⤷ Title: How to Abuse APIs (or protect them)
════════════════════════
𐀪 Author: Tugan Atila
════════════════════════
ⴵ Time: Fri, 08 May 2026 19:04:13 GMT
════════════════════════
⌗ Tags: #hacker #cybersecurity #api_security #penetration_testing #api
════════════════════════
𐀪 Author: Tugan Atila
════════════════════════
ⴵ Time: Fri, 08 May 2026 19:04:13 GMT
════════════════════════
⌗ Tags: #hacker #cybersecurity #api_security #penetration_testing #api
Medium
How to Abuse APIs (or protect them)
Today I want to tell a slightly different story.
⤷ Title: Pre Security; Networking Fundamentals Walkthrough
════════════════════════
𐀪 Author: Arafat Ashrafi Talha
════════════════════════
ⴵ Time: Fri, 08 May 2026 19:26:01 GMT
════════════════════════
⌗ Tags: #tryhackme #information_security #computer_networking #cybersecurity #tryhackme_walkthrough
════════════════════════
𐀪 Author: Arafat Ashrafi Talha
════════════════════════
ⴵ Time: Fri, 08 May 2026 19:26:01 GMT
════════════════════════
⌗ Tags: #tryhackme #information_security #computer_networking #cybersecurity #tryhackme_walkthrough
Medium
Networking Fundamentals Walkthrough by Arafat Ashrafi Talha
Networking Fundamentals Walkthrough by Arafat Ashrafi Talha Begin learning the fundamentals of computer networking in this bite-sized and interactive module. Task 1: What is Networking? Networks are …
⤷ Title: Using AI for Variant Hunting in Google OSS Projects
════════════════════════
𐀪 Author: Asjad Butt
════════════════════════
ⴵ Time: Fri, 08 May 2026 21:41:53 GMT
════════════════════════
⌗ Tags: #hacking #bug_bounty #google #claude #ai
════════════════════════
𐀪 Author: Asjad Butt
════════════════════════
ⴵ Time: Fri, 08 May 2026 21:41:53 GMT
════════════════════════
⌗ Tags: #hacking #bug_bounty #google #claude #ai
Medium
Using AI for Variant Hunting in Google OSS Projects
Recently I decided to experiment with a different workflow for vulnerability research in open source projects.
⤷ Title: Sokudo: Admin Takeover via Predictable Auth Token
════════════════════════
𐀪 Author: Dennis Sev7n
════════════════════════
ⴵ Time: Fri, 08 May 2026 21:30:39 GMT
════════════════════════
⌗ Tags: #bugforge #cybersecurity #bug_bounty #owasp_top_10 #web_app_security
════════════════════════
𐀪 Author: Dennis Sev7n
════════════════════════
ⴵ Time: Fri, 08 May 2026 21:30:39 GMT
════════════════════════
⌗ Tags: #bugforge #cybersecurity #bug_bounty #owasp_top_10 #web_app_security
Medium
Sokudo: Admin Takeover via Predictable Auth Token
Platform: BugForge
Category: Broken Access Control / Insecure Authentication
Date: May 8, 2026
Category: Broken Access Control / Insecure Authentication
Date: May 8, 2026
⤷ Title: OSCP Dailies: THM — Attacktive Directory — Day 2
════════════════════════
𐀪 Author: MichaelLearns_
════════════════════════
ⴵ Time: Fri, 08 May 2026 22:18:35 GMT
════════════════════════
⌗ Tags: #oscp #active_directory #pentesting #tryhackme #kerbrute
════════════════════════
𐀪 Author: MichaelLearns_
════════════════════════
ⴵ Time: Fri, 08 May 2026 22:18:35 GMT
════════════════════════
⌗ Tags: #oscp #active_directory #pentesting #tryhackme #kerbrute
Medium
OSCP Dailies: THM — Attacktive Directory — Day 2
Welcome! I’m writing a series on my journey with OSCP certification and everyday for 30 mins, I am documenting things I learn, tools I used…
⤷ Title: Write-up — Blind SSRF with Shellshock Exploitation
════════════════════════
𐀪 Author: dudscyber
════════════════════════
ⴵ Time: Fri, 08 May 2026 22:12:35 GMT
════════════════════════
⌗ Tags: #burpsuite #portswigger #cybersecurity #ssrf #laboratory
════════════════════════
𐀪 Author: dudscyber
════════════════════════
ⴵ Time: Fri, 08 May 2026 22:12:35 GMT
════════════════════════
⌗ Tags: #burpsuite #portswigger #cybersecurity #ssrf #laboratory
Medium
Write-up — Blind SSRF with Shellshock Exploitation
Objetivo do laboratório
⤷ Title: Critical Multichain Signature Replay Vulnerability in Lombard Finance – Protocol Takeover Risk
════════════════════════
𐀪 Author: Jsmzproduction
════════════════════════
ⴵ Time: Sat, 09 May 2026 00:25:35 GMT
════════════════════════
⌗ Tags: #blockchain #vulnerability #defi #security #bug_bounty
════════════════════════
𐀪 Author: Jsmzproduction
════════════════════════
ⴵ Time: Sat, 09 May 2026 00:25:35 GMT
════════════════════════
⌗ Tags: #blockchain #vulnerability #defi #security #bug_bounty
Medium
Critical Multichain Signature Replay Vulnerability in Lombard Finance – Protocol Takeover Risk
Critical Multichain Signature Replay in Lombard Consortium.sol – Full Protocol Takeover Possible
⤷ Title: Login Page Testing Checklist: 15 Important Test Cases Every Security Tester Should Know
════════════════════════
𐀪 Author: Yamini Yadav_369
════════════════════════
ⴵ Time: Sat, 09 May 2026 00:06:29 GMT
════════════════════════
⌗ Tags: #bug_bounty #application_security #bug_bounty_writeup #ethical_hacking #cybersecurity
════════════════════════
𐀪 Author: Yamini Yadav_369
════════════════════════
ⴵ Time: Sat, 09 May 2026 00:06:29 GMT
════════════════════════
⌗ Tags: #bug_bounty #application_security #bug_bounty_writeup #ethical_hacking #cybersecurity
⤷ Title: The Definitive Guide to GraphQL for Bug Bounty: Vulnerabilities and Exploitation
════════════════════════
𐀪 Author: JPablo13
════════════════════════
ⴵ Time: Sat, 09 May 2026 00:01:01 GMT
════════════════════════
⌗ Tags: #cybersecurity #graphql #bug_bounty #technology #hacking
════════════════════════
𐀪 Author: JPablo13
════════════════════════
ⴵ Time: Sat, 09 May 2026 00:01:01 GMT
════════════════════════
⌗ Tags: #cybersecurity #graphql #bug_bounty #technology #hacking
Medium
The Definitive Guide to GraphQL for Bug Bounty: Vulnerabilities and Exploitation
Master GraphQL hacking: from bypassing introspection to mass assignment and BOLA attacks for bug bounties.
⤷ Title: Dark Web Monitoring for Threat Intelligence Analysts
════════════════════════
𐀪 Author: Paritosh
════════════════════════
ⴵ Time: Sat, 09 May 2026 00:06:26 GMT
════════════════════════
⌗ Tags: #darkweb #hacking #cybersecurity #artificial_intelligence #threat_intelligence
════════════════════════
𐀪 Author: Paritosh
════════════════════════
ⴵ Time: Sat, 09 May 2026 00:06:26 GMT
════════════════════════
⌗ Tags: #darkweb #hacking #cybersecurity #artificial_intelligence #threat_intelligence
Medium
Dark Web Monitoring for Threat Intelligence Analysts
A Practical Operational Guide for SOC & CTI Professionals
⤷ Title: TryHackMe — Mr. Robot CTF | Full Write-Up
════════════════════════
𐀪 Author: Shikhali Jamalzade
════════════════════════
ⴵ Time: Sat, 09 May 2026 01:01:18 GMT
════════════════════════
⌗ Tags: #penetration_testing #ctf_writeup #web_penetration_testing #tryhackme_walkthrough
════════════════════════
𐀪 Author: Shikhali Jamalzade
════════════════════════
ⴵ Time: Sat, 09 May 2026 01:01:18 GMT
════════════════════════
⌗ Tags: #penetration_testing #ctf_writeup #web_penetration_testing #tryhackme_walkthrough
Medium
TryHackMe — Mr. Robot CTF | Full Write-Up
Platform: TryHackMe Room: Mr. Robot CTF Difficulty: Medium Author: Shikhali Jamalzade (@alisalive) Date: May 2026 Tags: #CTF…
⤷ Title: FunboxEasy — CSE Bookstore File Upload + sudo time GTFObins to Root | OffSec PG Play
════════════════════════
𐀪 Author: Roshan Rajbanshi
════════════════════════
ⴵ Time: Sat, 09 May 2026 00:06:00 GMT
════════════════════════
⌗ Tags: #offensive_security #penetration_testing #pentesting #cybersecurity #ethical_hacking
════════════════════════
𐀪 Author: Roshan Rajbanshi
════════════════════════
ⴵ Time: Sat, 09 May 2026 00:06:00 GMT
════════════════════════
⌗ Tags: #offensive_security #penetration_testing #pentesting #cybersecurity #ethical_hacking
Medium
FunboxEasy — CSE Bookstore File Upload + sudo time GTFObins to Root | OffSec PG Play
FunboxEasy is a machine built around a custom PHP bookstore application and a textbook file-upload vulnerability. Directory enumeration…
⤷ Title: Operating System Security — TryHackMe Answers | by Deepti Gupta
════════════════════════
𐀪 Author: Deepti Gupta
════════════════════════
ⴵ Time: Fri, 08 May 2026 23:31:00 GMT
════════════════════════
⌗ Tags: #tryhackme_writeup #operating_system_security #tryhackme #operating_systems #tryhackme_walkthrough
════════════════════════
𐀪 Author: Deepti Gupta
════════════════════════
ⴵ Time: Fri, 08 May 2026 23:31:00 GMT
════════════════════════
⌗ Tags: #tryhackme_writeup #operating_system_security #tryhackme #operating_systems #tryhackme_walkthrough
Medium
Operating System Security — TryHackMe Answers | by Deepti Gupta
Platform: TryHackMe
Room: Operating System Security
Room URL: https://tryhackme.com/room/operatingsystemsecurity
Difficulty: Easy
Please…
Room: Operating System Security
Room URL: https://tryhackme.com/room/operatingsystemsecurity
Difficulty: Easy
Please…
⤷ Title: Let’s Encrypt Slashes Certificate Lifespans and Sunsets mTLS on May 13
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Sat, 09 May 2026 02:31:06 +0000
════════════════════════
⌗ Tags: #Technology #45_Day Certificates #ACME #cybersecurity #DevSecOps #Generation Y Intermediates #Let's Encrypt #mTLS #ssl #SysAdmin #tls #Web Security
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Sat, 09 May 2026 02:31:06 +0000
════════════════════════
⌗ Tags: #Technology #45_Day Certificates #ACME #cybersecurity #DevSecOps #Generation Y Intermediates #Let's Encrypt #mTLS #ssl #SysAdmin #tls #Web Security
Daily CyberSecurity
Let’s Encrypt Slashes Certificate Lifespans and Sunsets mTLS on May 13
May 13 Deadline: Let’s Encrypt launches 45-day certs, freezes mTLS, and moves to Gen Y intermediates. Is your automation ready for the triple-threat update?
⤷ Title: Trust Hijacked: Official JDownloader Website Breached to Distribute Malicious Installers
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Sat, 09 May 2026 01:53:53 +0000
════════════════════════
⌗ Tags: #Malware #AppWork GmbH #cybersecurity #infosec #JDownloader #Linux Security #malware #May 2026 Breach #supply chain attack #Website Breach #Windows Security
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Sat, 09 May 2026 01:53:53 +0000
════════════════════════
⌗ Tags: #Malware #AppWork GmbH #cybersecurity #infosec #JDownloader #Linux Security #malware #May 2026 Breach #supply chain attack #Website Breach #Windows Security
Daily CyberSecurity
Trust Hijacked: Official JDownloader Website Breached to Distribute Malicious Installers
JDownloader's website was breached on May 6, swapping official installers for malware. If you downloaded it between May 6-7, your system may be compromised.
⤷ Title: Exploited in the Wild: “Dirty Frag” Linux Vulnerability Grants Instant Root Access
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Sat, 09 May 2026 01:45:32 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2026_43284 #CVE_2026_43500 #cybersecurity #Dirty Frag #Exploit in the Wild #infosec #Linux Security #Local Privilege Escalation #LPE #privilege escalation #System Administration #zero_day
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Sat, 09 May 2026 01:45:32 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2026_43284 #CVE_2026_43500 #cybersecurity #Dirty Frag #Exploit in the Wild #infosec #Linux Security #Local Privilege Escalation #LPE #privilege escalation #System Administration #zero_day
Daily CyberSecurity
Exploited in the Wild: "Dirty Frag" Linux Vulnerability Grants Instant Root Access
The Dirty Frag Linux vulnerability (CVE-2026-43284) is being actively exploited in the wild. Learn how to secure your servers from this root LPE exploit.
⤷ Title: New “ClickFix” Campaign Bypasses Gatekeeper to Hijack macOS Devices
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Sat, 09 May 2026 01:00:27 +0000
════════════════════════
⌗ Tags: #Malware #AMOS #Apple Security #ClickFix #Crypto theft #Gatekeeper Bypass #Infostealer #macOS #MacSync #Microsoft Security Report #SHub Stealer #Terminal Malware
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Sat, 09 May 2026 01:00:27 +0000
════════════════════════
⌗ Tags: #Malware #AMOS #Apple Security #ClickFix #Crypto theft #Gatekeeper Bypass #Infostealer #macOS #MacSync #Microsoft Security Report #SHub Stealer #Terminal Malware
Daily CyberSecurity
New "ClickFix" Campaign Bypasses Gatekeeper to Hijack macOS Devices
Microsoft reveals a macOS ClickFix campaign using fake "fixes" to trick users into running Terminal commands that bypass Gatekeeper and steal crypto wallets.
⤷ Title: Jacko | Proving Grounds | Walkthrough | OSCP Preparation
════════════════════════
𐀪 Author: SilentExploit
════════════════════════
ⴵ Time: Sat, 09 May 2026 02:21:32 GMT
════════════════════════
⌗ Tags: #bug_bounty_tips #oscp #bug_bounty #hacking #technology
════════════════════════
𐀪 Author: SilentExploit
════════════════════════
ⴵ Time: Sat, 09 May 2026 02:21:32 GMT
════════════════════════
⌗ Tags: #bug_bounty_tips #oscp #bug_bounty #hacking #technology
Medium
Jacko | Proving Grounds | Walkthrough | OSCP Preparation
Welcome to my walkthrough of Jacko on Proving Grounds.
⤷ Title: Your Server Is Showing Everything It Shouldn’t -The Apache Directory Listing Deep Dive
════════════════════════
𐀪 Author: Blue_eye
════════════════════════
ⴵ Time: Sat, 09 May 2026 01:31:00 GMT
════════════════════════
⌗ Tags: #software_development #directory_listing #web_development #ai #bug_bounty
════════════════════════
𐀪 Author: Blue_eye
════════════════════════
ⴵ Time: Sat, 09 May 2026 01:31:00 GMT
════════════════════════
⌗ Tags: #software_development #directory_listing #web_development #ai #bug_bounty
Medium
Your Server Is Showing Everything It Shouldn’t -The Apache Directory Listing Deep Dive
A misconfigured Apache directive just one line can turn your private server filesystem into an open catalogue for anyone with a browser…
⤷ Title: GMX V2 is Mathematically Insolvent Two independent critical vulnerabilities allow physical drainage…
════════════════════════
𐀪 Author: Jsmzproduction
════════════════════════
ⴵ Time: Fri, 08 May 2026 17:03:09 GMT
════════════════════════
⌗ Tags: #defi #bug_bounty #cryptocurrency #bugs #vulnerability
════════════════════════
𐀪 Author: Jsmzproduction
════════════════════════
ⴵ Time: Fri, 08 May 2026 17:03:09 GMT
════════════════════════
⌗ Tags: #defi #bug_bounty #cryptocurrency #bugs #vulnerability
Medium
GMX V2 is Mathematically Insolvent Two independent critical vulnerabilities allow physical drainage…
I am a security researcher who contacted the GMX Core Team directly via ticket #0116 on May 7, 2026.
⤷ Title: I Was Given a Broken Java App. I Found Every Flaw, Proved Every Attack, Then Fixed Everything.
════════════════════════
𐀪 Author: Shreesh k
════════════════════════
ⴵ Time: Sat, 09 May 2026 01:19:44 GMT
════════════════════════
⌗ Tags: #application_security #ai #cybersecurity
════════════════════════
𐀪 Author: Shreesh k
════════════════════════
ⴵ Time: Sat, 09 May 2026 01:19:44 GMT
════════════════════════
⌗ Tags: #application_security #ai #cybersecurity
Medium
I Was Given a Broken Java App. I Found Every Flaw, Proved Every Attack, Then Fixed Everything.
A complete security audit: five real vulnerabilities, five documented exploits, and the fixes that closed them all. Java 21. MySQL 8. OWASP…