⤷ Title: How a Simple HPP Bug Earned $700 on Twitter
════════════════════════
𐀪 Author: ab.infosec
════════════════════════
ⴵ Time: Tue, 06 Jan 2026 20:27:18 GMT
════════════════════════
⌗ Tags: #cybersecurity #bug_bounty #websecurity_testing #http_parameter_pollution
════════════════════════
𐀪 Author: ab.infosec
════════════════════════
ⴵ Time: Tue, 06 Jan 2026 20:27:18 GMT
════════════════════════
⌗ Tags: #cybersecurity #bug_bounty #websecurity_testing #http_parameter_pollution
Medium
How a Simple HPP Bug Earned $700 on Twitter🚨
Sometimes, finding a real bug doesn’t require advanced exploits or zero-days.
⤷ Title: Portswigger : SSRF Exploitation
════════════════════════
𐀪 Author: Sandeep Singh Sisodiya
════════════════════════
ⴵ Time: Fri, 23 Jan 2026 20:58:19 GMT
════════════════════════
⌗ Tags: #websecurity_testing #portswigger #cybersecurity #ssrf
════════════════════════
𐀪 Author: Sandeep Singh Sisodiya
════════════════════════
ⴵ Time: Fri, 23 Jan 2026 20:58:19 GMT
════════════════════════
⌗ Tags: #websecurity_testing #portswigger #cybersecurity #ssrf
Medium
Portswigger : SSRF Exploitation
Lab 1: Basic SSRF Against the Local Server
⤷ Title: OWASP Top 10: Take a Website. Break It. Then Secure It.
════════════════════════
𐀪 Author: TEJAS
════════════════════════
ⴵ Time: Thu, 19 Feb 2026 06:53:54 GMT
════════════════════════
⌗ Tags: #websecurity_testing #burpsuite #owasp_top_10 #info_sec_writeups #owasp_api_security_top_10
════════════════════════
𐀪 Author: TEJAS
════════════════════════
ⴵ Time: Thu, 19 Feb 2026 06:53:54 GMT
════════════════════════
⌗ Tags: #websecurity_testing #burpsuite #owasp_top_10 #info_sec_writeups #owasp_api_security_top_10
Medium
OWASP Top 10: Take a Website. Break It. Then Secure It.
I had an insightful conversation with Mohit Panwar sir that changed my perspective on product security. He told me something very simple…
⤷ Title: I Bought a $1337 Jacket for $2. The Website Let Me.
════════════════════════
𐀪 Author: TEJAS
════════════════════════
ⴵ Time: Wed, 25 Feb 2026 04:23:52 GMT
════════════════════════
⌗ Tags: #ethical_hacking #portswigger_lab #websecurity_testing #vulnerability #business_logic_flaw
════════════════════════
𐀪 Author: TEJAS
════════════════════════
ⴵ Time: Wed, 25 Feb 2026 04:23:52 GMT
════════════════════════
⌗ Tags: #ethical_hacking #portswigger_lab #websecurity_testing #vulnerability #business_logic_flaw
Medium
I Bought a $1337 Jacket for $2. The Website Let Me.
This is what happens when you trust the client too much.
⤷ Title: Single-Endpoint Race Conditions — Writeup
════════════════════════
𐀪 Author: Anonymousd
════════════════════════
ⴵ Time: Mon, 09 Mar 2026 08:22:42 GMT
════════════════════════
⌗ Tags: #cyber_security_solutions #websecurity_testing #bugbounty_writeup #portswigger_lab
════════════════════════
𐀪 Author: Anonymousd
════════════════════════
ⴵ Time: Mon, 09 Mar 2026 08:22:42 GMT
════════════════════════
⌗ Tags: #cyber_security_solutions #websecurity_testing #bugbounty_writeup #portswigger_lab
Medium
Single-Endpoint Race Conditions — Writeup 🏁🔥
First and foremost, I am Thankful to GOD! 🙏✨ I’m excited to share that I have successfully solved the Single-endpoint race conditions lab…
⤷ Title: Web Security Series #1 — Exploiting Authentication Using a Brute-Force Attack
════════════════════════
𐀪 Author: Laibakashif
════════════════════════
ⴵ Time: Thu, 12 Mar 2026 06:23:49 GMT
════════════════════════
⌗ Tags: #pentesting #ethical_hacking #cyberecurity #websecurity_testing #bug_bounty
════════════════════════
𐀪 Author: Laibakashif
════════════════════════
ⴵ Time: Thu, 12 Mar 2026 06:23:49 GMT
════════════════════════
⌗ Tags: #pentesting #ethical_hacking #cyberecurity #websecurity_testing #bug_bounty
Medium
Web Security Series #1 — Exploiting Authentication Using a Brute-Force Attack
Web application security is one of the most important areas of cybersecurity. Many modern applications rely on authentication systems to…
⤷ Title: SQL Injection UNION Attack: Retrieving Multiple Values in a Single Column
════════════════════════
𐀪 Author: Mohamed Ahmed
════════════════════════
ⴵ Time: Sat, 04 Apr 2026 00:20:31 GMT
════════════════════════
⌗ Tags: #websecurity_testing #penetration_testing #cybersecurity #sql_injection #bug_bounty
════════════════════════
𐀪 Author: Mohamed Ahmed
════════════════════════
ⴵ Time: Sat, 04 Apr 2026 00:20:31 GMT
════════════════════════
⌗ Tags: #websecurity_testing #penetration_testing #cybersecurity #sql_injection #bug_bounty
Medium
SQL injection UNION attack, retrieving multiple values in a single column
A practical PortSwigger lab walkthrough for UNION-based SQL injection
⤷ Title: Web Application Security Checklist Before Production Deployment
════════════════════════
𐀪 Author: Trustlayerlabs
════════════════════════
ⴵ Time: Tue, 07 Apr 2026 03:25:50 GMT
════════════════════════
⌗ Tags: #cybersecurity #application_security #devsecops #websecurity_testing
════════════════════════
𐀪 Author: Trustlayerlabs
════════════════════════
ⴵ Time: Tue, 07 Apr 2026 03:25:50 GMT
════════════════════════
⌗ Tags: #cybersecurity #application_security #devsecops #websecurity_testing
Medium
Web Application Security Checklist Before Production Deployment
Launching a web application into production is an important milestone for any startup.
⤷ Title: Mastering Web Security: A Deep Dive into OWASP Juice Shop
════════════════════════
𐀪 Author: OmRajbhoi
════════════════════════
ⴵ Time: Mon, 13 Apr 2026 18:10:34 GMT
════════════════════════
⌗ Tags: #ethical_hacking #tryhackme_walkthrough #cybersecurity #websecurity_testing #owsap
════════════════════════
𐀪 Author: OmRajbhoi
════════════════════════
ⴵ Time: Mon, 13 Apr 2026 18:10:34 GMT
════════════════════════
⌗ Tags: #ethical_hacking #tryhackme_walkthrough #cybersecurity #websecurity_testing #owsap
Medium
Mastering Web Security: A Deep Dive into OWASP Juice Shop
The OWASP Juice Shop is arguably the most modern and sophisticated “insecure” web application for security training. Recently, I completed…
⤷ Title: A Complete Guide to Website Blacklisting Recovery
════════════════════════
𐀪 Author: Shamir Ajmir Khan
════════════════════════
ⴵ Time: Tue, 21 Apr 2026 15:05:17 GMT
════════════════════════
⌗ Tags: #web_development #cybersecurity #websecurity_testing #ethical_hacking #web_management
════════════════════════
𐀪 Author: Shamir Ajmir Khan
════════════════════════
ⴵ Time: Tue, 21 Apr 2026 15:05:17 GMT
════════════════════════
⌗ Tags: #web_development #cybersecurity #websecurity_testing #ethical_hacking #web_management
Medium
A Complete Guide to Website Blacklisting Recovery
Plus: How to Contact a Cybersecurity Expert When Your Site Gets the Red Screen of Death
⤷ Title: From Contact Us to Critical — How I Earned My First €2,000 in Bug Bounty
════════════════════════
𐀪 Author: Xsora7
════════════════════════
ⴵ Time: Tue, 26 May 2026 10:10:22 GMT
════════════════════════
⌗ Tags: #bug_bounty #ethical_hacking #websecurity_testing #hacking #cybersecurity
════════════════════════
𐀪 Author: Xsora7
════════════════════════
ⴵ Time: Tue, 26 May 2026 10:10:22 GMT
════════════════════════
⌗ Tags: #bug_bounty #ethical_hacking #websecurity_testing #hacking #cybersecurity
Medium
From Contact-Us to Critical — How I Earned My First €2,000 in Bug Bounty🔥
From Contact-Us to Critical — How I Earned My First €2,000 in Bug Bounty🔥 How a simple contact form and one random thought led me to discover my first Critical vulnerability. I opened the …
⤷ Title: Why Caido is your best friend?
════════════════════════
𐀪 Author: Hritom Bhattacharya
════════════════════════
ⴵ Time: Fri, 12 Jun 2026 08:19:34 GMT
════════════════════════
⌗ Tags: #hacking #information_security #websecurity_testing #bug_bounty #pentesting
════════════════════════
𐀪 Author: Hritom Bhattacharya
════════════════════════
ⴵ Time: Fri, 12 Jun 2026 08:19:34 GMT
════════════════════════
⌗ Tags: #hacking #information_security #websecurity_testing #bug_bounty #pentesting
Medium
Why Caido is your best friend?
Hii everyone, after a long….. I know i Know…..
⤷ Title: How I Chained an Open Redirect into Email Leak and Got $1,337 from Google
════════════════════════
𐀪 Author: xlsizebruh
════════════════════════
ⴵ Time: Fri, 10 Jul 2026 18:10:46 GMT
════════════════════════
⌗ Tags: #bug_bounty_google #infosec #cybersecurity #websecurity_testing #bug_bounty_writeup
════════════════════════
𐀪 Author: xlsizebruh
════════════════════════
ⴵ Time: Fri, 10 Jul 2026 18:10:46 GMT
════════════════════════
⌗ Tags: #bug_bounty_google #infosec #cybersecurity #websecurity_testing #bug_bounty_writeup
Medium
How I Chained an Open Redirect into Email Leak and Got $1,337 from Google
Who Am I?
⤷ Title: How I Found SQL Injection
════════════════════════
𐀪 Author: ONEDAY24X7
════════════════════════
ⴵ Time: Sat, 11 Jul 2026 16:09:17 GMT
════════════════════════
⌗ Tags: #bug_bounty_writeup #websecurity_testing #sql_injection #cybersecurity #news
════════════════════════
𐀪 Author: ONEDAY24X7
════════════════════════
ⴵ Time: Sat, 11 Jul 2026 16:09:17 GMT
════════════════════════
⌗ Tags: #bug_bounty_writeup #websecurity_testing #sql_injection #cybersecurity #news
Medium
How I Found SQL Injection 💉🔥
Hii all, I’m Ashvin Chouhan — currently in my 3rd year of a Bachelor of Technology, trying to become a security researcher.
⤷ Title: Persistent Code Execution: Breaking Down a Stored XSS via Internal Procurement Notes
════════════════════════
𐀪 Author: M0stafaX404
════════════════════════
ⴵ Time: Tue, 14 Jul 2026 08:55:16 GMT
════════════════════════
⌗ Tags: #websecurity_testing #cybersecurity #info_sec_writeups #xs #stored_xss
════════════════════════
𐀪 Author: M0stafaX404
════════════════════════
ⴵ Time: Tue, 14 Jul 2026 08:55:16 GMT
════════════════════════
⌗ Tags: #websecurity_testing #cybersecurity #info_sec_writeups #xs #stored_xss
Medium
Persistent Code Execution: Breaking Down a Stored XSS via Internal Procurement Notes
Executive Summary
⤷ Title: OWASP Top 10: Broken Access Control Understanding One of the Most Critical Web Security Risks
════════════════════════
𐀪 Author: Alaric Nyx
════════════════════════
ⴵ Time: Fri, 17 Jul 2026 13:53:49 GMT
════════════════════════
⌗ Tags: #ethical_hacking #owasp #owasp_top_10 #cybersecurity #websecurity_testing
════════════════════════
𐀪 Author: Alaric Nyx
════════════════════════
ⴵ Time: Fri, 17 Jul 2026 13:53:49 GMT
════════════════════════
⌗ Tags: #ethical_hacking #owasp #owasp_top_10 #cybersecurity #websecurity_testing
Medium
OWASP Top 10: Broken Access Control Understanding One of the Most Critical Web Security Risks
Introduction
⤷ Title: When XSS Meets CSRF
════════════════════════
𐀪 Author: MainEkHacker
════════════════════════
ⴵ Time: Sat, 18 Jul 2026 19:31:01 GMT
════════════════════════
⌗ Tags: #security #bug_bounty #websecurity_testing #cybersecurity #bug_bounty_writeup
════════════════════════
𐀪 Author: MainEkHacker
════════════════════════
ⴵ Time: Sat, 18 Jul 2026 19:31:01 GMT
════════════════════════
⌗ Tags: #security #bug_bounty #websecurity_testing #cybersecurity #bug_bounty_writeup
Medium
When XSS Meets CSRF
Understanding Real-World Web Attack Chains (and Why CSP Matters)
⤷ Title: Authentication Vulnerability
════════════════════════
𐀪 Author: SreeragPramod
════════════════════════
ⴵ Time: Sun, 19 Jul 2026 05:31:01 GMT
════════════════════════
⌗ Tags: #ethical_hacking #cybersecurity #bug_bounty #authentication #websecurity_testing
════════════════════════
𐀪 Author: SreeragPramod
════════════════════════
ⴵ Time: Sun, 19 Jul 2026 05:31:01 GMT
════════════════════════
⌗ Tags: #ethical_hacking #cybersecurity #bug_bounty #authentication #websecurity_testing
Medium
Authentication Vulnerability
A beginner-friendly guide to understanding authentication vulnerabilities through simple explanations and real examples.
⤷ Title: Account Takeover via Broken Password Reset Validation
════════════════════════
𐀪 Author: Mohamed Abd almalek
════════════════════════
ⴵ Time: Sun, 19 Jul 2026 12:00:58 GMT
════════════════════════
⌗ Tags: #web_penetration_testing #websecurity_testing #bug_bounty_writeup #bug_bounty_tips #bug_bounty
════════════════════════
𐀪 Author: Mohamed Abd almalek
════════════════════════
ⴵ Time: Sun, 19 Jul 2026 12:00:58 GMT
════════════════════════
⌗ Tags: #web_penetration_testing #websecurity_testing #bug_bounty_writeup #bug_bounty_tips #bug_bounty
Medium
Account Takeover via Broken Password Reset Validation
Severity: Critical
Type: Authentication Bypass / Account Takeover (ATO)
CWE: CWE-640: Weak Password Recovery Mechanism for Forgotten…
Type: Authentication Bypass / Account Takeover (ATO)
CWE: CWE-640: Weak Password Recovery Mechanism for Forgotten…
⤷ Title: Bug Bounty Journey — Day 0: The Commitment
════════════════════════
𐀪 Author: rising warrior
════════════════════════
ⴵ Time: Sun, 26 Jul 2026 02:37:47 GMT
════════════════════════
⌗ Tags: #cybersecurity #infosec #websecurity_testing #bug_bounty #ethical_hacking
════════════════════════
𐀪 Author: rising warrior
════════════════════════
ⴵ Time: Sun, 26 Jul 2026 02:37:47 GMT
════════════════════════
⌗ Tags: #cybersecurity #infosec #websecurity_testing #bug_bounty #ethical_hacking
Medium
Bug Bounty Journey — Day 0: The Commitment
Every major milestone starts with a simple, clear plan. Today marks Day 0 of my Bug Bounty journey. The ultimate target is to earn my first…