⤷ Title: Spring — Spring Boot Actuator RCE + Symlink Arbitrary Write to Root | TryHackMe
════════════════════════
𐀪 Author: Roshan Rajbanshi
════════════════════════
ⴵ Time: Fri, 24 Apr 2026 10:04:02 GMT
════════════════════════
⌗ Tags: #tryhackme_walkthrough #cybersecurity #penetration_testing #pentesting #ethical_hacking
════════════════════════
𐀪 Author: Roshan Rajbanshi
════════════════════════
ⴵ Time: Fri, 24 Apr 2026 10:04:02 GMT
════════════════════════
⌗ Tags: #tryhackme_walkthrough #cybersecurity #penetration_testing #pentesting #ethical_hacking
Medium
Spring — Spring Boot Actuator RCE + Symlink Arbitrary Write to Root | TryHackMe
This machine presents a deliberately misconfigured Spring Boot application sitting behind HTTPS on port 443. The attack surface opened…
⤷ Title: Is Penetration Testing Becoming a Complex Process
════════════════════════
𐀪 Author: Reema K.R
════════════════════════
ⴵ Time: Fri, 24 Apr 2026 09:53:17 GMT
════════════════════════
⌗ Tags: #cybersecurity #cyber_security_awareness #penetration_testing #software_testing #software_development
════════════════════════
𐀪 Author: Reema K.R
════════════════════════
ⴵ Time: Fri, 24 Apr 2026 09:53:17 GMT
════════════════════════
⌗ Tags: #cybersecurity #cyber_security_awareness #penetration_testing #software_testing #software_development
Medium
Is Penetration Testing Becoming a Complex Process
Penetration testing, often called pentesting, is a part of modern cybersecurity. It has helped organisations identify vulnerabilities…
⤷ Title: AI Forensics | TryHackMe
════════════════════════
𐀪 Author: Binish Alamgir
════════════════════════
ⴵ Time: Fri, 24 Apr 2026 10:33:03 GMT
════════════════════════
⌗ Tags: #tryhackme #programming #cybersecurity #tryhackme_walkthrough #technology
════════════════════════
𐀪 Author: Binish Alamgir
════════════════════════
ⴵ Time: Fri, 24 Apr 2026 10:33:03 GMT
════════════════════════
⌗ Tags: #tryhackme #programming #cybersecurity #tryhackme_walkthrough #technology
Medium
AI Forensics | TryHackMe
Task 1 Introduction:
⤷ Title: AI/ML Security Threats | TryHackMe
════════════════════════
𐀪 Author: Binish Alamgir
════════════════════════
ⴵ Time: Fri, 24 Apr 2026 10:14:37 GMT
════════════════════════
⌗ Tags: #technology #cybersecurity #tryhackme #programming #tryhackme_walkthrough
════════════════════════
𐀪 Author: Binish Alamgir
════════════════════════
ⴵ Time: Fri, 24 Apr 2026 10:14:37 GMT
════════════════════════
⌗ Tags: #technology #cybersecurity #tryhackme #programming #tryhackme_walkthrough
Medium
AI/ML Security Threats | TryHackMe
Task 1 Introduction:
⤷ Title: OSINT REHBERİ: Sadece Bir Kullanıcı Adıyla Seni Takip Ettim
════════════════════════
𐀪 Author: CASSANDRA
════════════════════════
ⴵ Time: Fri, 24 Apr 2026 09:35:46 GMT
════════════════════════
⌗ Tags: #osint_tool #cassandra #tryhackme
════════════════════════
𐀪 Author: CASSANDRA
════════════════════════
ⴵ Time: Fri, 24 Apr 2026 09:35:46 GMT
════════════════════════
⌗ Tags: #osint_tool #cassandra #tryhackme
Medium
OSINT REHBERİ: Sadece Bir Kullanıcı Adıyla Seni Takip Ettim
Herkese Merhaba! Bugün sizinle bir “dijital ayak izini” takip edeceğiz. Değerli üyemiz İrem Kılıçer’in yazısını sizlerle paylaşıyoruz. Peki…
⤷ Title: Evil-GPT | TryHackMe Write-up
════════════════════════
𐀪 Author: iIyas
════════════════════════
ⴵ Time: Fri, 24 Apr 2026 09:31:01 GMT
════════════════════════
⌗ Tags: #ai #llm #ctf #ctf_writeup #tryhackme
════════════════════════
𐀪 Author: iIyas
════════════════════════
ⴵ Time: Fri, 24 Apr 2026 09:31:01 GMT
════════════════════════
⌗ Tags: #ai #llm #ctf #ctf_writeup #tryhackme
Medium
Evil-GPT | TryHackMe Write-up
Hello everyone, today we’ll solve the Evil GPT room where a rogue AI has taken control of a system and is using a natural language…
⤷ Title: TryHackMe (THM) Blue Walkthrough + Answer
════════════════════════
𐀪 Author: Mann Diwani
════════════════════════
ⴵ Time: Fri, 24 Apr 2026 09:10:38 GMT
════════════════════════
⌗ Tags: #eternalblue #tryhackme_walkthrough #tryhackme
════════════════════════
𐀪 Author: Mann Diwani
════════════════════════
ⴵ Time: Fri, 24 Apr 2026 09:10:38 GMT
════════════════════════
⌗ Tags: #eternalblue #tryhackme_walkthrough #tryhackme
Medium
TryHackMe (THM) Blue Walkthrough + Answer
🔗Room Link : https://tryhackme.com/room/blue
⤷ Title: Attack Campaign: Tunisian Gov Database Breached,French Healthcare Data Stolen
════════════════════════
𐀪 Author: PhatomCandle
════════════════════════
ⴵ Time: Fri, 24 Apr 2026 10:35:43 GMT
════════════════════════
⌗ Tags: #threat_intelligence #apt #sql_injection #cybersecurity
════════════════════════
𐀪 Author: PhatomCandle
════════════════════════
ⴵ Time: Fri, 24 Apr 2026 10:35:43 GMT
════════════════════════
⌗ Tags: #threat_intelligence #apt #sql_injection #cybersecurity
Medium
Attack Campaign: Tunisian Gov Database Breached,French Healthcare Data Stolen
Attacker's server reveals SQLi breaches of Tunisian gov databases and theft of many French patient records in a suspected APT campaign
⤷ Title: Bridging the AI Agent Authority Gap: Continuous Observability as the Decision Engine
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Fri, 24 Apr 2026 17:19:00 +0530
════════════════════════
⌗ Tags: No_Tags
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Fri, 24 Apr 2026 17:19:00 +0530
════════════════════════
⌗ Tags: No_Tags
⤷ Title: 26 FakeWallet Apps Found on Apple App Store Targeting Crypto Seed Phrases
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Fri, 24 Apr 2026 17:18:00 +0530
════════════════════════
⌗ Tags: No_Tags
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Fri, 24 Apr 2026 17:18:00 +0530
════════════════════════
⌗ Tags: No_Tags
⤷ Title: Triple Threat: Apache ActiveMQ Vulnerabilities Expose Enterprises to RCE and XSS
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 24 Apr 2026 12:42:19 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Apache ActiveMQ #CVE_2026_40466 #CVE_2026_41043 #CVE_2026_41044 #cybersecurity #infosec #Java security #Jolokia #JVM #Middleware Security #rce #Spring Framework #XSS
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 24 Apr 2026 12:42:19 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Apache ActiveMQ #CVE_2026_40466 #CVE_2026_41043 #CVE_2026_41044 #cybersecurity #infosec #Java security #Jolokia #JVM #Middleware Security #rce #Spring Framework #XSS
Daily CyberSecurity
Triple Threat: Apache ActiveMQ Vulnerabilities Expose Enterprises to RCE and XSS
Critical RCE and XSS vulnerabilities hit Apache ActiveMQ (CVE-2026-41044, 40466). Authenticated attackers can hijack the JVM. Update to 5.19.6 or 6.2.5 now.
⤷ Title: Workflow Warning: The n8n CVSS 10.0 Prototype Pollution Crisis
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 24 Apr 2026 12:01:16 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Automation #CVSS 10 #infosec #JavaScript Security #n8n #Node.js #Patch Alert #Prototype Pollution #rce #Webhook Security #XML parsing
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 24 Apr 2026 12:01:16 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Automation #CVSS 10 #infosec #JavaScript Security #n8n #Node.js #Patch Alert #Prototype Pollution #rce #Webhook Security #XML parsing
Daily CyberSecurity
Workflow Warning: The n8n CVSS 10.0 Prototype Pollution Crisis
Critical CVSS 10 and 9.4 vulnerabilities hit n8n. Prototype pollution in XML nodes can lead to full RCE. Patch to v2.18.1 or v1.123.32 immediately.
⤷ Title: dmi⚡ XSS → Admin Takeover — From Browser Control to Full Power
════════════════════════
𐀪 Author: ghostyjoe
════════════════════════
ⴵ Time: Fri, 24 Apr 2026 12:11:56 GMT
════════════════════════
⌗ Tags: #cybersecurity #hacking #linux #vulnerability #bug_bounty
════════════════════════
𐀪 Author: ghostyjoe
════════════════════════
ⴵ Time: Fri, 24 Apr 2026 12:11:56 GMT
════════════════════════
⌗ Tags: #cybersecurity #hacking #linux #vulnerability #bug_bounty
Medium
dmi⚡ XSS → Admin Takeover — From Browser Control to Full Power
✍️ Introduction
⤷ Title: AEM Misconfiguration: How I Pulled 127MB of Internal Repository Data From a Luxury Brand — No Auth…
════════════════════════
𐀪 Author: Mallikarjun Biradar
════════════════════════
ⴵ Time: Fri, 24 Apr 2026 11:51:25 GMT
════════════════════════
⌗ Tags: #cybersecurity #bug_bounty
════════════════════════
𐀪 Author: Mallikarjun Biradar
════════════════════════
ⴵ Time: Fri, 24 Apr 2026 11:51:25 GMT
════════════════════════
⌗ Tags: #cybersecurity #bug_bounty
Medium
AEM Misconfiguration: How I Pulled 127MB of Internal Repository Data From a Luxury Brand — No Auth…
The URL was eight characters longer than it should have been. That’s all it took.
⤷ Title: How to Build a Fully Rooted Android 14 (API 34) Emulator on Windows 11 Using rootAVD
════════════════════════
𐀪 Author: Bash Overflow
════════════════════════
ⴵ Time: Fri, 24 Apr 2026 11:45:23 GMT
════════════════════════
⌗ Tags: #root_android_app #bug_bounty #mobile_pentesting #root_android_phone #rootavd_windows_11
════════════════════════
𐀪 Author: Bash Overflow
════════════════════════
ⴵ Time: Fri, 24 Apr 2026 11:45:23 GMT
════════════════════════
⌗ Tags: #root_android_app #bug_bounty #mobile_pentesting #root_android_phone #rootavd_windows_11
Medium
How to Build a Fully Rooted Android 14 (API 34) Emulator on Windows 11 Using rootAVD
Create a modern rooted Android lab for pentesting, reversing, and mobile app analysis.
⤷ Title: I Found AWS Credentials in a Public JavaScript Bundle. Here’s What That Means.
════════════════════════
𐀪 Author: Mallikarjun Biradar
════════════════════════
ⴵ Time: Fri, 24 Apr 2026 11:33:47 GMT
════════════════════════
⌗ Tags: #cybersecurity #bug_bounty
════════════════════════
𐀪 Author: Mallikarjun Biradar
════════════════════════
ⴵ Time: Fri, 24 Apr 2026 11:33:47 GMT
════════════════════════
⌗ Tags: #cybersecurity #bug_bounty
Medium
I Found AWS Credentials in a Public JavaScript Bundle. Here’s What That Means.
The bundle was minified. The credentials weren’t.
⤷ Title: Reflected XSS in Bali Government Search Endpoint
════════════════════════
𐀪 Author: Osama Alaa
════════════════════════
ⴵ Time: Fri, 24 Apr 2026 11:03:48 GMT
════════════════════════
⌗ Tags: #bug_bounty #vulnerability #hacking #cybersecurity #bugs
════════════════════════
𐀪 Author: Osama Alaa
════════════════════════
ⴵ Time: Fri, 24 Apr 2026 11:03:48 GMT
════════════════════════
⌗ Tags: #bug_bounty #vulnerability #hacking #cybersecurity #bugs
Medium
Reflected XSS in Bali Government Search Endpoint
Summary:
⤷ Title: Support — HTB writeup
════════════════════════
𐀪 Author: Owais Khan
════════════════════════
ⴵ Time: Fri, 24 Apr 2026 12:10:05 GMT
════════════════════════
⌗ Tags: #hackthebox #hackthebox_writeup #active_directory #security #hacking
════════════════════════
𐀪 Author: Owais Khan
════════════════════════
ⴵ Time: Fri, 24 Apr 2026 12:10:05 GMT
════════════════════════
⌗ Tags: #hackthebox #hackthebox_writeup #active_directory #security #hacking
Medium
Support — HTB writeup
It is a retired box that focuses majorly upon reverse engineering and abusing RBCD in active directory. To start our box we initiated nmap…
⤷ Title: How Hackers Actually Attack Online Games — A Cybersecurity Expert Explains
════════════════════════
𐀪 Author: Ramyaabharathi
════════════════════════
ⴵ Time: Fri, 24 Apr 2026 12:04:15 GMT
════════════════════════
⌗ Tags: #infosec #claude #cybersecurity #hacking #gaming
════════════════════════
𐀪 Author: Ramyaabharathi
════════════════════════
ⴵ Time: Fri, 24 Apr 2026 12:04:15 GMT
════════════════════════
⌗ Tags: #infosec #claude #cybersecurity #hacking #gaming
Medium
How Hackers Actually Attack Online Games — A Cybersecurity Expert Explains
Your K/D ratio isn’t the only thing being tracked.
⤷ Title: Overthewire Room (Natas)
════════════════════════
𐀪 Author: nafay
════════════════════════
ⴵ Time: Fri, 24 Apr 2026 11:54:03 GMT
════════════════════════
⌗ Tags: #overthewire_natas #hacking
════════════════════════
𐀪 Author: nafay
════════════════════════
ⴵ Time: Fri, 24 Apr 2026 11:54:03 GMT
════════════════════════
⌗ Tags: #overthewire_natas #hacking
Medium
Overthewire Room (Natas)
Level 0
⤷ Title: Why access-first auth matters?
════════════════════════
𐀪 Author: Anton Minin Baranovskii
════════════════════════
ⴵ Time: Fri, 24 Apr 2026 11:05:25 GMT
════════════════════════
⌗ Tags: #architecture #cybersecurity #open_source #infosec #authentication
════════════════════════
𐀪 Author: Anton Minin Baranovskii
════════════════════════
ⴵ Time: Fri, 24 Apr 2026 11:05:25 GMT
════════════════════════
⌗ Tags: #architecture #cybersecurity #open_source #infosec #authentication
Medium
Why access-first auth matters?
In this article, I briefly explain why Toqen.app is built around an access-first authentication infrastructure.