⤷ Title: Billing TryHackMe — Boot2root CTF challenge writeup
════════════════════════
𐀪 Author: Scorpius
════════════════════════
ⴵ Time: Fri, 24 Apr 2026 19:34:25 GMT
════════════════════════
⌗ Tags: #tryhackme #web_exploitation #cybersecurity #ethical_hacking #ctf_writeup
════════════════════════
𐀪 Author: Scorpius
════════════════════════
ⴵ Time: Fri, 24 Apr 2026 19:34:25 GMT
════════════════════════
⌗ Tags: #tryhackme #web_exploitation #cybersecurity #ethical_hacking #ctf_writeup
Medium
Billing TryHackMe — Boot2root CTF challenge writeup
Room link: https://tryhackme.com/room/billing
⤷ Title: How I Earned €200 in 10 Minutes by Exploiting a Race Condition on a Job Application Portal
════════════════════════
𐀪 Author: Amrgomaa
════════════════════════
ⴵ Time: Fri, 24 Apr 2026 21:51:01 GMT
════════════════════════
⌗ Tags: #bug_bounty_writeup #bug_bounty #bug_bounty_tips #penetration_testing #rce_vulnerability
════════════════════════
𐀪 Author: Amrgomaa
════════════════════════
ⴵ Time: Fri, 24 Apr 2026 21:51:01 GMT
════════════════════════
⌗ Tags: #bug_bounty_writeup #bug_bounty #bug_bounty_tips #penetration_testing #rce_vulnerability
Medium
How I Earned €200 in 10 Minutes by Exploiting a Race Condition on a Job Application Portal
A simple business logic bypass using Burp Suite’s parallel sending feature — no complex exploit, no fancy tooling. Just timing.
⤷ Title: MCP Is the Biggest Security Blind Spot in AI Right Now. Here’s What I Found.
════════════════════════
𐀪 Author: Okan Yıldız
════════════════════════
ⴵ Time: Fri, 24 Apr 2026 21:03:15 GMT
════════════════════════
⌗ Tags: #cybersecurity #ai_security #hacking #llm #ai
════════════════════════
𐀪 Author: Okan Yıldız
════════════════════════
ⴵ Time: Fri, 24 Apr 2026 21:03:15 GMT
════════════════════════
⌗ Tags: #cybersecurity #ai_security #hacking #llm #ai
Medium
MCP Is the Biggest Security Blind Spot in AI Right Now. Here’s What I Found.
Okan YILDIZ Global Cybersecurity Leader | Innovating for Secure Digital Futures | Trusted Advisor in Cyber Resilience | March 15, 2026
⤷ Title: TryHackMe Recruit Writeup
════════════════════════
𐀪 Author: Aniketchoudhury
════════════════════════
ⴵ Time: Fri, 24 Apr 2026 21:44:10 GMT
════════════════════════
⌗ Tags: #tryhackme #ctf #web_app_pentesting #ssrf #cybersecurity
════════════════════════
𐀪 Author: Aniketchoudhury
════════════════════════
ⴵ Time: Fri, 24 Apr 2026 21:44:10 GMT
════════════════════════
⌗ Tags: #tryhackme #ctf #web_app_pentesting #ssrf #cybersecurity
Medium
TryHackMe Recruit Writeup
TryHackMe Recruit: Medium difficulty
⤷ Title: Lab: HTTP request smuggling, confirming a CL.TE vulnerability via differential responses
════════════════════════
𐀪 Author: Mohamed Amgad
════════════════════════
ⴵ Time: Sat, 25 Apr 2026 00:13:15 GMT
════════════════════════
⌗ Tags: #http_request_smuggling #web_security #portswigger #bug_bounty
════════════════════════
𐀪 Author: Mohamed Amgad
════════════════════════
ⴵ Time: Sat, 25 Apr 2026 00:13:15 GMT
════════════════════════
⌗ Tags: #http_request_smuggling #web_security #portswigger #bug_bounty
Medium
Lab: HTTP request smuggling, confirming a CL.TE vulnerability via differential responses
Before diving into the lab, there are some important concepts we need to understand first: what Content-Length and Transfer-Encoding are…
⤷ Title: WebVersePro Labs — Challenge: Herbalist Remedies Writeup (NoSQL Injection)
════════════════════════
𐀪 Author: Zor0ark
════════════════════════
ⴵ Time: Sat, 25 Apr 2026 00:01:02 GMT
════════════════════════
⌗ Tags: #nosqli #ctf_writeup #bug_bounty #web_penetration_testing #ctf
════════════════════════
𐀪 Author: Zor0ark
════════════════════════
ⴵ Time: Sat, 25 Apr 2026 00:01:02 GMT
════════════════════════
⌗ Tags: #nosqli #ctf_writeup #bug_bounty #web_penetration_testing #ctf
Medium
WebVersePro Labs — Challenge: Herbalist Remedies Writeup (NoSQL Injection)
OBJECTIVE: Bypass the authentication mechanism of a MongoDB-backed web application by exploiting a NoSQL Injection (NoSQLi) vulnerability…
⤷ Title: SSRF Master Guide: Exploitation and Mitigation Strategies
════════════════════════
𐀪 Author: JPablo13
════════════════════════
ⴵ Time: Sat, 25 Apr 2026 00:01:02 GMT
════════════════════════
⌗ Tags: #cybersecurity #web_development #bug_bounty #hacking #technology
════════════════════════
𐀪 Author: JPablo13
════════════════════════
ⴵ Time: Sat, 25 Apr 2026 00:01:02 GMT
════════════════════════
⌗ Tags: #cybersecurity #web_development #bug_bounty #hacking #technology
Medium
SSRF Master Guide: Exploitation and Mitigation Strategies
Learn how to identify and exploit SSRF vulnerabilities in cloud-native environments, from metadata services to filter bypass.
⤷ Title: Easiest $100 on Hackerone | Null Byte Broke Authentication
════════════════════════
𐀪 Author: StvRoot
════════════════════════
ⴵ Time: Fri, 24 Apr 2026 23:55:36 GMT
════════════════════════
⌗ Tags: #cybersecurity #technology #programming #bug_bounty #tech
════════════════════════
𐀪 Author: StvRoot
════════════════════════
ⴵ Time: Fri, 24 Apr 2026 23:55:36 GMT
════════════════════════
⌗ Tags: #cybersecurity #technology #programming #bug_bounty #tech
Medium
Easiest $100 on Hackerone | Null Byte Broke Authentication
Welcome again!
⤷ Title: Conducting Security Testing on Senior Year Project: AI-Powered Wardrobe Platform
════════════════════════
𐀪 Author: Onurcan Genç
════════════════════════
ⴵ Time: Fri, 24 Apr 2026 23:52:43 GMT
════════════════════════
⌗ Tags: #prompt_injection #ai_red_teaming #offensive_security #artificial_intelligence #application_security
════════════════════════
𐀪 Author: Onurcan Genç
════════════════════════
ⴵ Time: Fri, 24 Apr 2026 23:52:43 GMT
════════════════════════
⌗ Tags: #prompt_injection #ai_red_teaming #offensive_security #artificial_intelligence #application_security
Medium
Conducting Security Testing on Senior Year Project: AI-Powered Wardrobe Platform
We built an AI wardrobe app then as security tester, I tried to break it. Here's what held up and what didn't.
⤷ Title: ShinyHunters Unmasked: Exploring the Ethics and Implications of the World’s Leading Cyberhack…
════════════════════════
𐀪 Author: Everson Taveras
════════════════════════
ⴵ Time: Sat, 25 Apr 2026 00:51:39 GMT
════════════════════════
⌗ Tags: #hacking #cybercrime #privacy #cybersecurity #artificial_intelligence
════════════════════════
𐀪 Author: Everson Taveras
════════════════════════
ⴵ Time: Sat, 25 Apr 2026 00:51:39 GMT
════════════════════════
⌗ Tags: #hacking #cybercrime #privacy #cybersecurity #artificial_intelligence
Medium
ShinyHunters Unmasked: Exploring the Ethics and Implications of the World’s Leading Cyberhack Collective
A shadowy collective is quietly harvesting the data of the digital age — exposing how our rush toward convenience, and our growing…
⤷ Title: 8 Cybersecurity Websites Most Professionals Are Sleeping On (But Shouldn’t Be)
════════════════════════
𐀪 Author: Regan Temudo
════════════════════════
ⴵ Time: Fri, 24 Apr 2026 23:48:47 GMT
════════════════════════
⌗ Tags: #osint #cybersecurity #hacking #technology #artificial_intelligence
════════════════════════
𐀪 Author: Regan Temudo
════════════════════════
ⴵ Time: Fri, 24 Apr 2026 23:48:47 GMT
════════════════════════
⌗ Tags: #osint #cybersecurity #hacking #technology #artificial_intelligence
⤷ Title: Method-based access control can be circumvented - Portswigger Academy
════════════════════════
𐀪 Author: 7s26Simon
════════════════════════
ⴵ Time: Fri, 24 Apr 2026 23:07:53 GMT
════════════════════════
⌗ Tags: #portswigger_lab #portswigger #ctf #ctf_writeup #hacking
════════════════════════
𐀪 Author: 7s26Simon
════════════════════════
ⴵ Time: Fri, 24 Apr 2026 23:07:53 GMT
════════════════════════
⌗ Tags: #portswigger_lab #portswigger #ctf #ctf_writeup #hacking
Medium
Method-based access control can be circumvented - Portswigger Academy
A look at Portswigger Academy’s access control lab:
⤷ Title: How Hackers Use OSINT Before Attacking
════════════════════════
𐀪 Author: Hania Khan
════════════════════════
ⴵ Time: Fri, 24 Apr 2026 23:55:33 GMT
════════════════════════
⌗ Tags: #osint #threat_intelligence #cybersecurity #infosec #data_protection
════════════════════════
𐀪 Author: Hania Khan
════════════════════════
ⴵ Time: Fri, 24 Apr 2026 23:55:33 GMT
════════════════════════
⌗ Tags: #osint #threat_intelligence #cybersecurity #infosec #data_protection
⤷ Title: OffSec Proving Grounds “Monitoring” Writeup
════════════════════════
𐀪 Author: sabR
════════════════════════
ⴵ Time: Fri, 24 Apr 2026 23:04:28 GMT
════════════════════════
⌗ Tags: #cybersecurity #hackthebox #pentesting #penetration_testing #ctf
════════════════════════
𐀪 Author: sabR
════════════════════════
ⴵ Time: Fri, 24 Apr 2026 23:04:28 GMT
════════════════════════
⌗ Tags: #cybersecurity #hackthebox #pentesting #penetration_testing #ctf
Medium
OffSec Proving Grounds “Monitoring” Writeup
Step 1: Reconnaisance
⤷ Title: Mastering the Gates: Firewalls, VPNs, and Network Simulation
════════════════════════
𐀪 Author: Jonathan Sanfer
════════════════════════
ⴵ Time: Sat, 25 Apr 2026 00:05:38 GMT
════════════════════════
⌗ Tags: #tryhackme #tutorial #networking #information_security #cybersecurity
════════════════════════
𐀪 Author: Jonathan Sanfer
════════════════════════
ⴵ Time: Sat, 25 Apr 2026 00:05:38 GMT
════════════════════════
⌗ Tags: #tryhackme #tutorial #networking #information_security #cybersecurity
Medium
Mastering the Gates: Firewalls, VPNs, and Network Simulation
Introduction
⤷ Title: Introducción a la API de Windows para el Desarrollo de Malware — Parte 5
════════════════════════
𐀪 Author: Dalton
════════════════════════
ⴵ Time: Fri, 24 Apr 2026 23:11:00 GMT
════════════════════════
⌗ Tags: #malware_development #hacking_tools #malware #ethical_hacking #red_team
════════════════════════
𐀪 Author: Dalton
════════════════════════
ⴵ Time: Fri, 24 Apr 2026 23:11:00 GMT
════════════════════════
⌗ Tags: #malware_development #hacking_tools #malware #ethical_hacking #red_team
Medium
Introducción a la API de Windows para el Desarrollo de Malware — Parte 5
Qué tal amigos, en la entrega anterior estuvimos viendo el formato PE, la estructura que Windows lee antes de ejecutar cualquier archivo…
⤷ Title: How a Simple Chromium Spoofing Bug Got Me $3000
════════════════════════
𐀪 Author: Azza0X1A
════════════════════════
ⴵ Time: Sat, 25 Apr 2026 00:45:27 GMT
════════════════════════
⌗ Tags: #chromium #bug_bounty_tips #spoofing
════════════════════════
𐀪 Author: Azza0X1A
════════════════════════
ⴵ Time: Sat, 25 Apr 2026 00:45:27 GMT
════════════════════════
⌗ Tags: #chromium #bug_bounty_tips #spoofing
Medium
How a Simple Chromium Spoofing Bug Got Me $3000
Submitted: January 10, 2026–08:40 PM Fixed: February 3, 2026–01:12 AM Rewarded: February 21, 2026–12:55 AM Reward: $3000 Chrome VRP
⤷ Title: Tactical Evolution: Trigona Ransomware Debuts Custom Exfiltration Armory
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Sat, 25 Apr 2026 01:32:08 +0000
════════════════════════
⌗ Tags: #Cybercriminals #AnyDesk #cybersecurity #data exfiltration #infosec #Kernel Drivers #Malware Analysis #mimikatz #Network Evasion #ransomware #Rhantus syndicate #Trigona Ransomware #uploader_client.exe
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Sat, 25 Apr 2026 01:32:08 +0000
════════════════════════
⌗ Tags: #Cybercriminals #AnyDesk #cybersecurity #data exfiltration #infosec #Kernel Drivers #Malware Analysis #mimikatz #Network Evasion #ransomware #Rhantus syndicate #Trigona Ransomware #uploader_client.exe
Daily CyberSecurity
Tactical Evolution: Trigona Ransomware Debuts Custom Exfiltration Armory
Trigona ransomware swaps Rclone for a custom tool that rotates connections to evade monitoring. Learn how uploader_client.exe powers their data theft.
⤷ Title: If I Were Starting Cyber Security in 2026, This Is Exactly What I Would Do
════════════════════════
𐀪 Author: Gulshan Rahman
════════════════════════
ⴵ Time: Sat, 25 Apr 2026 02:19:50 GMT
════════════════════════
⌗ Tags: #ethical_hacking #cybersecurity #career_growth #information_security #career_technology
════════════════════════
𐀪 Author: Gulshan Rahman
════════════════════════
ⴵ Time: Sat, 25 Apr 2026 02:19:50 GMT
════════════════════════
⌗ Tags: #ethical_hacking #cybersecurity #career_growth #information_security #career_technology
Medium
If I Were Starting Cyber Security in 2026, This Is Exactly What I Would Do
A realistic beginner roadmap to becoming a Cyber Security professional — without falling into the “hacker fantasy” trap
⤷ Title: Which Tool to Use When Web App Pentesting?
════════════════════════
𐀪 Author: The Husky Hacker
════════════════════════
ⴵ Time: Sat, 25 Apr 2026 02:02:23 GMT
════════════════════════
⌗ Tags: #web_app_pentesting #ethical_hacking
════════════════════════
𐀪 Author: The Husky Hacker
════════════════════════
ⴵ Time: Sat, 25 Apr 2026 02:02:23 GMT
════════════════════════
⌗ Tags: #web_app_pentesting #ethical_hacking
Medium
Which Tool to Use When Web App Pentesting?
Honestly, after doing a few web app pentests, I started researching a classic tool, Burp Suite Community. However, during one course, I was…
⤷ Title: HTTP Headers & OWASP ZAP — Reading What Servers Reveal About Themselves
════════════════════════
𐀪 Author: Juan Manuel Yepes
════════════════════════
ⴵ Time: Sat, 25 Apr 2026 01:41:01 GMT
════════════════════════
⌗ Tags: #ethical_hacking #cybersecurity #owasp #web_security
════════════════════════
𐀪 Author: Juan Manuel Yepes
════════════════════════
ⴵ Time: Sat, 25 Apr 2026 01:41:01 GMT
════════════════════════
⌗ Tags: #ethical_hacking #cybersecurity #owasp #web_security
Medium
HTTP Headers & OWASP ZAP — Reading What Servers Reveal About Themselves
Every HTTP response is a conversation. Most people only read the body — but the headers tell you everything about how a server is…