⤷ Title: Tryhackme — Monday Monitor Writeup
════════════════════════
𐀪 Author: Novanr
════════════════════════
ⴵ Time: Fri, 15 May 2026 08:00:24 GMT
════════════════════════
⌗ Tags: #tryhackme_writeup #logs #challenge #tryhackme
════════════════════════
𐀪 Author: Novanr
════════════════════════
ⴵ Time: Fri, 15 May 2026 08:00:24 GMT
════════════════════════
⌗ Tags: #tryhackme_writeup #logs #challenge #tryhackme
Medium
Tryhackme — Monday Monitor Writeup
Assalamualaikum, kali ini saya akan menulis writeup tentang room Monday Monitor pada Tryhackme, ikuti terus ya tulisan ini.
⤷ Title: Insecure Direct Object Reference (IDOR) in Dataset Creation Endpoint
════════════════════════
𐀪 Author: z3r0-hunter
════════════════════════
ⴵ Time: Fri, 15 May 2026 08:33:14 GMT
════════════════════════
⌗ Tags: #cybersecurity #bugbounty_writeup #penteration_testing
════════════════════════
𐀪 Author: z3r0-hunter
════════════════════════
ⴵ Time: Fri, 15 May 2026 08:33:14 GMT
════════════════════════
⌗ Tags: #cybersecurity #bugbounty_writeup #penteration_testing
Medium
Insecure Direct Object Reference (IDOR) in Dataset Creation Endpoint
السلام عليكم ورحمة الله وبركاته، اللهم صلِّ على سيدنا محمد النبي ﷺ، اللهم انصر إخواننا في غزة والسودان ولبنان
⤷ Title: CalPhishing Scam Uses EvilTokens Kit, Outlook Invites to Steal M365 Sessions
════════════════════════
𐀪 Author: Deeba Ahmed
════════════════════════
ⴵ Time: Fri, 15 May 2026 10:30:22 +0000
════════════════════════
⌗ Tags: #Security #Phishing Scam #Scams and Fraud #CalPhishing #Cyber Attack #Cyber Crime #Cybersecurity #EvilTokens #Fortra #M365 #Outlook #Outlook Invite #Phishing
════════════════════════
𐀪 Author: Deeba Ahmed
════════════════════════
ⴵ Time: Fri, 15 May 2026 10:30:22 +0000
════════════════════════
⌗ Tags: #Security #Phishing Scam #Scams and Fraud #CalPhishing #Cyber Attack #Cyber Crime #Cybersecurity #EvilTokens #Fortra #M365 #Outlook #Outlook Invite #Phishing
Hackread
CalPhishing Scam Uses EvilTokens Kit, Outlook Invites to Steal M365 Sessions
Follow us on social media at @HackRead
⤷ Title: A Simple Session Management Bug Every Beginner Bug Hunter Should Test.
════════════════════════
𐀪 Author: kjulius
════════════════════════
ⴵ Time: Fri, 15 May 2026 10:23:43 GMT
════════════════════════
⌗ Tags: #simple_bugs #bug_bounty #session_management #p4_bugs
════════════════════════
𐀪 Author: kjulius
════════════════════════
ⴵ Time: Fri, 15 May 2026 10:23:43 GMT
════════════════════════
⌗ Tags: #simple_bugs #bug_bounty #session_management #p4_bugs
Medium
A Simple Session Management Bug Every Beginner Bug Hunter Should Test.
When beginners start bug bounty hunting, most of them spend hours testing XSS payloads, SQL injection, IDORs, and other well-known…
⤷ Title: How we used Burpsuite MCP with Antigravity AI to exploit a Supabase based Application
════════════════════════
𐀪 Author: Jawad Mahdi
════════════════════════
ⴵ Time: Fri, 15 May 2026 09:58:40 GMT
════════════════════════
⌗ Tags: #pentesting #burpsuite #bug_bounty #ai #google_antigravity
════════════════════════
𐀪 Author: Jawad Mahdi
════════════════════════
ⴵ Time: Fri, 15 May 2026 09:58:40 GMT
════════════════════════
⌗ Tags: #pentesting #burpsuite #bug_bounty #ai #google_antigravity
Medium
How we used Burpsuite MCP with Antigravity AI to exploit a Supabase based Application
As we all know, AI is shifting Bug Bounty and Web App Pentesting for good; people are worried about AI replacing Bug Bounty and their…
⤷ Title: A Small Stone in Google’s Shoe: Auditing gnxi for Bugs
════════════════════════
𐀪 Author: Kazi Sabbir
════════════════════════
ⴵ Time: Fri, 15 May 2026 09:38:56 GMT
════════════════════════
⌗ Tags: #ethical_hacking #bug_bounty #cybersecurity #open_source
════════════════════════
𐀪 Author: Kazi Sabbir
════════════════════════
ⴵ Time: Fri, 15 May 2026 09:38:56 GMT
════════════════════════
⌗ Tags: #ethical_hacking #bug_bounty #cybersecurity #open_source
Medium
A Small Stone in Google’s Shoe: Auditing gnxi for Bugs
Unbounded memory allocation in gNOI OS Install RPC (Resource Exhaustion)
⤷ Title: RASP Root Detection Bypass
════════════════════════
𐀪 Author: Infallible
════════════════════════
ⴵ Time: Fri, 15 May 2026 09:48:14 GMT
════════════════════════
⌗ Tags: #root_bypass #mobile_app_security #application_security #cybersecurity #penetration_testing
════════════════════════
𐀪 Author: Infallible
════════════════════════
ⴵ Time: Fri, 15 May 2026 09:48:14 GMT
════════════════════════
⌗ Tags: #root_bypass #mobile_app_security #application_security #cybersecurity #penetration_testing
Medium
RASP Root Detection Bypass
RASP Android Root Detection Bypass (Samsung A52s)
⤷ Title: Ethical Hacking Course in Calicut
════════════════════════
𐀪 Author: Dotcomsubhan
════════════════════════
ⴵ Time: Fri, 15 May 2026 10:03:49 GMT
════════════════════════
⌗ Tags: #software_development #hacking
════════════════════════
𐀪 Author: Dotcomsubhan
════════════════════════
ⴵ Time: Fri, 15 May 2026 10:03:49 GMT
════════════════════════
⌗ Tags: #software_development #hacking
Medium
Ethical Hacking Course in Calicut
“Ethical Hacking Course in Calicut” is published by Dotcomsubhan.
⤷ Title: VulnHub — sunset: dawn | Full Walkthrough
════════════════════════
𐀪 Author: Shikhali Jamalzade
════════════════════════
ⴵ Time: Fri, 15 May 2026 10:16:37 GMT
════════════════════════
⌗ Tags: #cybersecurity #web_penetration_testing #ctf_writeup #penetration_testing #vulnhub
════════════════════════
𐀪 Author: Shikhali Jamalzade
════════════════════════
ⴵ Time: Fri, 15 May 2026 10:16:37 GMT
════════════════════════
⌗ Tags: #cybersecurity #web_penetration_testing #ctf_writeup #penetration_testing #vulnhub
Medium
VulnHub — sunset: dawn | Full Walkthrough
Author: Shikhali Jamalzade GitHub: github.com/alisalive LinkedIn: linkedin.com/in/camalzads Platform: VulnHub Machine: sunset: dawn by…
⤷ Title: VulnHub — sunset: twilight | Full Walkthrough
════════════════════════
𐀪 Author: Shikhali Jamalzade
════════════════════════
ⴵ Time: Fri, 15 May 2026 09:58:44 GMT
════════════════════════
⌗ Tags: #web_penetration_testing #ctf_writeup #penetration_testing #vulnhub #cybersecurity
════════════════════════
𐀪 Author: Shikhali Jamalzade
════════════════════════
ⴵ Time: Fri, 15 May 2026 09:58:44 GMT
════════════════════════
⌗ Tags: #web_penetration_testing #ctf_writeup #penetration_testing #vulnhub #cybersecurity
Medium
VulnHub — sunset: twilight | Full Walkthrough
Author: Shikhali Jamalzade GitHub: github.com/alisalive LinkedIn: linkedin.com/in/camalzads Platform: VulnHub Machine: sunset: twilight…
⤷ Title: Which Ethical Hacking Course is Industry-Recognized? (2026 Guide)
════════════════════════
𐀪 Author: Mansi
════════════════════════
ⴵ Time: Fri, 15 May 2026 10:23:43 GMT
════════════════════════
⌗ Tags: #ethical_hacker #ethical_hacking
════════════════════════
𐀪 Author: Mansi
════════════════════════
ⴵ Time: Fri, 15 May 2026 10:23:43 GMT
════════════════════════
⌗ Tags: #ethical_hacker #ethical_hacking
Medium
Which Ethical Hacking Course is Industry-Recognized? (2026 Guide)
Discover the most industry-recognized ethical hacking courses and certifications in 2026 — from CEH to OSCP — with career insights, salary…
⤷ Title: What 45 Days of Watching Your Own Tools Will Tell You About Your Real Attack Surface
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Fri, 15 May 2026 16:30:00 +0530
════════════════════════
⌗ Tags: No_Tags
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Fri, 15 May 2026 16:30:00 +0530
════════════════════════
⌗ Tags: No_Tags
⤷ Title: TanStack Supply Chain Attack Hits Two OpenAI Employee Devices, Forces macOS Updates
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Fri, 15 May 2026 16:24:44 +0530
════════════════════════
⌗ Tags: No_Tags
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Fri, 15 May 2026 16:24:44 +0530
════════════════════════
⌗ Tags: No_Tags
⤷ Title: Paper Werewolf Unleashed: Custom Stealers and AI-Assisted Loaders Target Global Industrial Hubs
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 15 May 2026 12:20:18 +0000
════════════════════════
⌗ Tags: #Malware #AI_Assisted Malware #BI.ZONE #Custom Malware #Cyber Security #EchoGather #Industrial Espionage #infosec #Mythic Framework #Paper Werewolf #PaperGrabber #phishing
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 15 May 2026 12:20:18 +0000
════════════════════════
⌗ Tags: #Malware #AI_Assisted Malware #BI.ZONE #Custom Malware #Cyber Security #EchoGather #Industrial Espionage #infosec #Mythic Framework #Paper Werewolf #PaperGrabber #phishing
Daily CyberSecurity
Paper Werewolf Unleashed: Custom Stealers and AI-Assisted Loaders Target Global Industrial Hubs
Paper Werewolf APT targets industrial sectors with PaperGrabber stealer and EchoGather RAT. Learn to detect their AI-assisted loaders and custom tools.
⤷ Title: When .. Costs You Everything: A Path Traversal in Gemini CLI's Skill Installer
════════════════════════
𐀪 Author: Farhad Sajid Barbhuiya
════════════════════════
ⴵ Time: Fri, 15 May 2026 12:48:09 GMT
════════════════════════
⌗ Tags: #gemini_cli #cybersecurity #bug_bounty #agents #ai
════════════════════════
𐀪 Author: Farhad Sajid Barbhuiya
════════════════════════
ⴵ Time: Fri, 15 May 2026 12:48:09 GMT
════════════════════════
⌗ Tags: #gemini_cli #cybersecurity #bug_bounty #agents #ai
Medium
When .. Costs You Everything: A Path Traversal in Gemini CLI's Skill Installer
TL;DR — A single missing character in a sanitizer regex allowed a malicious SKILL.md to recursively delete ~/.gemini and replace it with…
⤷ Title: The Brutal Truth About Bug Bounty in India (My First $150 Story)
════════════════════════
𐀪 Author: Aman Kumar (ak)
════════════════════════
ⴵ Time: Fri, 15 May 2026 12:32:08 GMT
════════════════════════
⌗ Tags: #self_improvement #bug_bounty #cybersecurity #india #career_advice
════════════════════════
𐀪 Author: Aman Kumar (ak)
════════════════════════
ⴵ Time: Fri, 15 May 2026 12:32:08 GMT
════════════════════════
⌗ Tags: #self_improvement #bug_bounty #cybersecurity #india #career_advice
Medium
The Brutal Truth About Bug Bounty in India (My First $150 Story)
320 government acknowledgments. National recognition. Zero dollars in my account. This is the story Indian beginners need to hear before…
⤷ Title: The Trojan PR: Achieving Code Execution in GitHub Actions via Pipeline Poisoning
════════════════════════
𐀪 Author: Hacker MD
════════════════════════
ⴵ Time: Fri, 15 May 2026 12:18:45 GMT
════════════════════════
⌗ Tags: #infosec #ethical_hacking #bug_bounty #github_actions #ci_cd_pipeline
════════════════════════
𐀪 Author: Hacker MD
════════════════════════
ⴵ Time: Fri, 15 May 2026 12:18:45 GMT
════════════════════════
⌗ Tags: #infosec #ethical_hacking #bug_bounty #github_actions #ci_cd_pipeline
Medium
The Trojan PR: Achieving Code Execution in GitHub Actions via Pipeline Poisoning
Introduction
⤷ Title: Strix | Open-Source AI for Finding App Vulnerabilities
════════════════════════
𐀪 Author: Pentester Club
════════════════════════
ⴵ Time: Fri, 15 May 2026 11:26:51 GMT
════════════════════════
⌗ Tags: #cybersecurity #web_development #hacking #artificial_intelligence #bug_bounty
════════════════════════
𐀪 Author: Pentester Club
════════════════════════
ⴵ Time: Fri, 15 May 2026 11:26:51 GMT
════════════════════════
⌗ Tags: #cybersecurity #web_development #hacking #artificial_intelligence #bug_bounty
Medium
Strix | Open-Source AI for Finding App Vulnerabilities
Open-Source AI for Finding & Fixing Application Vulnerabilities
⤷ Title: How Internal Application Paths Were Exposed Without Login
════════════════════════
𐀪 Author: Shravanigolait
════════════════════════
ⴵ Time: Fri, 15 May 2026 12:17:26 GMT
════════════════════════
⌗ Tags: #application_security #ethical_hacking #owasp #web_security #cybersecurity
════════════════════════
𐀪 Author: Shravanigolait
════════════════════════
ⴵ Time: Fri, 15 May 2026 12:17:26 GMT
════════════════════════
⌗ Tags: #application_security #ethical_hacking #owasp #web_security #cybersecurity
Medium
How Internal Application Paths Were Exposed Without Login
Introduction
⤷ Title: Broken Access Control in SourceCodester Online Boat Reservation System 1.0
════════════════════════
𐀪 Author: Hemant Raj Bhati
════════════════════════
ⴵ Time: Fri, 15 May 2026 12:06:15 GMT
════════════════════════
⌗ Tags: #cybersecurity #penetration_testing #web_security #application_security #web_penetration_testing
════════════════════════
𐀪 Author: Hemant Raj Bhati
════════════════════════
ⴵ Time: Fri, 15 May 2026 12:06:15 GMT
════════════════════════
⌗ Tags: #cybersecurity #penetration_testing #web_security #application_security #web_penetration_testing
Medium
Broken Access Control in SourceCodester Online Boat Reservation System 1.0
Summary
⤷ Title: I Watched an AI Hack a Home Network in Under 10 Minutes
════════════════════════
𐀪 Author: Jazz Cyber Shield
════════════════════════
ⴵ Time: Fri, 15 May 2026 12:37:51 GMT
════════════════════════
⌗ Tags: #technology #artificial_intelligence #cybersecurity #home_network #hacking
════════════════════════
𐀪 Author: Jazz Cyber Shield
════════════════════════
ⴵ Time: Fri, 15 May 2026 12:37:51 GMT
════════════════════════
⌗ Tags: #technology #artificial_intelligence #cybersecurity #home_network #hacking
Medium
I Watched an AI Hack a Home Network in Under 10 Minutes. I’m Still Shaking.
AI hacking tools now break into home routers automatically in minutes. I saw it happen live. Here's what works — and what doesn't — in 2026.