⤷ Title: Blind SQL injection with out-of-band data exfiltration
════════════════════════
𐀪 Author: Bea Dela Cruz
════════════════════════
ⴵ Time: Thu, 23 Apr 2026 04:02:30 GMT
════════════════════════
⌗ Tags: #out_of_band_interaction #dns_lookup #blind_sql_injection #sql_injection
════════════════════════
𐀪 Author: Bea Dela Cruz
════════════════════════
ⴵ Time: Thu, 23 Apr 2026 04:02:30 GMT
════════════════════════
⌗ Tags: #out_of_band_interaction #dns_lookup #blind_sql_injection #sql_injection
Medium
Blind SQL injection with out-of-band data exfiltration
The SQL query does not return any visible response, but it can trigger an out-of-band interaction that delivers the result through a…
⤷ Title: Void Dokkaebi Unmasked: The “Worm-Like” Supply Chain Threat Targeting Developers
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 23 Apr 2026 06:24:51 +0000
════════════════════════
⌗ Tags: #Malware #Blockchain Staging #CI/CD security #Famous Chollima #GitHub Security #infosec #North Korea APT #Open Source Security #supply chain attack #TrendMicro #Void Dokkaebi #VS Code Malware
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 23 Apr 2026 06:24:51 +0000
════════════════════════
⌗ Tags: #Malware #Blockchain Staging #CI/CD security #Famous Chollima #GitHub Security #infosec #North Korea APT #Open Source Security #supply chain attack #TrendMicro #Void Dokkaebi #VS Code Malware
Daily CyberSecurity
Void Dokkaebi Unmasked: The “Worm-Like” Supply Chain Threat Targeting Developers
A new report from researchers at TrendMicro has exposed the evolution of Void Dokkaebi (also known as Famous Chollima), a North Korea-aligned intrusion set that has transitioned from traditional s…
⤷ Title: $800 Bounty: Privilege Escalation via API — From Scheduler to Team Admin
════════════════════════
𐀪 Author: Abhi Sharma
════════════════════════
ⴵ Time: Thu, 23 Apr 2026 06:03:15 GMT
════════════════════════
⌗ Tags: #privilege_escalation #bug_bounty #cybersecurity #infosec #broken_access_control
════════════════════════
𐀪 Author: Abhi Sharma
════════════════════════
ⴵ Time: Thu, 23 Apr 2026 06:03:15 GMT
════════════════════════
⌗ Tags: #privilege_escalation #bug_bounty #cybersecurity #infosec #broken_access_control
Medium
$800 Bounty: Privilege Escalation via API — From Scheduler to Team Admin
$800 Bounty: Privilege Escalation via API — From Scheduler to Team Admin Hi Everyone! I recently discovered a Broken Access Control / Privilege Escalation vulnerability in a SaaS platform …
⤷ Title: When “Safe” Isn’t Safe: Turning a Simple HTML Injection into a Real Security Story.
════════════════════════
𐀪 Author: kjulius
════════════════════════
ⴵ Time: Thu, 23 Apr 2026 06:02:19 GMT
════════════════════════
⌗ Tags: #user_input #injection #content_security_policy #bug_bounty #htmli
════════════════════════
𐀪 Author: kjulius
════════════════════════
ⴵ Time: Thu, 23 Apr 2026 06:02:19 GMT
════════════════════════
⌗ Tags: #user_input #injection #content_security_policy #bug_bounty #htmli
Medium
When “Safe” Isn’t Safe: Turning a Simple HTML Injection into a Real Security Story.
In bug bounty hunting, not every vulnerability needs flashy payloads or JavaScript execution to matter. Sometimes, the simplest flaws —…
⤷ Title: $800 Bounty: Privilege Escalation via API — From Scheduler to Team Admin
════════════════════════
𐀪 Author: Abhi Sharma
════════════════════════
ⴵ Time: Thu, 23 Apr 2026 06:03:14 GMT
════════════════════════
⌗ Tags: #privilege_escalation #bug_bounty #cybersecurity #infosec #broken_access_control
════════════════════════
𐀪 Author: Abhi Sharma
════════════════════════
ⴵ Time: Thu, 23 Apr 2026 06:03:14 GMT
════════════════════════
⌗ Tags: #privilege_escalation #bug_bounty #cybersecurity #infosec #broken_access_control
Medium
$800 Bounty: Privilege Escalation via API — From Scheduler to Team Admin
$800 Bounty: Privilege Escalation via API — From Scheduler to Team Admin Hi Everyone! I recently discovered a Broken Access Control / Privilege Escalation vulnerability in a SaaS platform …
⤷ Title: Rate Limiting Failures: How Attackers Abuse APIs
════════════════════════
𐀪 Author: Cybersphere Official
════════════════════════
ⴵ Time: Thu, 23 Apr 2026 05:51:19 GMT
════════════════════════
⌗ Tags: #application_security #infosec #cybersecurity #web_security #api_security
════════════════════════
𐀪 Author: Cybersphere Official
════════════════════════
ⴵ Time: Thu, 23 Apr 2026 05:51:19 GMT
════════════════════════
⌗ Tags: #application_security #infosec #cybersecurity #web_security #api_security
Medium
Rate Limiting Failures: How Attackers Abuse APIs
Context
⤷ Title: Best VAPT Services | ConsultEdge Global
════════════════════════
𐀪 Author: Consultedgeglobal
════════════════════════
ⴵ Time: Thu, 23 Apr 2026 05:40:03 GMT
════════════════════════
⌗ Tags: #cert_in #vapt_services #consultedge_global #cloud_devsecops #application_security
════════════════════════
𐀪 Author: Consultedgeglobal
════════════════════════
ⴵ Time: Thu, 23 Apr 2026 05:40:03 GMT
════════════════════════
⌗ Tags: #cert_in #vapt_services #consultedge_global #cloud_devsecops #application_security
Medium
Best VAPT Services | ConsultEdge Global
ConsultEdge Global provides trusted VAPT services to detect and fix security vulnerabilities in applications, networks, and systems. We…
⤷ Title: From LOW to CRITICAL: How a 5-Step Vulnerability Chain Goes Undetected by Flat Scanners
════════════════════════
𐀪 Author: Eldor Zufarov
════════════════════════
ⴵ Time: Thu, 23 Apr 2026 05:25:28 GMT
════════════════════════
⌗ Tags: #cybersecurity #devsecops #software_engineering #vulnerability_management #application_security
════════════════════════
𐀪 Author: Eldor Zufarov
════════════════════════
ⴵ Time: Thu, 23 Apr 2026 05:25:28 GMT
════════════════════════
⌗ Tags: #cybersecurity #devsecops #software_engineering #vulnerability_management #application_security
Medium
From LOW to CRITICAL: How a 5-Step Vulnerability Chain Goes Undetected by Flat Scanners
A real scan walkthrough using DVWA
⤷ Title: The New Age of Cyber Threats: Faster, Smarter, Invisible
════════════════════════
𐀪 Author: Paritosh
════════════════════════
ⴵ Time: Thu, 23 Apr 2026 06:53:37 GMT
════════════════════════
⌗ Tags: #hacking #bug_bounty #cybersecurity #ai #programming
════════════════════════
𐀪 Author: Paritosh
════════════════════════
ⴵ Time: Thu, 23 Apr 2026 06:53:37 GMT
════════════════════════
⌗ Tags: #hacking #bug_bounty #cybersecurity #ai #programming
Medium
The New Age of Cyber Threats: Faster, Smarter, Invisible
Let me ask you something.
⤷ Title: SOC Topic A02- API (Application Programming Interface)
════════════════════════
𐀪 Author: Adithya Hettiarachchi
════════════════════════
ⴵ Time: Thu, 23 Apr 2026 06:33:15 GMT
════════════════════════
⌗ Tags: #soc #cyber_threat_intelligence #hacking #cybersecurity #information_security
════════════════════════
𐀪 Author: Adithya Hettiarachchi
════════════════════════
ⴵ Time: Thu, 23 Apr 2026 06:33:15 GMT
════════════════════════
⌗ Tags: #soc #cyber_threat_intelligence #hacking #cybersecurity #information_security
Medium
SOC Topic A02- API (Application Programming Interface)
What is an API?
⤷ Title: WaTF Bank Walkthrough (Part 2): Exploiting Android App Security Flaws
════════════════════════
𐀪 Author: George Petropoulos
════════════════════════
ⴵ Time: Thu, 23 Apr 2026 05:59:56 GMT
════════════════════════
⌗ Tags: #technology #penetration_testing #cybersecurity #android_development #hacking
════════════════════════
𐀪 Author: George Petropoulos
════════════════════════
ⴵ Time: Thu, 23 Apr 2026 05:59:56 GMT
════════════════════════
⌗ Tags: #technology #penetration_testing #cybersecurity #android_development #hacking
Medium
WaTF Bank Walkthrough (Part 2): Exploiting Android App Security Flaws
Android Mobile Application Security Testing Write-Up
⤷ Title: Claude Mythos & Project Glasswing
════════════════════════
𐀪 Author: Akanksha
════════════════════════
ⴵ Time: Thu, 23 Apr 2026 05:32:34 GMT
════════════════════════
⌗ Tags: #hacking #claude_mythos #ai_and_security #cybersecurity_awareness #cybersecurity
════════════════════════
𐀪 Author: Akanksha
════════════════════════
ⴵ Time: Thu, 23 Apr 2026 05:32:34 GMT
════════════════════════
⌗ Tags: #hacking #claude_mythos #ai_and_security #cybersecurity_awareness #cybersecurity
Medium
Claude Mythos & Project Glasswing
The AI That Can Hack — And Why That’s Both Exciting and Concerning
⤷ Title: I Built a SaaS That Makes Pentesting Faster
════════════════════════
𐀪 Author: Ss0pc3vz
════════════════════════
ⴵ Time: Thu, 23 Apr 2026 06:50:05 GMT
════════════════════════
⌗ Tags: #infosec #ethical_hacking #penetration_testing #saas #cybersecurity
════════════════════════
𐀪 Author: Ss0pc3vz
════════════════════════
ⴵ Time: Thu, 23 Apr 2026 06:50:05 GMT
════════════════════════
⌗ Tags: #infosec #ethical_hacking #penetration_testing #saas #cybersecurity
Medium
I Built a SaaS That Makes Pentesting Faster
Pentesters waste too much time searching for commands. I built Pentest Mindmap to fix that.
⤷ Title: Quantum-Safe Crypto: What Engineers Should Start Doing Today
════════════════════════
𐀪 Author: Vatsamistry
════════════════════════
ⴵ Time: Thu, 23 Apr 2026 04:57:24 GMT
════════════════════════
⌗ Tags: #crypto #infosec #zero_trust #information_technology #devsecops
════════════════════════
𐀪 Author: Vatsamistry
════════════════════════
ⴵ Time: Thu, 23 Apr 2026 04:57:24 GMT
════════════════════════
⌗ Tags: #crypto #infosec #zero_trust #information_technology #devsecops
Medium
Quantum-Safe Crypto: What Engineers Should Start Doing Today
A Practical Engineering Guide to Preparing Modern Systems for the Post-Quantum Shift
⤷ Title: Claude Mythos Isn’t Everything — Know about RedRoot Armour?
════════════════════════
𐀪 Author: Agampreet Singh
════════════════════════
ⴵ Time: Thu, 23 Apr 2026 06:24:15 GMT
════════════════════════
⌗ Tags: #claude_mythos #penetration_testing #artificial_intelligence #cybersecurity #ethical_hacking
════════════════════════
𐀪 Author: Agampreet Singh
════════════════════════
ⴵ Time: Thu, 23 Apr 2026 06:24:15 GMT
════════════════════════
⌗ Tags: #claude_mythos #penetration_testing #artificial_intelligence #cybersecurity #ethical_hacking
⤷ Title: 8 Free OSINT Tools For Security Researchers
════════════════════════
𐀪 Author: Muhammad Umair Javed
════════════════════════
ⴵ Time: Thu, 23 Apr 2026 06:36:06 GMT
════════════════════════
⌗ Tags: #umairhack #hacker #ethical_hacking
════════════════════════
𐀪 Author: Muhammad Umair Javed
════════════════════════
ⴵ Time: Thu, 23 Apr 2026 06:36:06 GMT
════════════════════════
⌗ Tags: #umairhack #hacker #ethical_hacking
Medium
8 Free OSINT Tools For Security Researchers
Muhammad Umair Javed
⤷ Title: Social Engineering: The Human Side of Cyber Attacks
════════════════════════
𐀪 Author: Akshat Poddar
════════════════════════
ⴵ Time: Thu, 23 Apr 2026 05:17:56 GMT
════════════════════════
⌗ Tags: #ethical_hacking #social_engineering
════════════════════════
𐀪 Author: Akshat Poddar
════════════════════════
ⴵ Time: Thu, 23 Apr 2026 05:17:56 GMT
════════════════════════
⌗ Tags: #ethical_hacking #social_engineering
Medium
Social Engineering: The Human Side of Cyber Attacks
In the world of ethical hacking, many people think attacks happen only through coding, malware, or technical vulnerabilities. However, one…
⤷ Title: How to Start a Cybersecurity Career in 2026
════════════════════════
𐀪 Author: Gurpreet Singh
════════════════════════
ⴵ Time: Thu, 23 Apr 2026 05:13:56 GMT
════════════════════════
⌗ Tags: #career_advice #ethical_hacking #information_security #cybersecurity
════════════════════════
𐀪 Author: Gurpreet Singh
════════════════════════
ⴵ Time: Thu, 23 Apr 2026 05:13:56 GMT
════════════════════════
⌗ Tags: #career_advice #ethical_hacking #information_security #cybersecurity
Medium
How to Start a Cybersecurity Career in 2026
Introduction
⤷ Title: HOW I SOLVED SQL INJECTION (LAB 9 PORTSWIGGER ACADEMY)
════════════════════════
𐀪 Author: Y0da
════════════════════════
ⴵ Time: Thu, 23 Apr 2026 05:08:45 GMT
════════════════════════
⌗ Tags: #portswigger #cybersecurity #portswigger_academy_labs #sql_injection
════════════════════════
𐀪 Author: Y0da
════════════════════════
ⴵ Time: Thu, 23 Apr 2026 05:08:45 GMT
════════════════════════
⌗ Tags: #portswigger #cybersecurity #portswigger_academy_labs #sql_injection
Medium
HOW I SOLVED SQL INJECTION (LAB 9 PORTSWIGGER ACADEMY)
How I solved Lab 9 (Listing contents of database on non-oracle platforms)
⤷ Title: Apple Patches iOS Flaw That Stored Deleted Signal Notifications in FBI Forensic Case
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Thu, 23 Apr 2026 13:36:00 +0530
════════════════════════
⌗ Tags: No_Tags
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Thu, 23 Apr 2026 13:36:00 +0530
════════════════════════
⌗ Tags: No_Tags
⤷ Title: Lotus Wiper: A Destructive New Threat Strikes Venezuela’s Energy Sector
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 23 Apr 2026 08:30:21 +0000
════════════════════════
⌗ Tags: #Malware #Critical Infrastructure #data destruction #Digital Sabotage #Energy Sector Security #HermeticWiper #Kaspersky Labs #Lotus Wiper #Malware Analysis #NotPetya #South America #Venezuela
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 23 Apr 2026 08:30:21 +0000
════════════════════════
⌗ Tags: #Malware #Critical Infrastructure #data destruction #Digital Sabotage #Energy Sector Security #HermeticWiper #Kaspersky Labs #Lotus Wiper #Malware Analysis #NotPetya #South America #Venezuela
Daily CyberSecurity
Lotus Wiper: A Destructive New Threat Strikes Venezuela’s Energy Sector
A novel and devastating file wiper has been discovered targeting critical infrastructure in South America. Against the backdrop of geopolitical tensions that occurred in the Caribbean region in la…