⤷ Title: Silver Fox Deploys ABCDoor Malware via Tax-Themed Phishing in India and Russia
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Mon, 04 May 2026 17:27:00 +0530
════════════════════════
⌗ Tags: No_Tags
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Mon, 04 May 2026 17:27:00 +0530
════════════════════════
⌗ Tags: No_Tags
⤷ Title: Sentry’s 9.1 CVSS SSO Flaw Lets Attackers “Link” Their Way Into Your Account
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 04 May 2026 12:45:03 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #2FA #Account Takeover #CVE_2026_42354 #CVSS 9.1 #cybersecurity #Identity Linking #infosec #SAML SSO #Self_Hosted Sentry #sentry #SSO Bypass
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 04 May 2026 12:45:03 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #2FA #Account Takeover #CVE_2026_42354 #CVSS 9.1 #cybersecurity #Identity Linking #infosec #SAML SSO #Self_Hosted Sentry #sentry #SSO Bypass
Daily CyberSecurity
Sentry’s 9.1 CVSS SSO Flaw Lets Attackers "Link" Their Way Into Your Account
Sentry reveals a critical 9.1 CVSS flaw (CVE-2026-42354) in SAML SSO. Multi-org instances are at risk of account takeover via identity linking. Patch now!
⤷ Title: Critical Collision Bug in Auth Library Merges All Patreon Users
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 04 May 2026 12:01:20 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Authentication Bypass #CVE_2026_42560 #cybersecurity #Golang #Identity Collision #infosec #OAuth #Patreon #privilege escalation #Social Login #Web Security
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 04 May 2026 12:01:20 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Authentication Bypass #CVE_2026_42560 #cybersecurity #Golang #Identity Collision #infosec #OAuth #Patreon #privilege escalation #Social Login #Web Security
Daily CyberSecurity
Critical Collision Bug in Auth Library Merges All Patreon Users
A critical 9.1 CVSS flaw in a Go auth library causes a Patreon "identity collision," merging all users into one account. Upgrade to v2.1.2 immediately!
⤷ Title: Fully Exposed: Public PoC Released for the Adobe PDF Vulnerabilities Exploited in the Wild
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 04 May 2026 10:17:34 +0000
════════════════════════
⌗ Tags: #Vulnerability
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 04 May 2026 10:17:34 +0000
════════════════════════
⌗ Tags: #Vulnerability
Daily CyberSecurity
Fully Exposed: Public PoC Released for the Adobe PDF Vulnerabilities Exploited in the Wild
A public PoC has been disclosed for an Adobe Acrobat prototype pollution chain (CVE-2026-34621) actively exploited in the wild. Patch your systems today!
⤷ Title: OpenAI Introduces Advanced Account Security to Safeguard AI Identities
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 04 May 2026 09:14:10 +0000
════════════════════════
⌗ Tags: #Technology #Advanced Account Security #AI Privacy #ChatGPT #cybersecurity #infosec #MFA #OpenAI #Passkeys #Phishing Resistance #Trusted Access for Cyber #Yubico
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 04 May 2026 09:14:10 +0000
════════════════════════
⌗ Tags: #Technology #Advanced Account Security #AI Privacy #ChatGPT #cybersecurity #infosec #MFA #OpenAI #Passkeys #Phishing Resistance #Trusted Access for Cyber #Yubico
Daily CyberSecurity
OpenAI Introduces Advanced Account Security to Safeguard AI Identities
OpenAI launches Advanced Account Security for high-risk users. Features include mandatory passkeys, disabled SMS recovery, and automatic training exclusion.
⤷ Title: CVE-2026-29200: A 9.9 CVSS Comet Backup Flaw Granting Total Cross-Tenant Takeover
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 04 May 2026 09:05:44 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Account Takeover #API security #cloud backup #Comet Backup #Cross_Tenant Takeover #CVE_2026_29200 #CVSS 9.9 #cybersecurity #IDOR #infosec #Patch Alert
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 04 May 2026 09:05:44 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Account Takeover #API security #cloud backup #Comet Backup #Cross_Tenant Takeover #CVE_2026_29200 #CVSS 9.9 #cybersecurity #IDOR #infosec #Patch Alert
Daily CyberSecurity
CVE-2026-29200: A 9.9 CVSS Comet Backup Flaw Granting Total Cross-Tenant Takeover
A critical 9.9 CVSS IDOR flaw in Comet Backup allows complete cross-tenant account takeovers. Self-hosted administrators must patch servers immediately!
⤷ Title: Guide For Fresher Bug Hunter …
════════════════════════
𐀪 Author: Md Tanjimul Islam Sifat
════════════════════════
ⴵ Time: Mon, 04 May 2026 12:42:47 GMT
════════════════════════
⌗ Tags: #cybersecurity #beginners_guide #bug_bounty #ethical_hacking #bug_hunting
════════════════════════
𐀪 Author: Md Tanjimul Islam Sifat
════════════════════════
ⴵ Time: Mon, 04 May 2026 12:42:47 GMT
════════════════════════
⌗ Tags: #cybersecurity #beginners_guide #bug_bounty #ethical_hacking #bug_hunting
Medium
Guide For Fresher Bug Hunter …
Bug bounty hunting mistake most beginners make is targeting big companies too early. This leads to heavy competition and frequent…
⤷ Title: Red Team Automation: 12 Scripts That Save Hours (and Win Real Engagements)
════════════════════════
𐀪 Author: vipin
════════════════════════
ⴵ Time: Mon, 04 May 2026 12:40:50 GMT
════════════════════════
⌗ Tags: #red_team #cybersecurity #bug_bounty #script #hacking
════════════════════════
𐀪 Author: vipin
════════════════════════
ⴵ Time: Mon, 04 May 2026 12:40:50 GMT
════════════════════════
⌗ Tags: #red_team #cybersecurity #bug_bounty #script #hacking
Medium
Red Team Automation: 12 Scripts That Save Hours (and Win Real Engagements)
Ever burned a whole weekend on manual recon, only to realize you missed a low-hanging RCE vector because you were sorting through logs by…
⤷ Title: How I Found XSS by Understanding Context
════════════════════════
𐀪 Author: sh3llwolf
════════════════════════
ⴵ Time: Mon, 04 May 2026 11:34:52 GMT
════════════════════════
⌗ Tags: #bug_bounty #xss_vulnerability #pentesting #web_security #owasp
════════════════════════
𐀪 Author: sh3llwolf
════════════════════════
ⴵ Time: Mon, 04 May 2026 11:34:52 GMT
════════════════════════
⌗ Tags: #bug_bounty #xss_vulnerability #pentesting #web_security #owasp
Medium
How I Found XSS by Understanding Context
A real-world walkthrough of methodical thinking over random payload spraying — from reflection discovery to confirmed execution.
⤷ Title: Beyond the Shell: Why I’m Pivoting from Binary Pwn to Web3 Security
════════════════════════
𐀪 Author: Grissia
════════════════════════
ⴵ Time: Mon, 04 May 2026 11:30:21 GMT
════════════════════════
⌗ Tags: #web3 #bug_bounty #blockchain #solidity #smart_contracts
════════════════════════
𐀪 Author: Grissia
════════════════════════
ⴵ Time: Mon, 04 May 2026 11:30:21 GMT
════════════════════════
⌗ Tags: #web3 #bug_bounty #blockchain #solidity #smart_contracts
Medium
Beyond the Shell: Why I’m Pivoting from Binary Pwn to Web3 Security
From CTF champion to blockchain security: A journey of rediscovering passion.
⤷ Title: INDONESIAN TEENAGER DISCOVERS XSS VULNERABILITY IN NASA INFRASTRUCTURE ️
DEPOK, INDONESIA — A…
════════════════════════
𐀪 Author: Sector Intelligence
════════════════════════
ⴵ Time: Mon, 04 May 2026 12:16:18 GMT
════════════════════════
⌗ Tags: #hacking #news
DEPOK, INDONESIA — A…
════════════════════════
𐀪 Author: Sector Intelligence
════════════════════════
ⴵ Time: Mon, 04 May 2026 12:16:18 GMT
════════════════════════
⌗ Tags: #hacking #news
Medium
INDONESIAN TEENAGER DISCOVERS XSS VULNERABILITY IN NASA INFRASTRUCTURE 🛡️
DEPOK, INDONESIA — A…
DEPOK, INDONESIA — A…
INDONESIAN TEENAGER DISCOVERS XSS VULNERABILITY IN NASA INFRASTRUCTURE 🛡️ DEPOK, INDONESIA — A 14-year-old student from SMP 22 Depok, identified as Langit, has reported a Cross-Site …
⤷ Title: Google said it’s a feature. I’m not so sure. ( allowing full RCE via prompt injection)
════════════════════════
𐀪 Author: Elvinlatifli
════════════════════════
ⴵ Time: Mon, 04 May 2026 11:55:39 GMT
════════════════════════
⌗ Tags: #zero_day_vulnerability #cybersecurity #hacking
════════════════════════
𐀪 Author: Elvinlatifli
════════════════════════
ⴵ Time: Mon, 04 May 2026 11:55:39 GMT
════════════════════════
⌗ Tags: #zero_day_vulnerability #cybersecurity #hacking
Medium
Google said it’s a feature. I’m not so sure. 🤔 ( allowing full RCE via prompt injection)
A few weeks ago, I noticed something interesting in Google’s open-source LLM framework, Langfun. I submitted a report, they reviewed it…
⤷ Title: CTF Basics: Understanding SQLi Data UNIONs
════════════════════════
𐀪 Author: Walter Moar
════════════════════════
ⴵ Time: Mon, 04 May 2026 11:01:01 GMT
════════════════════════
⌗ Tags: #hacking #ctf #technology #cybersecurity
════════════════════════
𐀪 Author: Walter Moar
════════════════════════
ⴵ Time: Mon, 04 May 2026 11:01:01 GMT
════════════════════════
⌗ Tags: #hacking #ctf #technology #cybersecurity
Medium
CTF Basics: Understanding SQLi Data UNIONs
Learn how to use UNION-based SQL injection to append attacker-controlled queries, map unknown database schemas, and extract hidden data…
⤷ Title: Cyber Security Monday — The Week in Cyber Security in less than 2 Min…
════════════════════════
𐀪 Author: Jean-Claude Moritz
════════════════════════
ⴵ Time: Mon, 04 May 2026 12:38:24 GMT
════════════════════════
⌗ Tags: #infosec #cybersecurity #information_security #ransomware #cyber_security_awareness
════════════════════════
𐀪 Author: Jean-Claude Moritz
════════════════════════
ⴵ Time: Mon, 04 May 2026 12:38:24 GMT
════════════════════════
⌗ Tags: #infosec #cybersecurity #information_security #ransomware #cyber_security_awareness
Medium
🚀 Cyber Security Monday — The Week in Cyber Security in less than 2 Min…
Category: Cyber Security
⤷ Title: From Apache Struts RCE to Full Host Compromise in Kubernetes
════════════════════════
𐀪 Author: Dr. Saket Acharya
════════════════════════
ⴵ Time: Mon, 04 May 2026 12:03:55 GMT
════════════════════════
⌗ Tags: #apache_struts_2 #container_security #apache_struts #penetration_testing #kubernetes_security
════════════════════════
𐀪 Author: Dr. Saket Acharya
════════════════════════
ⴵ Time: Mon, 04 May 2026 12:03:55 GMT
════════════════════════
⌗ Tags: #apache_struts_2 #container_security #apache_struts #penetration_testing #kubernetes_security
Medium
From Apache Struts RCE to Full Host Compromise in Kubernetes
Overview
⤷ Title: TryHackMe SOC Analyst Road Map Part-29
════════════════════════
𐀪 Author: safa kaya
════════════════════════
ⴵ Time: Mon, 04 May 2026 12:30:28 GMT
════════════════════════
⌗ Tags: #cybersecurity #tryhackme
════════════════════════
𐀪 Author: safa kaya
════════════════════════
ⴵ Time: Mon, 04 May 2026 12:30:28 GMT
════════════════════════
⌗ Tags: #cybersecurity #tryhackme
Medium
TryHackMe SOC Analyst Road Map Part-29
-BURP SUITE-
-BURP SUITE:REPEATER-
Task 1 — Introduction
Bu odada, Burp Suite framework’ünün gelişmiş özelliklerini, özellikle Repeater…
-BURP SUITE:REPEATER-
Task 1 — Introduction
Bu odada, Burp Suite framework’ünün gelişmiş özelliklerini, özellikle Repeater…
⤷ Title: Ethical Hacking Classes Near Deoli Road
════════════════════════
𐀪 Author: EINITIAL24
════════════════════════
ⴵ Time: Mon, 04 May 2026 11:36:06 GMT
════════════════════════
⌗ Tags: #ethical_hacking_course #ethical_hacking_training #ethical_hacking #ethical_hacking_classes #ethical_hacking_tools
════════════════════════
𐀪 Author: EINITIAL24
════════════════════════
ⴵ Time: Mon, 04 May 2026 11:36:06 GMT
════════════════════════
⌗ Tags: #ethical_hacking_course #ethical_hacking_training #ethical_hacking #ethical_hacking_classes #ethical_hacking_tools
Medium
Ethical Hacking Classes Near Deoli Road
What is Ethical Hacking? A Beginner’s Overview:
⤷ Title: Patch Now: GnuTLS Release 3.8.13 Fixes 12 Vulnerabilities
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 04 May 2026 13:07:51 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #cryptography #CVE_2026_33846 #DTLS #GnuTLS #Heap Overwrite #infosec #Linux Security #OCSP Revocation #patch management #RSA_PSK #SSL/TLS
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 04 May 2026 13:07:51 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #cryptography #CVE_2026_33846 #DTLS #GnuTLS #Heap Overwrite #infosec #Linux Security #OCSP Revocation #patch management #RSA_PSK #SSL/TLS
Daily CyberSecurity
Patch Now: GnuTLS Release 3.8.13 Fixes 12 Vulnerabilities
GnuTLS v3.8.13 fixes critical heap overwrites, identity truncation, and OCSP bypasses. Secure your Linux comms and upgrade to the latest version now.
⤷ Title: How I Found an Unprotected Login Portal on a Federal VDP (and Why It Still Got P5)
════════════════════════
𐀪 Author: Nicholas Mullenski
════════════════════════
ⴵ Time: Mon, 04 May 2026 13:04:39 GMT
════════════════════════
⌗ Tags: #technology #bug_bounty #ethical_hacking #penetration_testing #cybersecurity
════════════════════════
𐀪 Author: Nicholas Mullenski
════════════════════════
ⴵ Time: Mon, 04 May 2026 13:04:39 GMT
════════════════════════
⌗ Tags: #technology #bug_bounty #ethical_hacking #penetration_testing #cybersecurity
Medium
How I Found an Unprotected Login Portal on a Federal VDP (and Why It Still Got P5)
So I want to walk you through this one because I think the lessons matter more than the finding itself. I’m under NDA on the actual…
⤷ Title: No Salt, Weak Security — How a Cookie Design Flaw Led to Account Takeover
════════════════════════
𐀪 Author: Vamsikandukuru
════════════════════════
ⴵ Time: Mon, 04 May 2026 14:22:10 GMT
════════════════════════
⌗ Tags: #owasp_top_10 #bug_bounty #hashing #cybersecurity
════════════════════════
𐀪 Author: Vamsikandukuru
════════════════════════
ⴵ Time: Mon, 04 May 2026 14:22:10 GMT
════════════════════════
⌗ Tags: #owasp_top_10 #bug_bounty #hashing #cybersecurity
Medium
No Salt, Weak Security — How a Cookie Design Flaw Led to Account Takeover
Hello everyone! My name is Vamsi Kandukuru, a Cybersecurity graduate. In this blog we discuss the importance of salting and how its absence…
⤷ Title: How I Found an Unprotected Login Portal on a Federal VDP (and Why It Still Got P5)
════════════════════════
𐀪 Author: Nicholas Mullenski
════════════════════════
ⴵ Time: Mon, 04 May 2026 13:04:38 GMT
════════════════════════
⌗ Tags: #technology #bug_bounty #ethical_hacking #penetration_testing #cybersecurity
════════════════════════
𐀪 Author: Nicholas Mullenski
════════════════════════
ⴵ Time: Mon, 04 May 2026 13:04:38 GMT
════════════════════════
⌗ Tags: #technology #bug_bounty #ethical_hacking #penetration_testing #cybersecurity
Medium
How I Found an Unprotected Login Portal on a Federal VDP (and Why It Still Got P5)
So I want to walk you through this one because I think the lessons matter more than the finding itself. I’m under NDA on the actual…