 25 Million Users at Risk: Fastify Publicly Discloses PoC Exploit for Single-Space Security Bypass
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 15 Apr 2026 02:15:41 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #25 Million Downloads #CVE_2026_33806 #Exploit Disclosure #Fastify #infosec #JavaScript Security #Node.js Security #Public PoC #Schema Validation Bypass #Web Framework Vulnerability
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 15 Apr 2026 02:15:41 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #25 Million Downloads #CVE_2026_33806 #Exploit Disclosure #Fastify #infosec #JavaScript Security #Node.js Security #Public PoC #Schema Validation Bypass #Web Framework Vulnerability
Daily CyberSecurity
25 Million Users at Risk: Fastify Publicly Discloses PoC Exploit for Single-Space Security Bypass
Fastify (25M+ downloads) reveals CVE-2026-33806. A public PoC exploit shows how a single space bypasses schema validation. Upgrade to v5.8.5 now to stay safe.
⤷ Title: JUMPSEC Unmasks Iranian ‘Muddy Water’ Using Russian ‘CastleRAT’ Malware
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 15 Apr 2026 02:05:45 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #browser hijacking #CastleRAT #ChainShell #cyber_espionage #Ethereum C2 #HVNC #Iranian APT #JUMPSEC #Malware_as_a_Service #MFA Bypass #Muddy Water
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 15 Apr 2026 02:05:45 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #browser hijacking #CastleRAT #ChainShell #cyber_espionage #Ethereum C2 #HVNC #Iranian APT #JUMPSEC #Malware_as_a_Service #MFA Bypass #Muddy Water
Daily CyberSecurity
JUMPSEC Unmasks Iranian 'Muddy Water' Using Russian 'CastleRAT' Malware
Iranian state actor Muddy Water adopts CastleRAT and ChainShell to hijack browsers and bypass MFA invisibly. A professional-grade shift in APT strategy.
⤷ Title: OpenStack Keystone Flaw Grants Access to Disabled LDAP Users
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 15 Apr 2026 01:57:22 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Authentication Bypass #Cloud Security #Dalmatian #Epoxy #Flamingo #Gazpacho #Identity Management #Keystone #LDAP #OpenStack #Patch Alert
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 15 Apr 2026 01:57:22 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Authentication Bypass #Cloud Security #Dalmatian #Epoxy #Flamingo #Gazpacho #Identity Management #Keystone #LDAP #OpenStack #Patch Alert
Daily CyberSecurity
OpenStack Keystone Flaw Grants Access to Disabled LDAP Users
OpenStack Keystone vulnerability allows disabled LDAP users to authenticate. Logic flaw in attribute mapping affects releases up to 2026.1. Patch now!