⤷ Title: Your Password Manager Just Got Hacked. The Bitwarden Supply Chain Attack.
════════════════════════
𐀪 Author: Dhanush N
════════════════════════
ⴵ Time: Thu, 23 Apr 2026 18:24:52 GMT
════════════════════════
⌗ Tags: #passwords #bitwarden #cybersecurity #hacking #supply_chain_attack
════════════════════════
𐀪 Author: Dhanush N
════════════════════════
ⴵ Time: Thu, 23 Apr 2026 18:24:52 GMT
════════════════════════
⌗ Tags: #passwords #bitwarden #cybersecurity #hacking #supply_chain_attack
Medium
Your Password Manager Just Got Hacked. The Bitwarden Supply Chain Attack.
A self-replicating worm named after a Dune monster just hijacked one of the most trusted tools in security. Here’s what it stole, how it…
⤷ Title: Synthetic Cannabinoids on the Dark Web: Trends, Risks, and What’s Changing
════════════════════════
𐀪 Author: Tor BBB
════════════════════════
ⴵ Time: Thu, 23 Apr 2026 17:19:06 GMT
════════════════════════
⌗ Tags: #infosec #osint #cybersecurity #darkweb
════════════════════════
𐀪 Author: Tor BBB
════════════════════════
ⴵ Time: Thu, 23 Apr 2026 17:19:06 GMT
════════════════════════
⌗ Tags: #infosec #osint #cybersecurity #darkweb
Medium
Synthetic Cannabinoids on the Dark Web: Trends, Risks, and What’s Changing
Synthetic substances continue to reshape conversations around online drug markets, and few categories illustrate this shift better than…
⤷ Title: TryHackMe — Expose Writeup
════════════════════════
𐀪 Author: Rootseekerx0x
════════════════════════
ⴵ Time: Thu, 23 Apr 2026 18:12:16 GMT
════════════════════════
⌗ Tags: #penetration_testing #ctf_writeup #tryhackme_walkthrough #red_team #tryhackme
════════════════════════
𐀪 Author: Rootseekerx0x
════════════════════════
ⴵ Time: Thu, 23 Apr 2026 18:12:16 GMT
════════════════════════
⌗ Tags: #penetration_testing #ctf_writeup #tryhackme_walkthrough #red_team #tryhackme
Medium
TryHackMe — Expose Writeup
Difficulty: Easy Room: https://tryhackme.com/room/expose Category: Web / SQLi / File Upload / Privilege Escalation Tools Used: Nmap, WFuzz…
⤷ Title: AI System Reconnaissance Walkthrough| TryHackMe
════════════════════════
𐀪 Author: Nikhil Kumar
════════════════════════
ⴵ Time: Thu, 23 Apr 2026 18:57:50 GMT
════════════════════════
⌗ Tags: #tryhackme_walkthrough #ai_system_reconnaissance #tryhackme
════════════════════════
𐀪 Author: Nikhil Kumar
════════════════════════
ⴵ Time: Thu, 23 Apr 2026 18:57:50 GMT
════════════════════════
⌗ Tags: #tryhackme_walkthrough #ai_system_reconnaissance #tryhackme
Medium
AI System Reconnaissance Walkthrough| TryHackMe
Description : Discover AI infrastructure by scanning ML services, frameworks, and extracting metadata from APIs.
⤷ Title: AI Threat Modelling Walkthrough| TryHackMe
════════════════════════
𐀪 Author: Nikhil Kumar
════════════════════════
ⴵ Time: Thu, 23 Apr 2026 18:17:12 GMT
════════════════════════
⌗ Tags: #tryhackme #ai_threat_modelling #ai_threat_modeling #tryhackme_walkthrough
════════════════════════
𐀪 Author: Nikhil Kumar
════════════════════════
ⴵ Time: Thu, 23 Apr 2026 18:17:12 GMT
════════════════════════
⌗ Tags: #tryhackme #ai_threat_modelling #ai_threat_modeling #tryhackme_walkthrough
Medium
AI Threat Modelling Walkthrough| TryHackMe
Description : Assess and mitigate enterprise AI/ML risks via systematic, defender-focused auditing.
⤷ Title: WebVersePro Labs — Challenge: Ember Kettle Writeup (Reflected XSS)
════════════════════════
𐀪 Author: Zor0ark
════════════════════════
ⴵ Time: Thu, 23 Apr 2026 17:56:27 GMT
════════════════════════
⌗ Tags: #web_pentesting #ctf_writeup #reflected_xss #ctf #xs
════════════════════════
𐀪 Author: Zor0ark
════════════════════════
ⴵ Time: Thu, 23 Apr 2026 17:56:27 GMT
════════════════════════
⌗ Tags: #web_pentesting #ctf_writeup #reflected_xss #ctf #xs
Medium
WebVersePro Labs — Challenge: Ember Kettle Writeup (Reflected XSS)
OBJECTIVE: To exploit a web application featuring a vulnerable search input that lacks filtering, allowing for the execution of arbitrary…
⤷ Title: How a Fake Image and an Expired Token Made a Server Confess Everything
════════════════════════
𐀪 Author: Abdullah Almuntaser
════════════════════════
ⴵ Time: Thu, 23 Apr 2026 20:00:24 GMT
════════════════════════
⌗ Tags: #hacking #cybersecurity #bug_bounty #bug_bounty_writeup #mobile_security
════════════════════════
𐀪 Author: Abdullah Almuntaser
════════════════════════
ⴵ Time: Thu, 23 Apr 2026 20:00:24 GMT
════════════════════════
⌗ Tags: #hacking #cybersecurity #bug_bounty #bug_bounty_writeup #mobile_security
Medium
How a Fake Image and an Expired Token Made a Server Confess Everything
During a recent assessment of a mobile application’s backend API, I triggered a verbose error response from a profile image upload endpoint…
⤷ Title: Security Assessment: 23andMe Web Platform
════════════════════════
𐀪 Author: Leen Adeeb
════════════════════════
ⴵ Time: Thu, 23 Apr 2026 19:21:01 GMT
════════════════════════
⌗ Tags: #security_research #web_application_security #penetration_testing #application_security #bug_bounty
════════════════════════
𐀪 Author: Leen Adeeb
════════════════════════
ⴵ Time: Thu, 23 Apr 2026 19:21:01 GMT
════════════════════════
⌗ Tags: #security_research #web_application_security #penetration_testing #application_security #bug_bounty
Medium
Security Assessment: 23andMe Web Platform
Authorized bug bounty testing across authentication flows, object-level authorization, client-side disclosure, and e-commerce logic on a…
⤷ Title: Bypassing a Payment Gateway Through Smali-Level Dead Code Discovery
════════════════════════
𐀪 Author: Abdullah Almuntaser
════════════════════════
ⴵ Time: Thu, 23 Apr 2026 19:11:54 GMT
════════════════════════
⌗ Tags: #bug_bounty #vulnerability #cybersecurity
════════════════════════
𐀪 Author: Abdullah Almuntaser
════════════════════════
ⴵ Time: Thu, 23 Apr 2026 19:11:54 GMT
════════════════════════
⌗ Tags: #bug_bounty #vulnerability #cybersecurity
Medium
Bypassing a Payment Gateway Through Smali-Level Dead Code Discovery
How static analysis of an unused code path led to a full payment bypass in a production mobile application.
⤷ Title: SOCFortress — Application Vulnerability Assessment
════════════════════════
𐀪 Author: SOCFortress
════════════════════════
ⴵ Time: Thu, 23 Apr 2026 19:25:17 GMT
════════════════════════
⌗ Tags: #threat_intelligence #application_security #software_development #vulnerability_management #cybersecurity
════════════════════════
𐀪 Author: SOCFortress
════════════════════════
ⴵ Time: Thu, 23 Apr 2026 19:25:17 GMT
════════════════════════
⌗ Tags: #threat_intelligence #application_security #software_development #vulnerability_management #cybersecurity
Medium
SOCFortress — Application Vulnerability Assessment
Intro
⤷ Title: Overwriting Process Creation Kernel Callbacks
════════════════════════
𐀪 Author: S12 - 0x12Dark Development
════════════════════════
ⴵ Time: Thu, 23 Apr 2026 20:36:38 GMT
════════════════════════
⌗ Tags: #pentesting #malware #hacking #hacker #cybersecurity
════════════════════════
𐀪 Author: S12 - 0x12Dark Development
════════════════════════
ⴵ Time: Thu, 23 Apr 2026 20:36:38 GMT
════════════════════════
⌗ Tags: #pentesting #malware #hacking #hacker #cybersecurity
Medium
Overwriting Process Creation Kernel Callbacks
Welcome to this new post. In our previous post we looked at how Windows tells security software every time a new process starts. We learned…
⤷ Title: How Hackers Hijack Your Internet: A Real DNS Spoofing Demo From Scratch
════════════════════════
𐀪 Author: Vansh Baghel
════════════════════════
ⴵ Time: Thu, 23 Apr 2026 19:40:22 GMT
════════════════════════
⌗ Tags: #tech #dns_poisoning #hacking #man_in_the_middle_attack #arp_spoofing
════════════════════════
𐀪 Author: Vansh Baghel
════════════════════════
ⴵ Time: Thu, 23 Apr 2026 19:40:22 GMT
════════════════════════
⌗ Tags: #tech #dns_poisoning #hacking #man_in_the_middle_attack #arp_spoofing
Medium
How Hackers Hijack Your Internet: A Real DNS Spoofing Demo From Scratch
We built a real attack lab, poisoned DNS, froze Netflix, and spoofed websites on a live phone. Here’s everything that happened — including…
⤷ Title: Use After Free Zafiyeti nedir, DVRF uae nasıl çözülür
════════════════════════
𐀪 Author: Alirizagocer
════════════════════════
ⴵ Time: Thu, 23 Apr 2026 19:31:58 GMT
════════════════════════
⌗ Tags: #cybersecurity #hacking #firmware #dvrf #use_after_free
════════════════════════
𐀪 Author: Alirizagocer
════════════════════════
ⴵ Time: Thu, 23 Apr 2026 19:31:58 GMT
════════════════════════
⌗ Tags: #cybersecurity #hacking #firmware #dvrf #use_after_free
Medium
Use After Free Zafiyeti nedir, DVRF uae nasıl çözülür
Öncelikle use after free nedir ona bakalım use after free zafiyetini açıklamak gerekirse bir bilet sistemimiz olsun ve biz bileti önce…
⤷ Title: Exploiting the Infamous vsftpd 2.3.4 Backdoor: A Metasploitable 2 Walkthrough
════════════════════════
𐀪 Author: Ebube uzomba
════════════════════════
ⴵ Time: Thu, 23 Apr 2026 20:41:54 GMT
════════════════════════
⌗ Tags: #ethical_hacking #infosec #cybersecurity #pentesting #metasploit
════════════════════════
𐀪 Author: Ebube uzomba
════════════════════════
ⴵ Time: Thu, 23 Apr 2026 20:41:54 GMT
════════════════════════
⌗ Tags: #ethical_hacking #infosec #cybersecurity #pentesting #metasploit
Medium
Exploiting the Infamous vsftpd 2.3.4 Backdoor: A Metasploitable 2 Walkthrough
The vsftpd 2.3.4 backdoor is a classic “supply chain” disaster. Back in 2011, the source code was compromised to include a listener on port…
⤷ Title: How MSSPs Can Cut Security Costs Using DentiGrid
════════════════════════
𐀪 Author: Sam Walker
════════════════════════
ⴵ Time: Thu, 23 Apr 2026 20:16:34 GMT
════════════════════════
⌗ Tags: #threat_intelligence #mssp #infosec #cybersecurity
════════════════════════
𐀪 Author: Sam Walker
════════════════════════
ⴵ Time: Thu, 23 Apr 2026 20:16:34 GMT
════════════════════════
⌗ Tags: #threat_intelligence #mssp #infosec #cybersecurity
Medium
How MSSPs Can Cut Security Costs Using DentiGrid
In most cybersecurity conversations, we focus heavily on threats, tools and detection rates.
⤷ Title: I Got Phished. So I Investigated the Attacker Instead.
════════════════════════
𐀪 Author: Fino :)
════════════════════════
ⴵ Time: Thu, 23 Apr 2026 20:10:08 GMT
════════════════════════
⌗ Tags: #cyber_security_awareness #phishing #infosec #email_security #cybersecurity
════════════════════════
𐀪 Author: Fino :)
════════════════════════
ⴵ Time: Thu, 23 Apr 2026 20:10:08 GMT
════════════════════════
⌗ Tags: #cyber_security_awareness #phishing #infosec #email_security #cybersecurity
Medium
I Got Phished. So I Investigated the Attacker Instead.
It was an ordinary Thursday.
⤷ Title: Network Enumeration Report (SMB, SMTP, SNMP, Metasploit)
════════════════════════
𐀪 Author: Youssef Ashraf
════════════════════════
ⴵ Time: Thu, 23 Apr 2026 19:23:14 GMT
════════════════════════
⌗ Tags: #penetration_testing #smtp #smb #snmp #ethical_hacking
════════════════════════
𐀪 Author: Youssef Ashraf
════════════════════════
ⴵ Time: Thu, 23 Apr 2026 19:23:14 GMT
════════════════════════
⌗ Tags: #penetration_testing #smtp #smb #snmp #ethical_hacking
Medium
Network Enumeration Report (SMB, SMTP, SNMP, Metasploit)
Enumeration is a critical phase in penetration testing where attackers actively gather detailed information from target systems. This phase…
⤷ Title: AI Security Path- TryHackMe- Module 2(Part 2)
════════════════════════
𐀪 Author: Swarupa Jeedimetla
════════════════════════
ⴵ Time: Thu, 23 Apr 2026 20:51:52 GMT
════════════════════════
⌗ Tags: #tryhackme #cybersecurity #ai #ai_security
════════════════════════
𐀪 Author: Swarupa Jeedimetla
════════════════════════
ⴵ Time: Thu, 23 Apr 2026 20:51:52 GMT
════════════════════════
⌗ Tags: #tryhackme #cybersecurity #ai #ai_security
Medium
AI Security Path- TryHackMe- Module 2(Part 2)
Behind the Model: Why AI Reconnaissance Defines Today’s Security Landscape
⤷ Title: TryHackMe — RootMe CTF Solution
════════════════════════
𐀪 Author: Efe Özel
════════════════════════
ⴵ Time: Thu, 23 Apr 2026 19:35:10 GMT
════════════════════════
⌗ Tags: #pentesting #tryhackme_walkthrough #ctf_writeup #tryhackme #cybersecurity
════════════════════════
𐀪 Author: Efe Özel
════════════════════════
ⴵ Time: Thu, 23 Apr 2026 19:35:10 GMT
════════════════════════
⌗ Tags: #pentesting #tryhackme_walkthrough #ctf_writeup #tryhackme #cybersecurity
Medium
TryHackMe — RootMe CTF Solution
Summary: In RootMe CTF room we need to find web vulnerabilities and then we use reverse shell connect to terminal after than privelege…
⤷ Title: WebVersePro Labs — Challenge: Fermata Writeup (Reflected XSS)
════════════════════════
𐀪 Author: Zor0ark
════════════════════════
ⴵ Time: Thu, 23 Apr 2026 21:04:10 GMT
════════════════════════
⌗ Tags: #webverse #web_pentesting #bug_bounty #xs #ctf
════════════════════════
𐀪 Author: Zor0ark
════════════════════════
ⴵ Time: Thu, 23 Apr 2026 21:04:10 GMT
════════════════════════
⌗ Tags: #webverse #web_pentesting #bug_bounty #xs #ctf
Medium
WebVersePro Labs — Challenge: Fermata Writeup (Reflected XSS)
OBJECTIVE: To identify the injection point, break out of an HTML comment block, and execute arbitrary JavaScript to retrieve the challenge…
⤷ Title: Full System Compromise via Chained API Vulnerabilities - OpenVault Bank
════════════════════════
𐀪 Author: Aishat Olayinka Yusuf
════════════════════════
ⴵ Time: Thu, 23 Apr 2026 20:53:31 GMT
════════════════════════
⌗ Tags: #application_security #api #web_app_security
════════════════════════
𐀪 Author: Aishat Olayinka Yusuf
════════════════════════
ⴵ Time: Thu, 23 Apr 2026 20:53:31 GMT
════════════════════════
⌗ Tags: #application_security #api #web_app_security
Medium
Full System Compromise via Chained API Vulnerabilities - OpenVault Bank
APIs are at the core of modern applications, especially in systems like banking where data needs to move quickly and securely between…