⤷ Title: SQL Injection Demystified: From Magic Passwords to Out-of-Band Exfiltration (Part 2)
════════════════════════
𐀪 Author: RedVoid
════════════════════════
ⴵ Time: Sat, 09 May 2026 12:58:23 GMT
════════════════════════
⌗ Tags: #sql_injection #web_security
════════════════════════
𐀪 Author: RedVoid
════════════════════════
ⴵ Time: Sat, 09 May 2026 12:58:23 GMT
════════════════════════
⌗ Tags: #sql_injection #web_security
Medium
SQL Injection Demystified: From Magic Passwords to Out-of-Band Exfiltration (Part 2)
A complete guide covering major SQL injection techniques
⤷ Title: Threat Hunting for Network Based Attacks - LetsDefend [Part 3]
════════════════════════
𐀪 Author: 0verRida
════════════════════════
ⴵ Time: Sat, 09 May 2026 14:01:01 GMT
════════════════════════
⌗ Tags: #hacker #cybersecurity #red_team #bug_bounty #threat_hunting
════════════════════════
𐀪 Author: 0verRida
════════════════════════
ⴵ Time: Sat, 09 May 2026 14:01:01 GMT
════════════════════════
⌗ Tags: #hacker #cybersecurity #red_team #bug_bounty #threat_hunting
Medium
Threat Hunting for Network Based Attacks - LetsDefend [Part 3]🔥
This write-up is based on a training scenario from LetsDefend and is shared for educational purposes only.
⤷ Title: Understanding BOLA — The #1 API Security Risk You Can’t Ignore
════════════════════════
𐀪 Author: Sana Jalil
════════════════════════
ⴵ Time: Sat, 09 May 2026 13:24:36 GMT
════════════════════════
⌗ Tags: #owasp_api_top_10 #bola #api_testing #bug_bounty #api_penetration_testing
════════════════════════
𐀪 Author: Sana Jalil
════════════════════════
ⴵ Time: Sat, 09 May 2026 13:24:36 GMT
════════════════════════
⌗ Tags: #owasp_api_top_10 #bola #api_testing #bug_bounty #api_penetration_testing
Medium
Understanding BOLA — The #1 API Security Risk You Can’t Ignore
Welcome back to my API pentesting series! In this third blog, we’re diving into BOLA (Broken Object Level Authorization) — the #1 API…
⤷ Title: The Enterprise Security Risks Hiding in Plain Sight
════════════════════════
𐀪 Author: TrustBoundaryLab
════════════════════════
ⴵ Time: Sat, 09 May 2026 11:02:18 GMT
════════════════════════
⌗ Tags: #owasp #cybersecurity #application_security #osint #cyber_security_awareness
════════════════════════
𐀪 Author: TrustBoundaryLab
════════════════════════
ⴵ Time: Sat, 09 May 2026 11:02:18 GMT
════════════════════════
⌗ Tags: #owasp #cybersecurity #application_security #osint #cyber_security_awareness
Medium
The Enterprise Security Risks Hiding in Plain Sight
A responsible disclosure case study involving SIPEF-related platforms, broken access control, identity exposure, and trust-boundary…
⤷ Title: How Sable Turned a Scanner Endpoint into Azure Token Exfiltration
════════════════════════
𐀪 Author: Daniel Knight
════════════════════════
ⴵ Time: Sat, 09 May 2026 14:32:16 GMT
════════════════════════
⌗ Tags: #llm #ai #pentesting #hacking
════════════════════════
𐀪 Author: Daniel Knight
════════════════════════
ⴵ Time: Sat, 09 May 2026 14:32:16 GMT
════════════════════════
⌗ Tags: #llm #ai #pentesting #hacking
Medium
How Sable Turned a Scanner Endpoint into Azure Token Exfiltration
Daniel Knight, CEO at Vulnetic
⤷ Title: Is Your Network Orchestration Layer a Single Point of Failure Waiting to Be Pulled?
════════════════════════
𐀪 Author: Finstein.ai
════════════════════════
ⴵ Time: Sat, 09 May 2026 13:22:15 GMT
════════════════════════
⌗ Tags: #vapt #infosec #finstein #vulnerability_management #ciso
════════════════════════
𐀪 Author: Finstein.ai
════════════════════════
ⴵ Time: Sat, 09 May 2026 13:22:15 GMT
════════════════════════
⌗ Tags: #vapt #infosec #finstein #vulnerability_management #ciso
Medium
Is Your Network Orchestration Layer a Single Point of Failure Waiting to Be Pulled?
CVE-2026–20188 Reframes the DoS Threat: From an Inconvenience to a Management Plane Crisis
⤷ Title: Brooklyn Nine-Nine
════════════════════════
𐀪 Author: Teachnolen
════════════════════════
ⴵ Time: Sat, 09 May 2026 13:03:12 GMT
════════════════════════
⌗ Tags: #infosec #ethical_hacking #cybersecurity #tryhackme #education
════════════════════════
𐀪 Author: Teachnolen
════════════════════════
ⴵ Time: Sat, 09 May 2026 13:03:12 GMT
════════════════════════
⌗ Tags: #infosec #ethical_hacking #cybersecurity #tryhackme #education
Medium
Brooklyn Nine-Nine
TryHackMe | My First Room Walkthrough
⤷ Title: WebDAV Zafiyeti ve Sudo Yanlış Yapılandırması ile Sisteme Sızma | CTF Çözümü TRYHACKME
════════════════════════
𐀪 Author: Beytullaharslannnn
════════════════════════
ⴵ Time: Sat, 09 May 2026 13:09:43 GMT
════════════════════════
⌗ Tags: #cybersecurity #ctf #penetration_testing
════════════════════════
𐀪 Author: Beytullaharslannnn
════════════════════════
ⴵ Time: Sat, 09 May 2026 13:09:43 GMT
════════════════════════
⌗ Tags: #cybersecurity #ctf #penetration_testing
Medium
WebDAV Zafiyeti ve Sudo Yanlış Yapılandırması ile Sisteme Sızma | CTF Çözümü TRYHACKME
Bugün sizlerle çözmüş olduğum keyifli bir CTF makinesinin adımlarını paylaşacağım. Bu makinede temel bilgi toplama süreçlerinden…
⤷ Title: Bypassing Two-Factor Authentication Through Social Engineering Techniques
════════════════════════
𐀪 Author: Shaker Thaher
════════════════════════
ⴵ Time: Sat, 09 May 2026 13:50:26 GMT
════════════════════════
⌗ Tags: #cybersecurity #ethical_hacking #information_security #social_engineering #two_factor_authentication
════════════════════════
𐀪 Author: Shaker Thaher
════════════════════════
ⴵ Time: Sat, 09 May 2026 13:50:26 GMT
════════════════════════
⌗ Tags: #cybersecurity #ethical_hacking #information_security #social_engineering #two_factor_authentication
Medium
Bypassing Two-Factor Authentication Through Social Engineering Techniques
With the rapid growth of digital services and cloud-based platforms, protecting online accounts has become one of the most critical aspects…
⤷ Title: Tryhackme Writeup Room Harder Walkthrough
════════════════════════
𐀪 Author: MainEkHacker
════════════════════════
ⴵ Time: Sat, 09 May 2026 13:31:00 GMT
════════════════════════
⌗ Tags: #tryhackme_writeup #cybersecurity #ethical_hacking #pentesting #tryhackme_walkthrough
════════════════════════
𐀪 Author: MainEkHacker
════════════════════════
ⴵ Time: Sat, 09 May 2026 13:31:00 GMT
════════════════════════
⌗ Tags: #tryhackme_writeup #cybersecurity #ethical_hacking #pentesting #tryhackme_walkthrough
Medium
Tryhackme Writeup Room Harder
Tryhackme Writeup Room Harder Real pentest findings combined. Lets Find Open Ports On target; Scanning : Tool : Rustscan, Open 10.49.186.219:2 Open 10.49.186.219:22 Open 10.49.186.219:80 [~] Starting …
⤷ Title: IDOR in Email Preference Management — Unauthenticated Access & Modification
════════════════════════
𐀪 Author: Hamza
════════════════════════
ⴵ Time: Sat, 09 May 2026 15:54:09 GMT
════════════════════════
⌗ Tags: #bug_bounty #ethical_hacking #cybersecurity #bugs #security
════════════════════════
𐀪 Author: Hamza
════════════════════════
ⴵ Time: Sat, 09 May 2026 15:54:09 GMT
════════════════════════
⌗ Tags: #bug_bounty #ethical_hacking #cybersecurity #bugs #security
Medium
IDOR in Email Preference Management — Unauthenticated Access & Modification
Weakness: Insecure Direct Object Reference (IDOR)
Severity: Medium
Status: Duplicate of a Triaged Report
Severity: Medium
Status: Duplicate of a Triaged Report
⤷ Title: DarkDump OSINT Tool | Exploring Tor Search Engine Intelligence
════════════════════════
𐀪 Author: Pentester Club
════════════════════════
ⴵ Time: Sat, 09 May 2026 16:04:50 GMT
════════════════════════
⌗ Tags: #cybersecurity #hacking #web_development #tor #self_improvement
════════════════════════
𐀪 Author: Pentester Club
════════════════════════
ⴵ Time: Sat, 09 May 2026 16:04:50 GMT
════════════════════════
⌗ Tags: #cybersecurity #hacking #web_development #tor #self_improvement
Medium
DarkDump OSINT Tool | Exploring Tor Search Engine Intelligence
Exploring Tor Search Engine Intelligence for Cybersecurity Research
⤷ Title: Overwatch Writeup (HackTheBox Medium Machine)
════════════════════════
𐀪 Author: Ivan Daňo
════════════════════════
ⴵ Time: Sat, 09 May 2026 15:46:31 GMT
════════════════════════
⌗ Tags: #ctf #hacking #hackthebox_writeup #cybersecurity #active_directory
════════════════════════
𐀪 Author: Ivan Daňo
════════════════════════
ⴵ Time: Sat, 09 May 2026 15:46:31 GMT
════════════════════════
⌗ Tags: #ctf #hacking #hackthebox_writeup #cybersecurity #active_directory
Medium
Overwatch Writeup (HackTheBox Medium Machine)
Overview
⤷ Title: Hackeo masivo de portales Canvas impulsa nueva campaña de extorsión del grupo ShinyHunters
════════════════════════
𐀪 Author: Tiziano Mass
════════════════════════
ⴵ Time: Sat, 09 May 2026 15:01:01 GMT
════════════════════════
⌗ Tags: #cybersecurity #cyber_security_awareness #information_technology #hacking #information_security
════════════════════════
𐀪 Author: Tiziano Mass
════════════════════════
ⴵ Time: Sat, 09 May 2026 15:01:01 GMT
════════════════════════
⌗ Tags: #cybersecurity #cyber_security_awareness #information_technology #hacking #information_security
Medium
Hackeo masivo de portales Canvas impulsa nueva campaña de extorsión del grupo ShinyHunters
Además, otra vez un zero-day en Linux permite escalar a root, hackeo al sistema ferroviario de Taiwán, Chrome descarga un modelo de IA sin…
⤷ Title: URL’den Ekrana: Bir HTTP İsteğinin Anatomisi
════════════════════════
𐀪 Author: Buraktekcan
════════════════════════
ⴵ Time: Sat, 09 May 2026 16:12:15 GMT
════════════════════════
⌗ Tags: #software_engineering #web_development #infosec #cybersecurity #networking
════════════════════════
𐀪 Author: Buraktekcan
════════════════════════
ⴵ Time: Sat, 09 May 2026 16:12:15 GMT
════════════════════════
⌗ Tags: #software_engineering #web_development #infosec #cybersecurity #networking
Medium
URL’den Ekrana: Bir HTTP İsteğinin Anatomisi
Tarayıcınıza https://example.com/login yazıp Enter'a bastığınız an bir saat mekanizması gibi onlarca dişli birden harekete geçer. Bu yazıyı…
⤷ Title: Microsoft SQL Server Attack
════════════════════════
𐀪 Author: Pattharadanai Sanitjairak
════════════════════════
ⴵ Time: Sat, 09 May 2026 16:42:44 GMT
════════════════════════
⌗ Tags: #penetration_testing #sql_server #cybersecurity #red_team #database
════════════════════════
𐀪 Author: Pattharadanai Sanitjairak
════════════════════════
ⴵ Time: Sat, 09 May 2026 16:42:44 GMT
════════════════════════
⌗ Tags: #penetration_testing #sql_server #cybersecurity #red_team #database
Medium
Microsoft SQL Server Attack
เมื่อระบบฐานข้อมูลไม่ได้จบแค่ข้อมูลถูกขโมย
⤷ Title: TryHackMe Walkthrough: CVE-2026–31431 — Copy-Fail
════════════════════════
𐀪 Author: Hibullahi AbdulAzeez
════════════════════════
ⴵ Time: Sat, 09 May 2026 16:20:36 GMT
════════════════════════
⌗ Tags: #cve #tryhackme #copyfail #tryhackme_walkthrough
════════════════════════
𐀪 Author: Hibullahi AbdulAzeez
════════════════════════
ⴵ Time: Sat, 09 May 2026 16:20:36 GMT
════════════════════════
⌗ Tags: #cve #tryhackme #copyfail #tryhackme_walkthrough
Medium
TryHackMe Walkthrough: CVE-2026–31431 — Copy-Fail
Introduction
⤷ Title: Team | TryHackMe Walkthrough
════════════════════════
𐀪 Author: Yoel Yosief [ Orit01 ]
════════════════════════
ⴵ Time: Sat, 09 May 2026 15:30:01 GMT
════════════════════════
⌗ Tags: #ftp_server #ctf #tryhackme_walkthrough #web_vulnerabilities #ethical_hacking
════════════════════════
𐀪 Author: Yoel Yosief [ Orit01 ]
════════════════════════
ⴵ Time: Sat, 09 May 2026 15:30:01 GMT
════════════════════════
⌗ Tags: #ftp_server #ctf #tryhackme_walkthrough #web_vulnerabilities #ethical_hacking
Medium
Team | TryHackMe Walkthrough
Overview
⤷ Title: OWASP Top 10 for .NET Developers - Part 1: Preventing Broken Access Control
════════════════════════
𐀪 Author: Surya Raj Ghimire
════════════════════════
ⴵ Time: Sat, 09 May 2026 15:51:11 GMT
════════════════════════
⌗ Tags: #dotnet #api_security #owasp_top_10 #cybersecurity #aspnetcore
════════════════════════
𐀪 Author: Surya Raj Ghimire
════════════════════════
ⴵ Time: Sat, 09 May 2026 15:51:11 GMT
════════════════════════
⌗ Tags: #dotnet #api_security #owasp_top_10 #cybersecurity #aspnetcore
Medium
OWASP Top 10 for .NET Developers - Part 1: Preventing Broken Access Control
Broken Access Control is ranked as the #1 security risk in the OWASP Top 10 because improperly enforced authorization allows attackers to…
⤷ Title: “5 Beginner Mistakes That Wasted My Time While Choosing Bug Bounty Targets”
════════════════════════
𐀪 Author: Eagle Eye
════════════════════════
ⴵ Time: Sat, 09 May 2026 18:15:43 GMT
════════════════════════
⌗ Tags: #ethical_hacking #cybersecurity #bug_bounty_tips #bug_bounty #web_security
════════════════════════
𐀪 Author: Eagle Eye
════════════════════════
ⴵ Time: Sat, 09 May 2026 18:15:43 GMT
════════════════════════
⌗ Tags: #ethical_hacking #cybersecurity #bug_bounty_tips #bug_bounty #web_security
Medium
“5 Beginner Mistakes That Wasted My Time While Choosing Bug Bounty Targets”
Choosing the right target is one of the biggest factors in bug bounty hunting.
⤷ Title: From a Simple CSRF to Full Account Takeover
════════════════════════
𐀪 Author: montaser mohsen
════════════════════════
ⴵ Time: Sat, 09 May 2026 17:48:44 GMT
════════════════════════
⌗ Tags: #bug_bounty_tips #bug_bounty #penetration_testing #bug_bounty_writeup #csrf
════════════════════════
𐀪 Author: montaser mohsen
════════════════════════
ⴵ Time: Sat, 09 May 2026 17:48:44 GMT
════════════════════════
⌗ Tags: #bug_bounty_tips #bug_bounty #penetration_testing #bug_bounty_writeup #csrf
Medium
From a Simple CSRF to Full Account Takeover
Security researchers often say that “small bugs become big bugs when chained together.” This case was a perfect example of that.