⤷ Title: Cloud AppSec Lab — Building, Breaking, and Understanding the Gap Between Web Apps and AWS Cloud…
════════════════════════
𐀪 Author: c_K £lvin
════════════════════════
ⴵ Time: Fri, 22 May 2026 12:58:27 GMT
════════════════════════
⌗ Tags: #bug_bounty #portswigger #aws #web_application_security #hackthebox
════════════════════════
𐀪 Author: c_K £lvin
════════════════════════
ⴵ Time: Fri, 22 May 2026 12:58:27 GMT
════════════════════════
⌗ Tags: #bug_bounty #portswigger #aws #web_application_security #hackthebox
Medium
Cloud AppSec Lab — Building, Breaking, and Understanding the Gap Between Web Apps and AWS
Why I Built This
⤷ Title: Why Penetration Testing Actually Matters
════════════════════════
𐀪 Author: Alejandra - Kaduu CTI
════════════════════════
ⴵ Time: Fri, 22 May 2026 14:57:38 GMT
════════════════════════
⌗ Tags: #penetration_testing #hacking #cybersecurity #ethical_hacking #darknet
════════════════════════
𐀪 Author: Alejandra - Kaduu CTI
════════════════════════
ⴵ Time: Fri, 22 May 2026 14:57:38 GMT
════════════════════════
⌗ Tags: #penetration_testing #hacking #cybersecurity #ethical_hacking #darknet
Medium
🔐 Why Penetration Testing Actually Matters
Let’s be real: most people hear “penetration testing” and immediately think it’s just another tech buzzword. But in practice, it’s one of…
⤷ Title: Building an IDA Pro plugin for stack-initialised constant recovery
════════════════════════
𐀪 Author: Keiran Smith
════════════════════════
ⴵ Time: Fri, 22 May 2026 14:45:43 GMT
════════════════════════
⌗ Tags: #hacking #reverse_engineering #cybersecurity #python #malware_analysis
════════════════════════
𐀪 Author: Keiran Smith
════════════════════════
ⴵ Time: Fri, 22 May 2026 14:45:43 GMT
════════════════════════
⌗ Tags: #hacking #reverse_engineering #cybersecurity #python #malware_analysis
⤷ Title: CVE-2026–34474: ZTE H298A / H108N Credential Leak via ETHCheat
════════════════════════
𐀪 Author: Monx Research
════════════════════════
ⴵ Time: Fri, 22 May 2026 13:14:37 GMT
════════════════════════
⌗ Tags: #research #penetration_testing #pentesting #hacking #iot
════════════════════════
𐀪 Author: Monx Research
════════════════════════
ⴵ Time: Fri, 22 May 2026 13:14:37 GMT
════════════════════════
⌗ Tags: #research #penetration_testing #pentesting #hacking #iot
Medium
CVE-2026–34474: ZTE H298A / H108N Credential Leak via ETHCheat
Some router bugs expose internal state through side channels. This one is more direct: the management interface on ZTE ZXHN H298A and H108N…
⤷ Title: Security Headers Are Just the Beginning: Why True Web Security Is a Continuous Journey
════════════════════════
𐀪 Author: Sohail Ahmed
════════════════════════
ⴵ Time: Fri, 22 May 2026 14:08:46 GMT
════════════════════════
⌗ Tags: #devsecops #infosec #web_development #software_engineering #cybersecurity
════════════════════════
𐀪 Author: Sohail Ahmed
════════════════════════
ⴵ Time: Fri, 22 May 2026 14:08:46 GMT
════════════════════════
⌗ Tags: #devsecops #infosec #web_development #software_engineering #cybersecurity
⤷ Title: Craft HTB — Full Walkthrough: From RCE to Root via Vault SSH OTP| Silicon Valley
════════════════════════
𐀪 Author: Panda Anonimo
════════════════════════
ⴵ Time: Fri, 22 May 2026 13:53:52 GMT
════════════════════════
⌗ Tags: #infosec #docker #hackthebox #rce #vault
════════════════════════
𐀪 Author: Panda Anonimo
════════════════════════
ⴵ Time: Fri, 22 May 2026 13:53:52 GMT
════════════════════════
⌗ Tags: #infosec #docker #hackthebox #rce #vault
⤷ Title: How to Threat Model AI Applications With STRIDE
════════════════════════
𐀪 Author: ToxSec
════════════════════════
ⴵ Time: Fri, 22 May 2026 13:40:45 GMT
════════════════════════
⌗ Tags: #infosec #ai_security #ai_agent_security #cybersecurity #ai
════════════════════════
𐀪 Author: ToxSec
════════════════════════
ⴵ Time: Fri, 22 May 2026 13:40:45 GMT
════════════════════════
⌗ Tags: #infosec #ai_security #ai_agent_security #cybersecurity #ai
Medium
How to Threat Model AI Applications With STRIDE
TL;DR: STRIDE was built for traditional software. AI systems break its assumptions in six places at once. STRIDE-AI remaps the six threat…
⤷ Title: Operation Saffron: The Global Takedown of a VPN Trusted by Ransomware Gangs.
════════════════════════
𐀪 Author: eL Njas!™
════════════════════════
ⴵ Time: Fri, 22 May 2026 13:36:47 GMT
════════════════════════
⌗ Tags: #ransomware #vpn #infosec #cybercrime
════════════════════════
𐀪 Author: eL Njas!™
════════════════════════
ⴵ Time: Fri, 22 May 2026 13:36:47 GMT
════════════════════════
⌗ Tags: #ransomware #vpn #infosec #cybercrime
⤷ Title: The KQL Query That Caught 260 Brute Force Attempts in Microsoft Sentinel
════════════════════════
𐀪 Author: Ronak Mishra
════════════════════════
ⴵ Time: Fri, 22 May 2026 13:01:01 GMT
════════════════════════
⌗ Tags: #microsoft_sentinel #infosec #cybersecurity #kql #blue_team
════════════════════════
𐀪 Author: Ronak Mishra
════════════════════════
ⴵ Time: Fri, 22 May 2026 13:01:01 GMT
════════════════════════
⌗ Tags: #microsoft_sentinel #infosec #cybersecurity #kql #blue_team
⤷ Title: When AI Agents Came for Our CTF, I Built a Gate!
════════════════════════
𐀪 Author: Salehalsaheb
════════════════════════
ⴵ Time: Fri, 22 May 2026 14:47:41 GMT
════════════════════════
⌗ Tags: #ai #penetration_testing #ctf #security #cybersecurity
════════════════════════
𐀪 Author: Salehalsaheb
════════════════════════
ⴵ Time: Fri, 22 May 2026 14:47:41 GMT
════════════════════════
⌗ Tags: #ai #penetration_testing #ctf #security #cybersecurity
⤷ Title: AI Security Is Changing Fast — These 6 Open-Source Tools Prove It
════════════════════════
𐀪 Author: TechLatest.Net
════════════════════════
ⴵ Time: Fri, 22 May 2026 14:42:46 GMT
════════════════════════
⌗ Tags: #ai_security #penetration_testing #ai_red_teaming #pentesting #open_source
════════════════════════
𐀪 Author: TechLatest.Net
════════════════════════
ⴵ Time: Fri, 22 May 2026 14:42:46 GMT
════════════════════════
⌗ Tags: #ai_security #penetration_testing #ai_red_teaming #pentesting #open_source
⤷ Title: Walkthrought Room Penetration Testing Frameworks
════════════════════════
𐀪 Author: FireWolf
════════════════════════
ⴵ Time: Fri, 22 May 2026 14:41:48 GMT
════════════════════════
⌗ Tags: #tryhackme #writeup #framework #penetration_testing #tryhackme_walkthrough
════════════════════════
𐀪 Author: FireWolf
════════════════════════
ⴵ Time: Fri, 22 May 2026 14:41:48 GMT
════════════════════════
⌗ Tags: #tryhackme #writeup #framework #penetration_testing #tryhackme_walkthrough
Medium
Walkthrought Room Penetration Testing Frameworks
Task 1-Introduction
⤷ Title: CVE-2026–1839: How Training AI with Heavy Weights Can Still Lead to Light Security
════════════════════════
𐀪 Author: Mike Czumak
════════════════════════
ⴵ Time: Fri, 22 May 2026 14:11:57 GMT
════════════════════════
⌗ Tags: #artificial_intelligence #vulnerability #penetration_testing #ai #cybersecurity
════════════════════════
𐀪 Author: Mike Czumak
════════════════════════
ⴵ Time: Fri, 22 May 2026 14:11:57 GMT
════════════════════════
⌗ Tags: #artificial_intelligence #vulnerability #penetration_testing #ai #cybersecurity
Medium
CVE-2026–1839: How Training AI with Heavy Weights Can Still Lead to Light Security
Introduction
⤷ Title: Matryoshka CTF Notes | TryHackMe
════════════════════════
𐀪 Author: Sle3pyHead
════════════════════════
ⴵ Time: Fri, 22 May 2026 14:09:38 GMT
════════════════════════
⌗ Tags: #tryhackme #tryhackme_walkthrough #ctf_walkthrough #ctf_writeup #tryhackme_writeup
════════════════════════
𐀪 Author: Sle3pyHead
════════════════════════
ⴵ Time: Fri, 22 May 2026 14:09:38 GMT
════════════════════════
⌗ Tags: #tryhackme #tryhackme_walkthrough #ctf_walkthrough #ctf_writeup #tryhackme_writeup
⤷ Title: API authentication: why your login system is probably one step away from disaster
════════════════════════
𐀪 Author: Dhruv Thakur
════════════════════════
ⴵ Time: Fri, 22 May 2026 14:14:56 GMT
════════════════════════
⌗ Tags: #web_development #api_security #programming #backend #jwt_authentication
════════════════════════
𐀪 Author: Dhruv Thakur
════════════════════════
ⴵ Time: Fri, 22 May 2026 14:14:56 GMT
════════════════════════
⌗ Tags: #web_development #api_security #programming #backend #jwt_authentication
Medium
API authentication: why your login system is probably one step away from disaster
A complete guide to Basic Auth, Bearer Tokens, JWT, and the security rules that actually matter.
⤷ Title: Lab: SQL injection vulnerability allowing login bypass
════════════════════════
𐀪 Author: Deenflow
════════════════════════
ⴵ Time: Fri, 22 May 2026 13:40:12 GMT
════════════════════════
⌗ Tags: #ctf #sql_injection #portswigger #cybersecurity
════════════════════════
𐀪 Author: Deenflow
════════════════════════
ⴵ Time: Fri, 22 May 2026 13:40:12 GMT
════════════════════════
⌗ Tags: #ctf #sql_injection #portswigger #cybersecurity
Medium
Lab: SQL injection vulnerability allowing login bypass
This lab contains a SQL injection vulnerability in the login function.
⤷ Title: SQL injection vulnerability in WHERE clause allowing retrieval of hidden data
════════════════════════
𐀪 Author: Deenflow
════════════════════════
ⴵ Time: Fri, 22 May 2026 13:33:35 GMT
════════════════════════
⌗ Tags: #ctf_writeup #sql_injection #portswigger #cybersecurity
════════════════════════
𐀪 Author: Deenflow
════════════════════════
ⴵ Time: Fri, 22 May 2026 13:33:35 GMT
════════════════════════
⌗ Tags: #ctf_writeup #sql_injection #portswigger #cybersecurity
Medium
SQL injection vulnerability in WHERE clause allowing retrieval of hidden data
This lab contains a SQL injection vulnerability in the product category filter. When the user selects a category, the application carries…
⤷ Title: Mass Assignment + JSON Validation Bypass: From Zero Access to Full Admin Takeover
════════════════════════
𐀪 Author: Red-X
════════════════════════
ⴵ Time: Fri, 22 May 2026 16:27:45 GMT
════════════════════════
⌗ Tags: #bug_bounty_writeup #ethical_hacking #bug_bounty_tips #cybersecurity #bug_bounty
════════════════════════
𐀪 Author: Red-X
════════════════════════
ⴵ Time: Fri, 22 May 2026 16:27:45 GMT
════════════════════════
⌗ Tags: #bug_bounty_writeup #ethical_hacking #bug_bounty_tips #cybersecurity #bug_bounty
Medium
Mass Assignment + JSON Validation Bypass: From Zero Access to Full Admin Takeover
الحمدُ للهِ الذي مَنَّ علينا فهدانا، الحمدُ للهِ حمدًا كثيرًا طيبًا مباركًا فيه، حمدًا كما ينبغي لجلال وجهك وعظيم سلطانك.اللهمَّ أعِزَّ…
⤷ Title: Rejected but Rewarded — What a GraphQL Misconfiguration Taught Me About Bug Bounty Triage.
════════════════════════
𐀪 Author: kjulius
════════════════════════
ⴵ Time: Fri, 22 May 2026 15:46:33 GMT
════════════════════════
⌗ Tags: #bug_bounty #graphql #penetration_testing #security #responsible_disclosure
════════════════════════
𐀪 Author: kjulius
════════════════════════
ⴵ Time: Fri, 22 May 2026 15:46:33 GMT
════════════════════════
⌗ Tags: #bug_bounty #graphql #penetration_testing #security #responsible_disclosure
Medium
Rejected but Rewarded — What a GraphQL Misconfiguration Taught Me About Bug Bounty Triage.
Responsible disclosure submitted. No mutations were executed. No systems were harmed. Finding classified as Informative. 50 CHF bonus…
⤷ Title: How I Chained Mass Assignment + PHP Type Juggling to Take Over Any Account on a Live Platform —…
════════════════════════
𐀪 Author: AnGrY
════════════════════════
ⴵ Time: Fri, 22 May 2026 15:27:19 GMT
════════════════════════
⌗ Tags: #bug_bounty #yeswehack #cybersecurity #hacking #appsec
════════════════════════
𐀪 Author: AnGrY
════════════════════════
ⴵ Time: Fri, 22 May 2026 15:27:19 GMT
════════════════════════
⌗ Tags: #bug_bounty #yeswehack #cybersecurity #hacking #appsec
Medium
How I Chained Mass Assignment + PHP Type Juggling to Take Over Any Account on a Live Platform — 3-Digit Bounty
A bug bounty writeup on an unauthenticated account takeover via a password reset endpoint
⤷ Title: Essential iOS Hardening Steps
════════════════════════
𐀪 Author: Officer's Notes
════════════════════════
ⴵ Time: Fri, 22 May 2026 15:54:54 GMT
════════════════════════
⌗ Tags: #hacking #privacy #ios #security #apple
════════════════════════
𐀪 Author: Officer's Notes
════════════════════════
ⴵ Time: Fri, 22 May 2026 15:54:54 GMT
════════════════════════
⌗ Tags: #hacking #privacy #ios #security #apple
Medium
Essential iOS Hardening Steps
Antivirus Apps Do Exist on iOS: Meet iVerify Basic, Your Pocket-Sized Spyware Hunter