⤷ Title: Pwning “DJANGO” on PwnTillDawn: From Anonymous FTP to Full System Compromise
════════════════════════
𐀪 Author: Cybernerddd
════════════════════════
ⴵ Time: Mon, 18 May 2026 22:02:51 GMT
════════════════════════
⌗ Tags: #ctf_writeup #cybernerddd #cybersecurity #hacking #django
════════════════════════
𐀪 Author: Cybernerddd
════════════════════════
ⴵ Time: Mon, 18 May 2026 22:02:51 GMT
════════════════════════
⌗ Tags: #ctf_writeup #cybernerddd #cybersecurity #hacking #django
Medium
Pwning “DJANGO” on PwnTillDawn: From Anonymous FTP to Full System Compromise
Recently, I compromised a Windows machine named “DJANGO” on the PwnTillDawn battlefield.
⤷ Title: AI Hacking for Beginners: A Five-Article Series
════════════════════════
𐀪 Author: Moez Ben-Azzouz
════════════════════════
ⴵ Time: Mon, 18 May 2026 21:04:28 GMT
════════════════════════
⌗ Tags: #hacking #ai #pentesting #artificial_intelligence #cybersecurity
════════════════════════
𐀪 Author: Moez Ben-Azzouz
════════════════════════
ⴵ Time: Mon, 18 May 2026 21:04:28 GMT
════════════════════════
⌗ Tags: #hacking #ai #pentesting #artificial_intelligence #cybersecurity
Medium
AI Hacking for Beginners: A Five-Article Series
Article 5: The New Front Line — Real AI Incidents, CVEs, and What They Teach Us
⤷ Title: Back to the Labs ~ Quick Update Before the Real Content Drops
════════════════════════
𐀪 Author: b4dk4rm4sec
════════════════════════
ⴵ Time: Mon, 18 May 2026 22:07:24 GMT
════════════════════════
⌗ Tags: #cybersecurity #penetration_testing #pentest #technology
════════════════════════
𐀪 Author: b4dk4rm4sec
════════════════════════
ⴵ Time: Mon, 18 May 2026 22:07:24 GMT
════════════════════════
⌗ Tags: #cybersecurity #penetration_testing #pentest #technology
Medium
Back to the Labs ~ Quick Update Before the Real Content Drops
Where I’ve been, where I’m going, and a small correction.
⤷ Title: The Regex Said Safe. The Parser Disagreed, NASA Earth Science Platform had a Critical Vulnerability
════════════════════════
𐀪 Author: Dewank Pant
════════════════════════
ⴵ Time: Mon, 18 May 2026 21:30:18 GMT
════════════════════════
⌗ Tags: #information_security #security #ssrf #nasa #xxe
════════════════════════
𐀪 Author: Dewank Pant
════════════════════════
ⴵ Time: Mon, 18 May 2026 21:30:18 GMT
════════════════════════
⌗ Tags: #information_security #security #ssrf #nasa #xxe
Medium
The Regex Said Safe. The Parser Disagreed, NASA Earth Science Platform had a Critical Vulnerability
A sanitizer understood text. A parser understood XML grammar. The gap became a CVSS 9.1 bug in NASA Earth science infrastructure.
⤷ Title: Guía de Race Conditions: Tipos, Explotación y Mitigación en APIs
════════════════════════
𐀪 Author: JPablo13
════════════════════════
ⴵ Time: Tue, 19 May 2026 00:01:02 GMT
════════════════════════
⌗ Tags: #race_condition #bug_bounty #hacking #technology #cybersecurity
════════════════════════
𐀪 Author: JPablo13
════════════════════════
ⴵ Time: Tue, 19 May 2026 00:01:02 GMT
════════════════════════
⌗ Tags: #race_condition #bug_bounty #hacking #technology #cybersecurity
Medium
Guía de Race Conditions: Tipos, Explotación y Mitigación en APIs
Aprende qué es una Race Condition, sus metodologías de explotación y cómo mitigarlas.
⤷ Title: PortSwigger Lab #1 — Username Enumeration via Different Responses
════════════════════════
𐀪 Author: b4dk4rm4sec
════════════════════════
ⴵ Time: Mon, 18 May 2026 23:32:24 GMT
════════════════════════
⌗ Tags: #penetration_testing #software_development #cybersecurity #technology
════════════════════════
𐀪 Author: b4dk4rm4sec
════════════════════════
ⴵ Time: Mon, 18 May 2026 23:32:24 GMT
════════════════════════
⌗ Tags: #penetration_testing #software_development #cybersecurity #technology
Medium
PortSwigger Lab #1 — Username Enumeration via Different Responses
First real walkthrough. Burp Intruder, two wordlists, and one telltale response length.
⤷ Title: HTML Should Have Embedded Markdown 30 Years Ago
════════════════════════
𐀪 Author: Outermostkt
════════════════════════
ⴵ Time: Sun, 17 May 2026 02:08:54 GMT
════════════════════════
⌗ Tags: #thariq #ai #xs #html #markdown
════════════════════════
𐀪 Author: Outermostkt
════════════════════════
ⴵ Time: Sun, 17 May 2026 02:08:54 GMT
════════════════════════
⌗ Tags: #thariq #ai #xs #html #markdown
Medium
HTML Should Have Embedded Markdown 30 Years Ago
As you may know, there’s been a lot of buzz in the AI community lately about shifting back from Markdown to HTML. For instance, in articles…
⤷ Title: UNDERSTANDING BASIC SQL
════════════════════════
𐀪 Author: meimisaki
════════════════════════
ⴵ Time: Tue, 19 May 2026 00:57:03 GMT
════════════════════════
⌗ Tags: #sql_injection #css
════════════════════════
𐀪 Author: meimisaki
════════════════════════
ⴵ Time: Tue, 19 May 2026 00:57:03 GMT
════════════════════════
⌗ Tags: #sql_injection #css
Medium
UNDERSTANDING BASIC SQL
may 18, This is a small little writeup on sql injections queries and understanding how they process. From John Hammonds HackingHub as this…
⤷ Title: Reclaiming the Narrative: How “Hire a Hacker Pro” Built an Immutable Blueprint for Enterprise…
════════════════════════
𐀪 Author: Richard Shaughnessy
════════════════════════
ⴵ Time: Tue, 19 May 2026 01:38:59 GMT
════════════════════════
⌗ Tags: #news #cybersecurity #hacking #red_team #ethical_hacking
════════════════════════
𐀪 Author: Richard Shaughnessy
════════════════════════
ⴵ Time: Tue, 19 May 2026 01:38:59 GMT
════════════════════════
⌗ Tags: #news #cybersecurity #hacking #red_team #ethical_hacking
Medium
Reclaiming the Narrative: How “Hire a Hacker Pro” Built an Immutable Blueprint for Enterprise Security Transparency
The modern digital landscape is defined by an irony of visibility. On the one hand, cybersecurity has become a boardroom priority, a…
⤷ Title: Servidor de jogos — TryHackMe
════════════════════════
𐀪 Author: 0xReconDev
════════════════════════
ⴵ Time: Mon, 18 May 2026 16:03:19 GMT
════════════════════════
⌗ Tags: #pentesting #ctf #ctf_writeup #hacking #tryhackme_writeup
════════════════════════
𐀪 Author: 0xReconDev
════════════════════════
ⴵ Time: Mon, 18 May 2026 16:03:19 GMT
════════════════════════
⌗ Tags: #pentesting #ctf #ctf_writeup #hacking #tryhackme_writeup
Medium
GamingServer — TryHackMe
Nesse pequeno documento, vou contar como foi minha trajetória e pensamento usado para terminar o CTF GamingServer no TryHackMe. Eu não sou…
⤷ Title: Digital Marketing Course: Your Gateway to a Thriving Career in 2026
════════════════════════
𐀪 Author: KOMAL PAL
════════════════════════
ⴵ Time: Tue, 19 May 2026 02:24:08 GMT
════════════════════════
⌗ Tags: #ethical_hacking #digital_marketing #cybersecurity #javascript #python
════════════════════════
𐀪 Author: KOMAL PAL
════════════════════════
ⴵ Time: Tue, 19 May 2026 02:24:08 GMT
════════════════════════
⌗ Tags: #ethical_hacking #digital_marketing #cybersecurity #javascript #python
Medium
Digital Marketing Course: Your Gateway to a Thriving Career in 2026
In today’s fast-paced digital world, mastering digital marketing course essentials has become non-negotiable for professionals and freshers…
⤷ Title: TeamPCP Open-Sources “Shai-Hulud” AI Supply Chain Malware, Hitting NPM Fleet
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 19 May 2026 04:59:09 +0000
════════════════════════
⌗ Tags: #Malware #@axios_util #@chalk_tempalte #Credential Harvesting #DevSecOps 2026 #Indicator of Compromise #Malware Proliferation #npm Supply Chain Attack #Shai_Hulud Worm #TeamPCP #Typosquatting
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 19 May 2026 04:59:09 +0000
════════════════════════
⌗ Tags: #Malware #@axios_util #@chalk_tempalte #Credential Harvesting #DevSecOps 2026 #Indicator of Compromise #Malware Proliferation #npm Supply Chain Attack #Shai_Hulud Worm #TeamPCP #Typosquatting
Daily CyberSecurity
TeamPCP Open-Sources "Shai-Hulud" AI Supply Chain Malware, Hitting NPM Fleet
TeamPCP has open-sourced the Shai-Hulud supply chain worm. Multiple malicious typosquatted NPM packages are already weaponizing the AI-synthesized code.
⤷ Title: NGINX Rift: Critical 18-Year-Old Flaw CVE-2026-42945 Actively Exploited to Crash Servers
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 19 May 2026 04:51:21 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #ASLR Mitigation #CVE_2026_42945 #Denial of Service #F5 Networks #Heap Buffer Overflow #Honeypot Telemetry #NGINX Rift #ngx_http_rewrite_module #Remote Code Execution #VulnCheck
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 19 May 2026 04:51:21 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #ASLR Mitigation #CVE_2026_42945 #Denial of Service #F5 Networks #Heap Buffer Overflow #Honeypot Telemetry #NGINX Rift #ngx_http_rewrite_module #Remote Code Execution #VulnCheck
Daily CyberSecurity
NGINX Rift: Critical 18-Year-Old Flaw CVE-2026-42945 Actively Exploited to Crash Servers
Critical 18-year-old "NGINX Rift" flaw CVE-2026-42945 is under active exploitation. Learn how to patch your proxies and block the unauthenticated heap overflow.
⤷ Title: Microsoft Announces Driver Quality Initiative to Fix Windows 11 Sleep Battery Drain
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 19 May 2026 04:43:06 +0000
════════════════════════
⌗ Tags: #Technology #Windows #Battery Drain Fix #C_State Sleep #Cloud_Initiated Driver Recovery #Driver Quality Initiative #Laptop Overheating #OEM Firmware #Telemetry Loophole #Windows 11 Modern Standby #Windows Hardware Compatibility #WinHEC 2026
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 19 May 2026 04:43:06 +0000
════════════════════════
⌗ Tags: #Technology #Windows #Battery Drain Fix #C_State Sleep #Cloud_Initiated Driver Recovery #Driver Quality Initiative #Laptop Overheating #OEM Firmware #Telemetry Loophole #Windows 11 Modern Standby #Windows Hardware Compatibility #WinHEC 2026
Daily CyberSecurity
Microsoft Announces Driver Quality Initiative to Fix Windows 11 Sleep Battery Drain
At WinHEC 2026, Microsoft launched the Driver Quality Initiative to penalize poorly optimized OEM hardware drivers that cause laptop overheating and sleep battery drain.
⤷ Title: By Design No More: Microsoft Edge Vv148.0 to Block Plaintext Password Scrapes from Process Memory
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 19 May 2026 04:39:39 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #App_Bound Encryption #Chromium Architecture #Cleartext Credentials #Edge v148.0 Stable #Local Privilege Escalation #Memory Dump #microsoft edge #Process Memory Scraping #Threat Intelligence 2026 #Tom Jøran Sønstebyseter Rønning
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 19 May 2026 04:39:39 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #App_Bound Encryption #Chromium Architecture #Cleartext Credentials #Edge v148.0 Stable #Local Privilege Escalation #Memory Dump #microsoft edge #Process Memory Scraping #Threat Intelligence 2026 #Tom Jøran Sønstebyseter Rønning
Daily CyberSecurity
By Design No More: Microsoft Edge Vv148.0 to Block Plaintext Password Scrapes from Process Memory
Microsoft pivots on its "by design" stance, updating Edge to version 148.0 to stop caching your entire plaintext password vault in active volatile memory.
⤷ Title: Canonical Unlocks Ubuntu 26.04 LTS Upgrade Path for Ubuntu 25.10 Users
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 19 May 2026 04:34:44 +0000
════════════════════════
⌗ Tags: #Linux #Canonical Lifecycle #Linux Desktop Security #Long Term Support Migration #Point Release Timeline #Resolute Raccoon #Software Regressions #Software Updater #System Upgrades 2026 #Ubuntu 25.10 Upgrade #Ubuntu 26.04 LTS
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 19 May 2026 04:34:44 +0000
════════════════════════
⌗ Tags: #Linux #Canonical Lifecycle #Linux Desktop Security #Long Term Support Migration #Point Release Timeline #Resolute Raccoon #Software Regressions #Software Updater #System Upgrades 2026 #Ubuntu 25.10 Upgrade #Ubuntu 26.04 LTS
Daily CyberSecurity
Canonical Unlocks Ubuntu 26.04 LTS Upgrade Path for Ubuntu 25.10 Users
Canonical has officially opened the GUI upgrade gate from Ubuntu 25.10 to Ubuntu 26.04 LTS. Learn why the path was delayed and what it means for 24.04 users.
⤷ Title: Mass Exploitation Alert: Hardcoded Credentials in Four-Faith Industrial Routers (CVE-2024-9643) Hijacked for Botnets
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 19 May 2026 02:49:56 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Botnet Takeover #Crowdsec #CVE_2024_9643 #F3x36 #Four_Faith #hardcoded credentials #Industrial Cellular Router #infosec #IoT security #Mass Exploitation #Nuclei Template
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 19 May 2026 02:49:56 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Botnet Takeover #Crowdsec #CVE_2024_9643 #F3x36 #Four_Faith #hardcoded credentials #Industrial Cellular Router #infosec #IoT security #Mass Exploitation #Nuclei Template
Daily CyberSecurity
Mass Exploitation Alert: Hardcoded Credentials in Four-Faith Industrial Routers (CVE-2024-9643) Hijacked for Botnets
Urgent: CrowdSec warns CVE-2024-9643 in Four-Faith routers has hit mass exploitation phase. Attackers abuse hardcoded logins to build botnets. Patch now!
⤷ Title: Targeting 2 Million Developers: Malicious Nx Console Extension Hijacks VS Code Marketplace
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 19 May 2026 02:30:49 +0000
════════════════════════
⌗ Tags: #Malware #Claude Code Hijack #Cloud Infrastructure Theft #CVE_2026_OrphanCommit #Cyber Security #infosec #MacOS backdoor #nrwl.angular_console #Nx Console #Patch Alert #supply chain attack #VS Code Marketplace
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 19 May 2026 02:30:49 +0000
════════════════════════
⌗ Tags: #Malware #Claude Code Hijack #Cloud Infrastructure Theft #CVE_2026_OrphanCommit #Cyber Security #infosec #MacOS backdoor #nrwl.angular_console #Nx Console #Patch Alert #supply chain attack #VS Code Marketplace
Daily CyberSecurity
Targeting 2 Million Developers: Malicious Nx Console Extension Hijacks VS Code Marketplace
Urgent: Malicious Nx Console v18.95.0 briefly hit the VS Code Marketplace, targeting 2M+ installs with a macOS backdoor and token stealer. Audit now!
⤷ Title: Massive PostgreSQL Update: 11 Vulnerabilities Patched as Version 14 Hits End-of-Life Warning
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 19 May 2026 02:12:46 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Code Execution #CVE_2026_6477 #CVE_2026_6637 #database security #DevOps #infosec #Patch Alert #Postgres Update #PostgreSQL #sql injection #SysAdmin
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 19 May 2026 02:12:46 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Code Execution #CVE_2026_6477 #CVE_2026_6637 #database security #DevOps #infosec #Patch Alert #Postgres Update #PostgreSQL #sql injection #SysAdmin
Daily CyberSecurity
Massive PostgreSQL Update: 11 Vulnerabilities Patched as Version 14 Hits End-of-Life Warning
PostgreSQL releases updates for versions 14-18 fixing 11 vulnerabilities (CVSS 8.8). Plus, critical End-of-Life deadline issued for Postgres 14.
⤷ Title: PoC Exploit Publicly Disclosed: 20-Year-Old PostgreSQL pgcrypto Flaw (CVE-2026-2005) Grants Full Superuser RCE
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 19 May 2026 01:51:05 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2026_2005 #database security #Heap Buffer Overflow #infosec #Patch Alert #pgcrypto #PoC Exploit #PostgreSQL #Public Disclosure #rce #Superuser Escalation
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 19 May 2026 01:51:05 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2026_2005 #database security #Heap Buffer Overflow #infosec #Patch Alert #pgcrypto #PoC Exploit #PostgreSQL #Public Disclosure #rce #Superuser Escalation
Daily CyberSecurity
PoC Exploit Publicly Disclosed: 20-Year-Old PostgreSQL pgcrypto Flaw (CVE-2026-2005) Grants Full Superuser RCE
Technical details and GitHub PoC exploits disclosed for PostgreSQL pgcrypto CVE-2026-2005. Low-privilege users can seize root superuser RCE. Patch now!
⤷ Title: Breaking the AI Sandbox: Critical Flowise Flaw (CVE-2026-46442) Grants Host-Level RCE
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 19 May 2026 01:40:33 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #AI Agent Security #code_injection #CVE_2026_46442 #Cyber Security #Flowise #infosec #LLM Orchestration #NodeVM #Patch Alert #Remote Code Execution #Sandbox Escape
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 19 May 2026 01:40:33 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #AI Agent Security #code_injection #CVE_2026_46442 #Cyber Security #Flowise #infosec #LLM Orchestration #NodeVM #Patch Alert #Remote Code Execution #Sandbox Escape
Daily CyberSecurity
Breaking the AI Sandbox: Critical Flowise Flaw (CVE-2026-46442) Grants Host-Level RCE
CVE-2026-46442 in Flowise allows authenticated users to escape the NodeVM sandbox and execute system commands. Secure your AI infrastructure now!