⤷ Title: Dev Diaries TryHackMe Walkthrough
════════════════════════
𐀪 Author: Death Esther
════════════════════════
ⴵ Time: Thu, 21 May 2026 20:31:00 GMT
════════════════════════
⌗ Tags: #dev_diaries_thm #tryhackme_walkthrough #tryhackme #dev_diaries_writeup #osint
════════════════════════
𐀪 Author: Death Esther
════════════════════════
ⴵ Time: Thu, 21 May 2026 20:31:00 GMT
════════════════════════
⌗ Tags: #dev_diaries_thm #tryhackme_walkthrough #tryhackme #dev_diaries_writeup #osint
Medium
Dev Diaries — TryHackMe Walkthrough
Beginner OSINT challenge covering subdomain discovery, GitHub investigation, and hidden flag recovery.
⤷ Title: Mastering Web Security: Avoiding the OWASP Top 10 in Modern Applications
════════════════════════
𐀪 Author: Ushani Saubhagya
════════════════════════
ⴵ Time: Thu, 21 May 2026 19:27:11 GMT
════════════════════════
⌗ Tags: #web_security #devsecops #api_security #owasp #cybersecurity
════════════════════════
𐀪 Author: Ushani Saubhagya
════════════════════════
ⴵ Time: Thu, 21 May 2026 19:27:11 GMT
════════════════════════
⌗ Tags: #web_security #devsecops #api_security #owasp #cybersecurity
Medium
Mastering Web Security: Avoiding the OWASP Top 10 in Modern Applications
A practical developer’s guide to preventing common vulnerabilities, securing APIs and building safer web applications in 2026
⤷ Title: Vibed (SQLi) WebVerse
════════════════════════
𐀪 Author: 7s26Simon
════════════════════════
ⴵ Time: Thu, 21 May 2026 19:16:29 GMT
════════════════════════
⌗ Tags: #webverse #ctf #ctf_walkthrough #sql_injection #ctf_writeup
════════════════════════
𐀪 Author: 7s26Simon
════════════════════════
ⴵ Time: Thu, 21 May 2026 19:16:29 GMT
════════════════════════
⌗ Tags: #webverse #ctf #ctf_walkthrough #sql_injection #ctf_writeup
Medium
Vibed (SQLi) WebVerse
Lab can be found at: https://webverselabs-pro.com/
⤷ Title: Pentesterlar neden Cache bilmeli?
════════════════════════
𐀪 Author: Zeki Kayaalp
════════════════════════
ⴵ Time: Thu, 21 May 2026 22:33:37 GMT
════════════════════════
⌗ Tags: #cybersecurity #cache #penetration_testing #web_security #bug_bounty
════════════════════════
𐀪 Author: Zeki Kayaalp
════════════════════════
ⴵ Time: Thu, 21 May 2026 22:33:37 GMT
════════════════════════
⌗ Tags: #cybersecurity #cache #penetration_testing #web_security #bug_bounty
Medium
Pentesterlar neden Cache bilmeli?
Red Team/ Pentest alanında uzmanlaşmak istiyorsanız sistemin çalışma mantığını da çözmelisiniz arkadaşlar. İsteğin girişinden çıkışına…
⤷ Title: Primitive Process Injection: APC Tandem
════════════════════════
𐀪 Author: S12 - 0x12Dark Development
════════════════════════
ⴵ Time: Thu, 21 May 2026 22:02:39 GMT
════════════════════════
⌗ Tags: #cybersecurity #pentesting #hacking #malware #infosec
════════════════════════
𐀪 Author: S12 - 0x12Dark Development
════════════════════════
ⴵ Time: Thu, 21 May 2026 22:02:39 GMT
════════════════════════
⌗ Tags: #cybersecurity #pentesting #hacking #malware #infosec
Medium
Primitive Process Injection: APC Tandem
Welcome to this new Medium post. Today I want to show you an interesting injection technique that chains several of the primitives we have…
⤷ Title: The New Blind Spot in AI Security: Agent-to-Agent Traffic, MCP Servers, and Shadow AI
════════════════════════
𐀪 Author: Andre Boyle
════════════════════════
ⴵ Time: Thu, 21 May 2026 21:01:52 GMT
════════════════════════
⌗ Tags: #ai #llm #cybersecurity #hacking #mcp_server
════════════════════════
𐀪 Author: Andre Boyle
════════════════════════
ⴵ Time: Thu, 21 May 2026 21:01:52 GMT
════════════════════════
⌗ Tags: #ai #llm #cybersecurity #hacking #mcp_server
Medium
The New Blind Spot in AI Security: Agent-to-Agent Traffic, MCP Servers, and Shadow AI
AI agents are moving from “answering questions” to “taking actions.” Security teams MUST catch up.
⤷ Title: TryHackMe: Blog Walkthrough
════════════════════════
𐀪 Author: Antonio
════════════════════════
ⴵ Time: Thu, 21 May 2026 22:26:42 GMT
════════════════════════
⌗ Tags: #tryhackme_writeup #tryhackme #tryhackme_walkthrough
════════════════════════
𐀪 Author: Antonio
════════════════════════
ⴵ Time: Thu, 21 May 2026 22:26:42 GMT
════════════════════════
⌗ Tags: #tryhackme_writeup #tryhackme #tryhackme_walkthrough
Medium
TryHackMe: Blog Walkthrough
Enumeration
⤷ Title: TryHackMe Forward Walkthrough: Full Active Directory Compromise
════════════════════════
𐀪 Author: Aniket Tegginamath
════════════════════════
ⴵ Time: Thu, 21 May 2026 21:45:01 GMT
════════════════════════
⌗ Tags: #tryhackme #ctf #cybersecurity
════════════════════════
𐀪 Author: Aniket Tegginamath
════════════════════════
ⴵ Time: Thu, 21 May 2026 21:45:01 GMT
════════════════════════
⌗ Tags: #tryhackme #ctf #cybersecurity
Medium
TryHackMe Forward Walkthrough: Full Active Directory Compromise
Target: 10.48.171.192 Initial credentials: ctf.local\j.smith / JSmith@IT2024 Administrator flag:
⤷ Title: Hands-On SQL Injection Lab (DVWA — Low Security)
════════════════════════
𐀪 Author: Tobiloba Lawal
════════════════════════
ⴵ Time: Thu, 21 May 2026 21:45:05 GMT
════════════════════════
⌗ Tags: #dvwa_sql_injection #sql_injection #sql #install_dvwa #dvwa
════════════════════════
𐀪 Author: Tobiloba Lawal
════════════════════════
ⴵ Time: Thu, 21 May 2026 21:45:05 GMT
════════════════════════
⌗ Tags: #dvwa_sql_injection #sql_injection #sql #install_dvwa #dvwa
Medium
Hands-On SQL Injection Lab (DVWA — Low Security)
As part of my cybersecurity learning journey, I recently completed a practical SQL Injection (SQLi) lab using Damn Vulnerable Web…
⤷ Title: PowerDNS Fixes Flaws Granting Server Crashes and Memory Corruption
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 22 May 2026 00:17:38 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Authoritative Server #Bind Backend #CVE_2026_41999 #CVE_2026_42000 #CVE_2026_42001 #CVE_2026_42002 #Cyber Security #Denial of Service #GSS_TSIG #infosec #memory corruption #PowerDNS
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 22 May 2026 00:17:38 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Authoritative Server #Bind Backend #CVE_2026_41999 #CVE_2026_42000 #CVE_2026_42001 #CVE_2026_42002 #Cyber Security #Denial of Service #GSS_TSIG #infosec #memory corruption #PowerDNS
Daily CyberSecurity
PowerDNS Fixes Flaws Granting Server Crashes and Memory Corruption
PowerDNS coordinates patches for CVE-2026-42001 and adjacent flaws that trigger server crashes, GSS-TSIG memory corruption, and view data leaks. Patch now!
⤷ Title: CISA Sound the Alarm: Langflow AI Platform and Trend Micro Added to KEV Catalog Due to Active Exploitation
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 21 May 2026 23:29:12 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Binding Operational Directive #CISA KEV #Cross_Origin Resource Sharing #CVE_2025_34291 #CVE_2026_34926 #Cyber Security #Directory Traversal #infosec #Langflow #Remote Code Execution #SameSite Cookie #Trend Micro Apex One
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 21 May 2026 23:29:12 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Binding Operational Directive #CISA KEV #Cross_Origin Resource Sharing #CVE_2025_34291 #CVE_2026_34926 #Cyber Security #Directory Traversal #infosec #Langflow #Remote Code Execution #SameSite Cookie #Trend Micro Apex One
Daily CyberSecurity
CISA Sound the Alarm: Langflow AI Platform and Trend Micro Added to KEV Catalog Due to Active Exploitation
CISA updates its KEV Catalog with critical flaws in Langflow (CVE-2025-34291) and Trend Micro Apex One. Federal agencies ordered to patch by June 4, 2026.
⤷ Title: XSS Testing Checklist: 12 Important Test Cases Every Security Tester Should Know
════════════════════════
𐀪 Author: Yamini Yadav_369
════════════════════════
ⴵ Time: Fri, 22 May 2026 00:33:59 GMT
════════════════════════
⌗ Tags: #xss_attack #osint #bug_bounty #ethical_hacking #cybersecurity
════════════════════════
𐀪 Author: Yamini Yadav_369
════════════════════════
ⴵ Time: Fri, 22 May 2026 00:33:59 GMT
════════════════════════
⌗ Tags: #xss_attack #osint #bug_bounty #ethical_hacking #cybersecurity
Medium
XSS Testing Checklist: 12 Important Test Cases Every Security Tester Should Know
A beginner-friendly guide to finding Cross-Site Scripting vulnerabilities
⤷ Title: SQL Injection Testing Checklist: 10 Important Test Cases Every Security Tester Should Know
════════════════════════
𐀪 Author: Yamini Yadav_369
════════════════════════
ⴵ Time: Fri, 22 May 2026 00:32:56 GMT
════════════════════════
⌗ Tags: #sql #penetration_testing #bug_bounty #ethical_hacking #cybersecurity
════════════════════════
𐀪 Author: Yamini Yadav_369
════════════════════════
ⴵ Time: Fri, 22 May 2026 00:32:56 GMT
════════════════════════
⌗ Tags: #sql #penetration_testing #bug_bounty #ethical_hacking #cybersecurity
Medium
SQL Injection Testing Checklist: 10 Important Test Cases Every Security Tester Should Know
A beginner-friendly guide to finding SQL injection vulnerabilities, no jargon, just clear steps
⤷ Title: I was tired of Flameshot. So i built a Burp Suite extension
════════════════════════
𐀪 Author: Juan Felipe Osorio Z
════════════════════════
ⴵ Time: Thu, 21 May 2026 23:51:00 GMT
════════════════════════
⌗ Tags: #cybersecurity #security #burpsuite #burpsuite_extension #hacking
════════════════════════
𐀪 Author: Juan Felipe Osorio Z
════════════════════════
ⴵ Time: Thu, 21 May 2026 23:51:00 GMT
════════════════════════
⌗ Tags: #cybersecurity #security #burpsuite #burpsuite_extension #hacking
Medium
I was tired of Flameshot. So i built a Burp Suite extension
How a repetitive documentation workflow during pentests led me to build RepShot an open source Burp Suite extension that generates…
⤷ Title: Inclusiveness — LFI to RCE via FTP Upload + SUID PATH Hijack | OffSec PG Play
════════════════════════
𐀪 Author: Roshan Rajbanshi
════════════════════════
ⴵ Time: Fri, 22 May 2026 00:29:33 GMT
════════════════════════
⌗ Tags: #penetration_testing #ethical_hacking #cybersecurity #offensive_security #pentesting
════════════════════════
𐀪 Author: Roshan Rajbanshi
════════════════════════
ⴵ Time: Fri, 22 May 2026 00:29:33 GMT
════════════════════════
⌗ Tags: #penetration_testing #ethical_hacking #cybersecurity #offensive_security #pentesting
Medium
Inclusiveness — LFI to RCE via FTP Upload + SUID PATH Hijack | OffSec PG Play
Inclusiveness is a box that rewards patience during enumeration. Three services are running — FTP, SSH, and HTTP — and the path to root…
⤷ Title: Five Critical vm2 Vulnerabilities Grant Instant Node.js Host RCE
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 22 May 2026 02:30:45 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2026_47137 #CVE_2026_47140 #CVE_2026_47210 #Cyber Security #infosec #JSPI Promise #Node.js Sandbox Escape #patch bypass #Prototype Hijacking #Remote Code Execution #vm2 sandbox
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 22 May 2026 02:30:45 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2026_47137 #CVE_2026_47140 #CVE_2026_47210 #Cyber Security #infosec #JSPI Promise #Node.js Sandbox Escape #patch bypass #Prototype Hijacking #Remote Code Execution #vm2 sandbox
Daily CyberSecurity
Five Critical vm2 Vulnerabilities Grant Instant Node.js Host RCE
Five critical sandbox escape flaws in vm2 (CVE-2026-47140 & more) allow unauthenticated remote code execution on the host server. Update now!
⤷ Title: Print-Path RCE Exposed: Critical HP Linux Driver Flaws (CVE-2026-8631) Grant Root Privileges
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 22 May 2026 02:12:56 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2026_8631 #CVE_2026_8632 #Cyber Security #Driver Vulnerability #HP Linux Driver #hpcups Processing #HPLIP Software #infosec #integer overflow #Local Privilege Escalation #Remote Code Execution
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 22 May 2026 02:12:56 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2026_8631 #CVE_2026_8632 #Cyber Security #Driver Vulnerability #HP Linux Driver #hpcups Processing #HPLIP Software #infosec #integer overflow #Local Privilege Escalation #Remote Code Execution
Daily CyberSecurity
Print-Path RCE Exposed: Critical HP Linux Driver Flaws (CVE-2026-8631) Grant Root Privileges
HP patches critical 9.3 CVSS flaw CVE-2026-8631 in HPLIP drivers. Unauthenticated attackers can bypass memory limits for Linux remote code execution.
⤷ Title: Splunk Patches High-Severity Bugs Granting DoS and Internal Log Leaks
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 22 May 2026 01:20:03 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #access control bypass #CVE_2026_20238 #CVE_2026_20239 #CVE_2026_20240 #Cyber Security #Denial of Service #infosec #Log Leak #Session Cookie Exposure #Splunk AI Toolkit #Splunk Enterprise
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 22 May 2026 01:20:03 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #access control bypass #CVE_2026_20238 #CVE_2026_20239 #CVE_2026_20240 #Cyber Security #Denial of Service #infosec #Log Leak #Session Cookie Exposure #Splunk AI Toolkit #Splunk Enterprise
Daily CyberSecurity
Splunk Patches High-Severity Bugs Granting DoS and Internal Log Leaks
Splunk releases coordinated patches for CVE-2026-20240 and adjacent flaws exposing raw session cookies, data filters, and triggering server DoS.
⤷ Title: Critical Altium Enterprise Server Flaws Grant RCE and Database Access
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 22 May 2026 01:01:53 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Altium Enterprise Server #ComparisonService #CVE_2026_9102 #CVE_2026_9129 #Cyber Security #Gerber File Upload #infosec #Path Traversal #PCB Design Security #rce #Remote Code Execution #StorageController
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 22 May 2026 01:01:53 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Altium Enterprise Server #ComparisonService #CVE_2026_9102 #CVE_2026_9129 #Cyber Security #Gerber File Upload #infosec #Path Traversal #PCB Design Security #rce #Remote Code Execution #StorageController
Daily CyberSecurity
Critical Altium Enterprise Server Flaws Grant RCE and Database Access
Altium patches dual critical 9.4 CVSS flaws (CVE-2026-9129 & CVE-2026-9102) allowing authenticated users to execute remote code and steal files.
⤷ Title: HackTheBox: Nibbles Write-up (Walkthrough)
════════════════════════
𐀪 Author: ankamcharanteja
════════════════════════
ⴵ Time: Fri, 22 May 2026 01:10:38 GMT
════════════════════════
⌗ Tags: #cybersecurity #hackthebox_writeup
════════════════════════
𐀪 Author: ankamcharanteja
════════════════════════
ⴵ Time: Fri, 22 May 2026 01:10:38 GMT
════════════════════════
⌗ Tags: #cybersecurity #hackthebox_writeup
Medium
HackTheBox: Nibbles Write-up (Walkthrough)
Nibbles is a short, Linux-based HackTheBox machine featuring a clean, realistic attack path. The initial foothold leverages a file upload…
⤷ Title: From a Simple Profile Endpoint to a 100k+ User IDOR on HackerRank
════════════════════════
𐀪 Author: Hangga Aji Sayekti
════════════════════════
ⴵ Time: Fri, 22 May 2026 01:24:22 GMT
════════════════════════
⌗ Tags: #hackerrank #idor #bug_bounty_writeup
════════════════════════
𐀪 Author: Hangga Aji Sayekti
════════════════════════
ⴵ Time: Fri, 22 May 2026 01:24:22 GMT
════════════════════════
⌗ Tags: #hackerrank #idor #bug_bounty_writeup
Medium
From a Simple Profile Endpoint to a 100k+ User IDOR on HackerRank
From a Simple Profile Endpoint to a 100k+ User IDOR on HackerRank Introduction This write-up was published with permission from HackerRank, with sensitive details properly redacted to keep users …