⤷ Title: Account Takeover via OAuth Redirect Uri Manipulation
════════════════════════
𐀪 Author: Skysenz
════════════════════════
ⴵ Time: Fri, 17 Apr 2026 14:43:57 GMT
════════════════════════
⌗ Tags: #cybersecurity #bug_bounty
════════════════════════
𐀪 Author: Skysenz
════════════════════════
ⴵ Time: Fri, 17 Apr 2026 14:43:57 GMT
════════════════════════
⌗ Tags: #cybersecurity #bug_bounty
Medium
Account Takeover via OAuth Redirect Uri Manipulation
Dalam dunia aplikasi web modern, OAuth telah menjadi standar untuk fitur “Social Login” (Login dengan Google, Facebook, dkk). Meskipun…
⤷ Title: Race Condition Exploitation in Poll Systems: How I Manipulated Votes with a Single Account
════════════════════════
𐀪 Author: Jonathangeorge
════════════════════════
ⴵ Time: Fri, 17 Apr 2026 14:36:23 GMT
════════════════════════
⌗ Tags: #race_condition #bug_bounty #hackerone #ethical_hacking #bug_bounty_writeup
════════════════════════
𐀪 Author: Jonathangeorge
════════════════════════
ⴵ Time: Fri, 17 Apr 2026 14:36:23 GMT
════════════════════════
⌗ Tags: #race_condition #bug_bounty #hackerone #ethical_hacking #bug_bounty_writeup
Medium
Race Condition Exploitation in Poll Systems: How I Manipulated Votes with a Single Account
While testing a bug bounty program on HackerOne, I discovered a forum where users can interact with each other. The forum allows users to…
⤷ Title: ⚡ Cross-Site Scripting (XSS) — From Input to Browser Control
════════════════════════
𐀪 Author: ghostyjoe
════════════════════════
ⴵ Time: Fri, 17 Apr 2026 13:55:44 GMT
════════════════════════
⌗ Tags: #security #hacking #linux #bug_bounty #cybersecurity
════════════════════════
𐀪 Author: ghostyjoe
════════════════════════
ⴵ Time: Fri, 17 Apr 2026 13:55:44 GMT
════════════════════════
⌗ Tags: #security #hacking #linux #bug_bounty #cybersecurity
Medium
⚡ Cross-Site Scripting (XSS) — From Input to Browser Control
✍️ Introduction
⤷ Title: From Image Upload to Admin Panel: How a Simple SSRF Led to Massive PII Disclosure and earned $$$$
════════════════════════
𐀪 Author: Sagar Dhoot
════════════════════════
ⴵ Time: Fri, 17 Apr 2026 13:50:40 GMT
════════════════════════
⌗ Tags: #bug_bounty #cybersecurity #infosec #ssrf #ethical_hacking
════════════════════════
𐀪 Author: Sagar Dhoot
════════════════════════
ⴵ Time: Fri, 17 Apr 2026 13:50:40 GMT
════════════════════════
⌗ Tags: #bug_bounty #cybersecurity #infosec #ssrf #ethical_hacking
Medium
From Image Upload to Admin Panel: How a Simple SSRF Led to Massive PII Disclosure and earned $$$$
Some vulnerabilities start with complex exploit chains. Others start with a profile picture upload.
⤷ Title: How I Made €200 Just by Changing a Response
════════════════════════
𐀪 Author: Dheeraj
════════════════════════
ⴵ Time: Fri, 17 Apr 2026 13:19:56 GMT
════════════════════════
⌗ Tags: #ethical_hacking #bug_bounty #penetration_testing #web_security #cybersecurity
════════════════════════
𐀪 Author: Dheeraj
════════════════════════
ⴵ Time: Fri, 17 Apr 2026 13:19:56 GMT
════════════════════════
⌗ Tags: #ethical_hacking #bug_bounty #penetration_testing #web_security #cybersecurity
Medium
How I Made €200 Just by Changing a Response
No complex payloads.
No SQL injection.
No brute force.
No SQL injection.
No brute force.
⤷ Title: One AI Tool. 17 Organizations Destroyed.
════════════════════════
𐀪 Author: Dark Energy Articles
════════════════════════
ⴵ Time: Fri, 17 Apr 2026 14:38:40 GMT
════════════════════════
⌗ Tags: #ai #hacking #technology #science #cybersecurity
════════════════════════
𐀪 Author: Dark Energy Articles
════════════════════════
ⴵ Time: Fri, 17 Apr 2026 14:38:40 GMT
════════════════════════
⌗ Tags: #ai #hacking #technology #science #cybersecurity
Medium
One AI Tool. 17 Organizations Destroyed.
Cybersecurity has always been a cat-and-mouse game between defenders and attackers. But in late 2025, the mouse got superpowers. A lone…
⤷ Title: Load Testing at Scale: I Stress-Tested My API with k6
════════════════════════
𐀪 Author: Navanath Jadhav
════════════════════════
ⴵ Time: Fri, 17 Apr 2026 14:24:16 GMT
════════════════════════
⌗ Tags: #penetration_testing #backend_development #software_development #programming #coding
════════════════════════
𐀪 Author: Navanath Jadhav
════════════════════════
ⴵ Time: Fri, 17 Apr 2026 14:24:16 GMT
════════════════════════
⌗ Tags: #penetration_testing #backend_development #software_development #programming #coding
Medium
Load Testing at Scale: I Stress-Tested My API with k6
“How many users can your API actually handle?”
⤷ Title: Burp Suite Was Blind to This App Until I Found the HTTP/2 Issue
════════════════════════
𐀪 Author: Selamawit Alemu
════════════════════════
ⴵ Time: Fri, 17 Apr 2026 13:34:20 GMT
════════════════════════
⌗ Tags: #cybersecurity #web_security #http2 #burpsuite #penetration_testing
════════════════════════
𐀪 Author: Selamawit Alemu
════════════════════════
ⴵ Time: Fri, 17 Apr 2026 13:34:20 GMT
════════════════════════
⌗ Tags: #cybersecurity #web_security #http2 #burpsuite #penetration_testing
Medium
Burp Suite Was Blind to This App Until I Found the HTTP/2 Issue
When Burp/ZAP Miss Traffic: Debugging HTTP/2 Issues in a Web App
⤷ Title: Title: My First Penetration Testing Agreement — What I Built and What I Learned.
════════════════════════
𐀪 Author: Yankho Funsani
════════════════════════
ⴵ Time: Fri, 17 Apr 2026 13:29:56 GMT
════════════════════════
⌗ Tags: #cybersecurity #penetration_testing
════════════════════════
𐀪 Author: Yankho Funsani
════════════════════════
ⴵ Time: Fri, 17 Apr 2026 13:29:56 GMT
════════════════════════
⌗ Tags: #cybersecurity #penetration_testing
Medium
Title: My First Penetration Testing Agreement — What I Built and What I Learned.
Title: My First Penetration Testing Agreement — What I Built and What I Learned. The Assignment As part of my cybersecurity learning journey with #ParoCyber, I was tasked with drafting a …
⤷ Title: TryHackMe — “Letter” Room Walkthrough
════════════════════════
𐀪 Author: Dharmik Varia
════════════════════════
ⴵ Time: Fri, 17 Apr 2026 14:58:53 GMT
════════════════════════
⌗ Tags: #tryhackme_walkthrough #tryhackme #tryhackme_writeup #osint #cybersecurity
════════════════════════
𐀪 Author: Dharmik Varia
════════════════════════
ⴵ Time: Fri, 17 Apr 2026 14:58:53 GMT
════════════════════════
⌗ Tags: #tryhackme_walkthrough #tryhackme #tryhackme_writeup #osint #cybersecurity
Medium
TryHackMe — “Letter” Room Walkthrough
Room Link: https://tryhackme.com/room/letter
Difficulty: Easy
Category: OSINT / Historical Research
Difficulty: Easy
Category: OSINT / Historical Research
⤷ Title: Prompt Injection | TryHackMe
════════════════════════
𐀪 Author: Binish Alamgir
════════════════════════
ⴵ Time: Fri, 17 Apr 2026 14:41:51 GMT
════════════════════════
⌗ Tags: #prompt_injection #ai_security #tryhackme #prompt_security
════════════════════════
𐀪 Author: Binish Alamgir
════════════════════════
ⴵ Time: Fri, 17 Apr 2026 14:41:51 GMT
════════════════════════
⌗ Tags: #prompt_injection #ai_security #tryhackme #prompt_security
Medium
Prompt Injection | TryHackMe
Task 1 Introduction:
⤷ Title: GLITCH — TryHackMe Write-up (Command Injection + Privilege Escalation)
════════════════════════
𐀪 Author: Bruno Porfiro
════════════════════════
ⴵ Time: Fri, 17 Apr 2026 14:21:43 GMT
════════════════════════
⌗ Tags: #pentesting #tryhackme_writeup #tryhackme #ctf_writeup #ctf
════════════════════════
𐀪 Author: Bruno Porfiro
════════════════════════
ⴵ Time: Fri, 17 Apr 2026 14:21:43 GMT
════════════════════════
⌗ Tags: #pentesting #tryhackme_writeup #tryhackme #ctf_writeup #ctf
Medium
GLITCH — TryHackMe Write-up (Command Injection + Privilege Escalation)
Introdução
⤷ Title: Introduction to the World of OT/ICS
════════════════════════
𐀪 Author: THM{0x416469747961204D6163686972616A75}
════════════════════════
ⴵ Time: Fri, 17 Apr 2026 14:03:20 GMT
════════════════════════
⌗ Tags: #ics_security #tryhackme_writeup #ot_security #tryhackme_walkthrough #tryhackme
════════════════════════
𐀪 Author: THM{0x416469747961204D6163686972616A75}
════════════════════════
ⴵ Time: Fri, 17 Apr 2026 14:03:20 GMT
════════════════════════
⌗ Tags: #ics_security #tryhackme_writeup #ot_security #tryhackme_walkthrough #tryhackme
Medium
Introduction to the World of OT/ICS
Learn what Operational Technology (OT) and Industrial Control Systems (ICS) are, and how they function.
⤷ Title: Data Representation Walkthrough (TryHackMe)
════════════════════════
𐀪 Author: ittz_Madushan
════════════════════════
ⴵ Time: Fri, 17 Apr 2026 13:57:25 GMT
════════════════════════
⌗ Tags: #data_representation #tryhackme #walkthrough
════════════════════════
𐀪 Author: ittz_Madushan
════════════════════════
ⴵ Time: Fri, 17 Apr 2026 13:57:25 GMT
════════════════════════
⌗ Tags: #data_representation #tryhackme #walkthrough
Medium
Data Representation Walkthrough (TryHackMe)
In this Write-up, We will explore how computers represent numbers and colors. Data Representation room by TryHackMe
⤷ Title: Tomghost — TryHackMe WalkThrough
════════════════════════
𐀪 Author: Rayenhafsawy
════════════════════════
ⴵ Time: Fri, 17 Apr 2026 12:56:04 GMT
════════════════════════
⌗ Tags: #tryhackme_writeup #tryhackme #cybersecurity #tryhackme_walkthrough #ctf
════════════════════════
𐀪 Author: Rayenhafsawy
════════════════════════
ⴵ Time: Fri, 17 Apr 2026 12:56:04 GMT
════════════════════════
⌗ Tags: #tryhackme_writeup #tryhackme #cybersecurity #tryhackme_walkthrough #ctf
Medium
Tomghost — TryHackMe WalkThrough
Date: 17/04/2026
⤷ Title: Bug Bounty 2026: Why the “End of the World” is Actually a $500k Opportunity
════════════════════════
𐀪 Author: EMTIAZ AHMED
════════════════════════
ⴵ Time: Fri, 17 Apr 2026 15:39:41 GMT
════════════════════════
⌗ Tags: #security #hacking #ai_security #bug_bounty #bounties
════════════════════════
𐀪 Author: EMTIAZ AHMED
════════════════════════
ⴵ Time: Fri, 17 Apr 2026 15:39:41 GMT
════════════════════════
⌗ Tags: #security #hacking #ai_security #bug_bounty #bounties
Medium
Bug Bounty 2026: Why the “End of the World” is Actually a $500k Opportunity
The “death” of bug bounty hunting has been predicted every year since 2015. Yet, here we are in 2026, and the industry is more lucrative —…
⤷ Title: Mirage (LFI) WebVerse
════════════════════════
𐀪 Author: 7s26Simon
════════════════════════
ⴵ Time: Fri, 17 Apr 2026 16:11:01 GMT
════════════════════════
⌗ Tags: #hacking #lfi #ctf_writeup #ctf #webverse
════════════════════════
𐀪 Author: 7s26Simon
════════════════════════
ⴵ Time: Fri, 17 Apr 2026 16:11:01 GMT
════════════════════════
⌗ Tags: #hacking #lfi #ctf_writeup #ctf #webverse
Medium
Mirage (LFI) WebVerse
Lab can be found at: https://webverselabs-pro.com/
⤷ Title: Understanding Dark Web Product Listings: Structure, Risks, and Trends
════════════════════════
𐀪 Author: Tor BBB
════════════════════════
ⴵ Time: Fri, 17 Apr 2026 16:51:29 GMT
════════════════════════
⌗ Tags: #osint #cybersecurity #infosec #darkweb
════════════════════════
𐀪 Author: Tor BBB
════════════════════════
ⴵ Time: Fri, 17 Apr 2026 16:51:29 GMT
════════════════════════
⌗ Tags: #osint #cybersecurity #infosec #darkweb
Medium
Understanding Dark Web Product Listings: Structure, Risks, and Trends
The structure of marketplaces in hidden networks often raises more questions than answers. While headlines tend to focus on sensational…
⤷ Title: How Drowning in Windows Event Logs Made Me Build My Own Threat-Hunting CLI
════════════════════════
𐀪 Author: judeh0747
════════════════════════
ⴵ Time: Fri, 17 Apr 2026 15:55:11 GMT
════════════════════════
⌗ Tags: #cybersecurity #infosec #python
════════════════════════
𐀪 Author: judeh0747
════════════════════════
ⴵ Time: Fri, 17 Apr 2026 15:55:11 GMT
════════════════════════
⌗ Tags: #cybersecurity #infosec #python
Medium
How Drowning in Windows Event Logs Made Me Build My Own Threat-Hunting CLI
The first time I tried to run a real incident-response exercise in my lab, I pulled an EVTX file off a compromised VM, opened it in Event…
⤷ Title: The Identity Trap: Bypassing Modern Perimeters via Cross-Platform Correlation
════════════════════════
𐀪 Author: Tyreek Haynes
════════════════════════
ⴵ Time: Fri, 17 Apr 2026 15:39:13 GMT
════════════════════════
⌗ Tags: #cybersecurity #infosec #azure #penetration_testing #cloudflare
════════════════════════
𐀪 Author: Tyreek Haynes
════════════════════════
ⴵ Time: Fri, 17 Apr 2026 15:39:13 GMT
════════════════════════
⌗ Tags: #cybersecurity #infosec #azure #penetration_testing #cloudflare
Medium
The Identity Trap: Bypassing Modern Perimeters via Cross-Platform Correlation
Why “Black Box” Testing is Never Truly Blind
⤷ Title: From Theory to Practice: Drafting My First Pentesting Agreement
════════════════════════
𐀪 Author: Madalitso Cheyo
════════════════════════
ⴵ Time: Fri, 17 Apr 2026 16:21:19 GMT
════════════════════════
⌗ Tags: #penetration_testing #ethical_hacking #parocyber #blue_team #cybersecurity
════════════════════════
𐀪 Author: Madalitso Cheyo
════════════════════════
ⴵ Time: Fri, 17 Apr 2026 16:21:19 GMT
════════════════════════
⌗ Tags: #penetration_testing #ethical_hacking #parocyber #blue_team #cybersecurity
Medium
From Theory to Practice: Drafting My First Pentesting Agreement
In the world of cybersecurity, the difference between a hero and a hacker often comes down to one thing: authorization.