⤷ Title: HTB Principal — Write-up
════════════════════════
𐀪 Author: Shxdowz
════════════════════════
ⴵ Time: Mon, 27 Apr 2026 19:57:13 GMT
════════════════════════
⌗ Tags: #walkthrough #hackthebox_writeup #ctf #hackthebox #hacking
════════════════════════
𐀪 Author: Shxdowz
════════════════════════
ⴵ Time: Mon, 27 Apr 2026 19:57:13 GMT
════════════════════════
⌗ Tags: #walkthrough #hackthebox_writeup #ctf #hackthebox #hacking
Medium
HTB Principal — Write-up
Difficulty: Medium | OS: Linux | Category: Web + PrivEsc
⤷ Title: 15 Vulnerable Websites for Legal Penetration/Hacking Practice
════════════════════════
𐀪 Author: Dr-FaranBaloch
════════════════════════
ⴵ Time: Mon, 27 Apr 2026 19:56:17 GMT
════════════════════════
⌗ Tags: #networking #ai #google #darkwebsites #hacking
════════════════════════
𐀪 Author: Dr-FaranBaloch
════════════════════════
ⴵ Time: Mon, 27 Apr 2026 19:56:17 GMT
════════════════════════
⌗ Tags: #networking #ai #google #darkwebsites #hacking
Medium
15 Vulnerable Websites for Legal Penetration/Hacking Practice
⤷ Title: Someone Already Has Your Encrypted Data. They’re Just Waiting.
════════════════════════
𐀪 Author: Red Oxyde
════════════════════════
ⴵ Time: Mon, 27 Apr 2026 20:36:05 GMT
════════════════════════
⌗ Tags: #quantum_computing #cybersecurity #post_quantum #infosec #cryptography
════════════════════════
𐀪 Author: Red Oxyde
════════════════════════
ⴵ Time: Mon, 27 Apr 2026 20:36:05 GMT
════════════════════════
⌗ Tags: #quantum_computing #cybersecurity #post_quantum #infosec #cryptography
Medium
Someone Already Has Your Encrypted Data. They’re Just Waiting.
Not the dramatic kind. No zero-days, no ransomware war rooms, no breach notifications landing at 3am. The slow, structural kind, the…
⤷ Title: PNPT Exam Review 2026: Tips, Mistakes, and What Actually Matters
════════════════════════
𐀪 Author: Hemantha Krishna Challa
════════════════════════
ⴵ Time: Mon, 27 Apr 2026 19:52:13 GMT
════════════════════════
⌗ Tags: #pnpt #penetration_testing #cybersecurity #red_team #tcm_security
════════════════════════
𐀪 Author: Hemantha Krishna Challa
════════════════════════
ⴵ Time: Mon, 27 Apr 2026 19:52:13 GMT
════════════════════════
⌗ Tags: #pnpt #penetration_testing #cybersecurity #red_team #tcm_security
Medium
PNPT Exam Review 2026: Tips, Mistakes, and What Actually Matters
After grinding through the courses, learning from a failed first attempt at the PJPT, and spending several intense days inside the exam…
⤷ Title: XSS (Cross Site Scripting): Bug Hunter’s Exploitation Guide
════════════════════════
𐀪 Author: 3L173 H4CK3R 1337 (Elite Hacker 1337)
════════════════════════
ⴵ Time: Mon, 27 Apr 2026 19:30:28 GMT
════════════════════════
⌗ Tags: #web_development #xss_attack #ethical_hacking #cybersecurity #software_development
════════════════════════
𐀪 Author: 3L173 H4CK3R 1337 (Elite Hacker 1337)
════════════════════════
ⴵ Time: Mon, 27 Apr 2026 19:30:28 GMT
════════════════════════
⌗ Tags: #web_development #xss_attack #ethical_hacking #cybersecurity #software_development
Medium
XSS (Cross Site Scripting): Bug Hunter’s Guide
“” is published by 3L173 H4CK3R 1337 (Elite Hacker 1337).
⤷ Title: Understanding Darknet Opioids: Risks, Trends, and Market Signals
════════════════════════
𐀪 Author: Tor BBB
════════════════════════
ⴵ Time: Mon, 27 Apr 2026 21:01:51 GMT
════════════════════════
⌗ Tags: #osint #darkweb #infosec #cybersecurity
════════════════════════
𐀪 Author: Tor BBB
════════════════════════
ⴵ Time: Mon, 27 Apr 2026 21:01:51 GMT
════════════════════════
⌗ Tags: #osint #darkweb #infosec #cybersecurity
Medium
Understanding Darknet Opioids: Risks, Trends, and Market Signals
The conversation around opioids has evolved far beyond traditional supply chains. In recent years, researchers and cybersecurity analysts…
⤷ Title: TryHackMe: Nessus — My First Vulnerability Scan with Tenable
════════════════════════
𐀪 Author: Robert Perez
════════════════════════
ⴵ Time: Mon, 27 Apr 2026 21:13:57 GMT
════════════════════════
⌗ Tags: #tryhackme #vulnerability #nessus #penetration_testing #cybersecurity
════════════════════════
𐀪 Author: Robert Perez
════════════════════════
ⴵ Time: Mon, 27 Apr 2026 21:13:57 GMT
════════════════════════
⌗ Tags: #tryhackme #vulnerability #nessus #penetration_testing #cybersecurity
Medium
TryHackMe: Nessus — My First Vulnerability Scan with Tenable
Why This Lab Matters
⤷ Title: Guía de Prototype Pollution: Vulnerabilidades, Vectores de Ataque y RCE
════════════════════════
𐀪 Author: JPablo13
════════════════════════
ⴵ Time: Tue, 28 Apr 2026 00:00:12 GMT
════════════════════════
⌗ Tags: #web_development #hacking #technology #cybersecurity #bug_bounty
════════════════════════
𐀪 Author: JPablo13
════════════════════════
ⴵ Time: Tue, 28 Apr 2026 00:00:12 GMT
════════════════════════
⌗ Tags: #web_development #hacking #technology #cybersecurity #bug_bounty
Medium
Guía de Prototype Pollution: Vulnerabilidades, Vectores de Ataque y RCE
Aprende qué es el Prototype Pollution, sus riesgos de RCE y XSS, y cómo detectar esta vulnerabilidad crítica en JavaScript.
⤷ Title: Exploiting AI agents to perform destructive actions — Portswigger
════════════════════════
𐀪 Author: Berat Arslan
════════════════════════
ⴵ Time: Mon, 27 Apr 2026 23:06:25 GMT
════════════════════════
⌗ Tags: #bug_bounty #portswigger #cybersecurity #ai_hacking #prompt_injection_attack
════════════════════════
𐀪 Author: Berat Arslan
════════════════════════
ⴵ Time: Mon, 27 Apr 2026 23:06:25 GMT
════════════════════════
⌗ Tags: #bug_bounty #portswigger #cybersecurity #ai_hacking #prompt_injection_attack
Medium
Exploiting AI agents to perform destructive actions — Portswigger
This lab was completed entirely using AI automation for testing purposes
⤷ Title: Day 4: Kali Linux for Beginners: 40 Linux Commands Hackers Use Daily PART (A)
════════════════════════
𐀪 Author: HusnaAnjum
════════════════════════
ⴵ Time: Tue, 28 Apr 2026 00:54:16 GMT
════════════════════════
⌗ Tags: #cybersecurity #learning #linux_commands #ethical_hacking #kali_linux
════════════════════════
𐀪 Author: HusnaAnjum
════════════════════════
ⴵ Time: Tue, 28 Apr 2026 00:54:16 GMT
════════════════════════
⌗ Tags: #cybersecurity #learning #linux_commands #ethical_hacking #kali_linux
Medium
Day 4: Kali Linux for Beginners: 40 Linux Commands Hackers Use Daily PART (A)
Kali Linux
⤷ Title: HTB USF CTF AI Shard-Council Writeup
════════════════════════
𐀪 Author: Rpranaav
════════════════════════
ⴵ Time: Mon, 27 Apr 2026 23:23:19 GMT
════════════════════════
⌗ Tags: #ethical_hacking #large_language_models #artificial_intelligence #ctf #cybersecurity
════════════════════════
𐀪 Author: Rpranaav
════════════════════════
ⴵ Time: Mon, 27 Apr 2026 23:23:19 GMT
════════════════════════
⌗ Tags: #ethical_hacking #large_language_models #artificial_intelligence #ctf #cybersecurity
Medium
HTB USF CTF AI Shard-Council Writeup
CTF Writeup: Shard-Council
⤷ Title: How to Secure Your APIs: A Practical Phased Implementation Guide
════════════════════════
𐀪 Author: Shahid Sharif
════════════════════════
ⴵ Time: Tue, 28 Apr 2026 00:19:41 GMT
════════════════════════
⌗ Tags: #api_gateway #api_security #api #data_protection #cybersecurity
════════════════════════
𐀪 Author: Shahid Sharif
════════════════════════
ⴵ Time: Tue, 28 Apr 2026 00:19:41 GMT
════════════════════════
⌗ Tags: #api_gateway #api_security #api #data_protection #cybersecurity
Medium
How to Secure Your APIs: A Practical Phased Implementation Guide
Modern organizations operate dozens to hundreds of APIs spanning internal microservices, third-party SaaS integrations, and public-facing…
⤷ Title: DVWA : SQL Injection Vulnerability Solution (Low vs Medium Level)
════════════════════════
𐀪 Author: Keichains
════════════════════════
ⴵ Time: Mon, 27 Apr 2026 23:55:08 GMT
════════════════════════
⌗ Tags: #ctf #dvwa #sql_injection #ctf_writeup
════════════════════════
𐀪 Author: Keichains
════════════════════════
ⴵ Time: Mon, 27 Apr 2026 23:55:08 GMT
════════════════════════
⌗ Tags: #ctf #dvwa #sql_injection #ctf_writeup
Medium
DVWA : SQL Injection Vulnerability Solution (Low vs Medium Level)
Our primary goal for this lab: There are 5 users in the database (IDs 1 to 5), and our task is to steal their passwords through SQLi.
⤷ Title: Injection Flaws (CVE-2026-40967 & 40978) Hit Spring AI Vector Stores
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 28 Apr 2026 02:39:57 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #AI security #CosmosDB #CVE_2026_40967 #CVE_2026_40978 #infosec #Java security #Patch Alert #RAG #Spring AI #sql injection #Vector Database
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 28 Apr 2026 02:39:57 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #AI security #CosmosDB #CVE_2026_40967 #CVE_2026_40978 #infosec #Java security #Patch Alert #RAG #Spring AI #sql injection #Vector Database
Daily CyberSecurity
Injection Flaws (CVE-2026-40967 & 40978) Hit Spring AI Vector Stores
Spring AI discloses two critical injection flaws (CVE-2026-40967 & 40978) in Vector Store implementations. Upgrade to v1.0.6 or v1.1.5 now to prevent data leaks.
⤷ Title: From Shanghai to Houston: The HAFNIUM Hacker Who Stole Vaccine Secrets Faces Justice
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 28 Apr 2026 02:12:48 +0000
════════════════════════
⌗ Tags: #Cybercriminals #china #COVID_19 Vaccine #cyber_espionage #DOJ #fbi #HAFNIUM #Microsoft Exchange #MSS #Shanghai Powerock #Shanghai State Security Bureau #Xu Zewei #Zhang Yu
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 28 Apr 2026 02:12:48 +0000
════════════════════════
⌗ Tags: #Cybercriminals #china #COVID_19 Vaccine #cyber_espionage #DOJ #fbi #HAFNIUM #Microsoft Exchange #MSS #Shanghai Powerock #Shanghai State Security Bureau #Xu Zewei #Zhang Yu
Daily CyberSecurity
From Shanghai to Houston: The HAFNIUM Hacker Who Stole Vaccine Secrets Faces Justice
PRC national Xu Zewei extradited to the US for HAFNIUM intrusions and targeting COVID-19 research. He faces a 9-count indictment for state-sponsored hacks.
⤷ Title: Critical LiteLLM SQL Injection (CVE-2026-42208) Exploited in the Wild
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 28 Apr 2026 01:53:32 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #AI security #CVE_2026_42208 #cybersecurity #Data Breach #Exploit #infosec #LiteLLM #Patch Alert #PostgreSQL #sql injection #Sysdig
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 28 Apr 2026 01:53:32 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #AI security #CVE_2026_42208 #cybersecurity #Data Breach #Exploit #infosec #LiteLLM #Patch Alert #PostgreSQL #sql injection #Sysdig
Daily CyberSecurity
Critical LiteLLM SQL Injection (CVE-2026-42208) Exploited in the Wild
LiteLLM CVE-2026-42208 is under active exploitation. Attackers are using SQL injection to steal AI credentials. Patch to v1.83.7 and rotate keys immediately.
⤷ Title: Apache MINA Hit by Twin Critical RCE Flaws
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 28 Apr 2026 01:00:38 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #AbstractIoBuffer #Apache MINA #CVE_2026_41635 #cybersecurity #Deserialization #infosec #Java security #network_security #Patch Alert #rce
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 28 Apr 2026 01:00:38 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #AbstractIoBuffer #Apache MINA #CVE_2026_41635 #cybersecurity #Deserialization #infosec #Java security #network_security #Patch Alert #rce
Daily CyberSecurity
Unfiltered: The 9.8 CVSS Deserialization Loophole Hijacking Apache MINA
Apache MINA (CVE-2026-41635) suffers a critical 9.8 CVSS RCE flaw. Learn how a deserialization filter bypass puts servers at risk and how to patch today.
⤷ Title: Strategi SEO & Growth Traffic Website di 2026: Cara Bangun Traffic Organik yang Stabil dan…
════════════════════════
𐀪 Author: Muna Support
════════════════════════
ⴵ Time: Tue, 28 Apr 2026 01:47:57 GMT
════════════════════════
⌗ Tags: #technology #infosec #seo
════════════════════════
𐀪 Author: Muna Support
════════════════════════
ⴵ Time: Tue, 28 Apr 2026 01:47:57 GMT
════════════════════════
⌗ Tags: #technology #infosec #seo
Medium
Strategi SEO & Growth Traffic Website di 2026: Cara Bangun Traffic Organik yang Stabil dan Berkelanjutan
1. SEO Bukan Sekadar Keyword, Tapi Sistem
⤷ Title: Penetration Testing & Ethical Hacking: What It Is and Why Your Business Can’t Ignore It
════════════════════════
𐀪 Author: Bugstrix
════════════════════════
ⴵ Time: Tue, 28 Apr 2026 01:32:41 GMT
════════════════════════
⌗ Tags: #cybersecurity #penetration_testing #ethical_hacking
════════════════════════
𐀪 Author: Bugstrix
════════════════════════
ⴵ Time: Tue, 28 Apr 2026 01:32:41 GMT
════════════════════════
⌗ Tags: #cybersecurity #penetration_testing #ethical_hacking
Medium
Penetration Testing & Ethical Hacking: What It Is and Why Your Business Can’t Ignore It
Most breaches don’t happen because attackers are geniuses. They happen because a misconfigured server was left exposed, a developer reused…
⤷ Title: CTF The London Bridge | TryHackMe
════════════════════════
𐀪 Author: Henrique
════════════════════════
ⴵ Time: Tue, 28 Apr 2026 02:46:07 GMT
════════════════════════
⌗ Tags: #tryhackme #ctf #offensive_security #writeup
════════════════════════
𐀪 Author: Henrique
════════════════════════
ⴵ Time: Tue, 28 Apr 2026 02:46:07 GMT
════════════════════════
⌗ Tags: #tryhackme #ctf #offensive_security #writeup
⤷ Title: Patching the CVSS 10 RCE Hole in Gemini CLI
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 28 Apr 2026 03:01:21 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #@google/gemini_cli #AI security #Automation #CI/CD security #CVSS 10 #Gemini CLI #GitHub Actions #infosec #Patch Alert #Prompt injection #rce
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 28 Apr 2026 03:01:21 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #@google/gemini_cli #AI security #Automation #CI/CD security #CVSS 10 #Gemini CLI #GitHub Actions #infosec #Patch Alert #Prompt injection #rce