⤷ Title: TryHackMe: Boogeyman 1 | Write-Up
════════════════════════
𐀪 Author: Ash T
════════════════════════
ⴵ Time: Sun, 24 May 2026 15:28:34 GMT
════════════════════════
⌗ Tags: #cybersecurity #information_security #tryhackme #tryhackme_walkthrough #tryhackme_writeup
════════════════════════
𐀪 Author: Ash T
════════════════════════
ⴵ Time: Sun, 24 May 2026 15:28:34 GMT
════════════════════════
⌗ Tags: #cybersecurity #information_security #tryhackme #tryhackme_walkthrough #tryhackme_writeup
Medium
TryHackMe: Boogeyman 1 | Write-Up
This is a write-up and walkthrough for the Boogeyman 1 room.
⤷ Title: Support | TryHackMe | Walkthrough
════════════════════════
𐀪 Author: Sornphut
════════════════════════
ⴵ Time: Sun, 24 May 2026 15:03:53 GMT
════════════════════════
⌗ Tags: #idor_vulnerability #tryhackme_walkthrough #tryhackme #local_file_inclusion #tryhackme_writeup
════════════════════════
𐀪 Author: Sornphut
════════════════════════
ⴵ Time: Sun, 24 May 2026 15:03:53 GMT
════════════════════════
⌗ Tags: #idor_vulnerability #tryhackme_walkthrough #tryhackme #local_file_inclusion #tryhackme_writeup
Medium
Support | TryHackMe | Walkthrough
Gobuster
⤷ Title: Day 10: Enumeration — Pulling Real Data From Open Doors
════════════════════════
𐀪 Author: Adarsh Vardhan
════════════════════════
ⴵ Time: Sun, 24 May 2026 15:42:18 GMT
════════════════════════
⌗ Tags: #windows #cybersecurity #enumeration #ethical_hacking
════════════════════════
𐀪 Author: Adarsh Vardhan
════════════════════════
ⴵ Time: Sun, 24 May 2026 15:42:18 GMT
════════════════════════
⌗ Tags: #windows #cybersecurity #enumeration #ethical_hacking
Medium
Day 10: Enumeration — Pulling Real Data From Open Doors
30 days. Public. Still going.
⤷ Title: Hunting Android Lockscreen Bypasses on Pixel: A Campaign Walkthrough
════════════════════════
𐀪 Author: Farhad Sajid Barbhuiya
════════════════════════
ⴵ Time: Sun, 24 May 2026 17:36:46 GMT
════════════════════════
⌗ Tags: #bug_bounty #mobile #cybersecurity #android #llm
════════════════════════
𐀪 Author: Farhad Sajid Barbhuiya
════════════════════════
ⴵ Time: Sun, 24 May 2026 17:36:46 GMT
════════════════════════
⌗ Tags: #bug_bounty #mobile #cybersecurity #android #llm
Medium
Hunting Android Lockscreen Bypasses on Pixel: A Campaign Walkthrough
We ran a focused campaign against the Android secure keyguard on a stock Pixel 9a (tegu, build CP1A.260505.005, locked bootloader, May 2026…
⤷ Title: A Secret Key in Plain Sight:
How I Earned My First $200 Finding a Hidden API Leak
════════════════════════
𐀪 Author: Theankitsaini16
════════════════════════
ⴵ Time: Sun, 24 May 2026 17:16:28 GMT
════════════════════════
⌗ Tags: #ethical_hacking #reconnaissance #infosec #bug_bounty #api_key
How I Earned My First $200 Finding a Hidden API Leak
════════════════════════
𐀪 Author: Theankitsaini16
════════════════════════
ⴵ Time: Sun, 24 May 2026 17:16:28 GMT
════════════════════════
⌗ Tags: #ethical_hacking #reconnaissance #infosec #bug_bounty #api_key
Medium
A Secret Key in Plain Sight:
How I Earned My First $200 Finding a Hidden API Leak
How I Earned My First $200 Finding a Hidden API Leak
A JavaScript file. One exposed key. And months of patience that finally paid off — here’s the full story of my first paid bug bounty.
⤷ Title: Time-Based Blind SQL Injection in a Government Bus Booking Platform — Unauthenticated Access to…
════════════════════════
𐀪 Author: Padmesh
════════════════════════
ⴵ Time: Sun, 24 May 2026 17:50:08 GMT
════════════════════════
⌗ Tags: #web_security #ethical_hacking #cybersecurity #application_security #sql_injection
════════════════════════
𐀪 Author: Padmesh
════════════════════════
ⴵ Time: Sun, 24 May 2026 17:50:08 GMT
════════════════════════
⌗ Tags: #web_security #ethical_hacking #cybersecurity #application_security #sql_injection
Medium
Time-Based Blind SQL Injection in a Government Bus Booking Platform — Unauthenticated Access to…
By Padmesh P S | Cybersecurity Researcher | 6 min read | Severity: Critical
⤷ Title: DevSecOps Basics (THM) Tryhackme Walkthrough
════════════════════════
𐀪 Author: Lawvye
════════════════════════
ⴵ Time: Sun, 24 May 2026 17:56:42 GMT
════════════════════════
⌗ Tags: #devsecops #software_development #cybersecurity #tryhackme #hacking
════════════════════════
𐀪 Author: Lawvye
════════════════════════
ⴵ Time: Sun, 24 May 2026 17:56:42 GMT
════════════════════════
⌗ Tags: #devsecops #software_development #cybersecurity #tryhackme #hacking
Medium
DevSecOps Basics (THM) Tryhackme Walkthrough
Description : Learn about the story of DevSecOps, Software Development Models & Shifting Left.
⤷ Title: SpiderFoot Tutorial: OSINT Information Gathering in Kali Linux
════════════════════════
𐀪 Author: Learn With Hiba
════════════════════════
ⴵ Time: Sun, 24 May 2026 17:55:32 GMT
════════════════════════
⌗ Tags: #information_gathering #cybersecurity #hacking #osint #kali_linux
════════════════════════
𐀪 Author: Learn With Hiba
════════════════════════
ⴵ Time: Sun, 24 May 2026 17:55:32 GMT
════════════════════════
⌗ Tags: #information_gathering #cybersecurity #hacking #osint #kali_linux
Medium
SpiderFoot Tutorial: OSINT Information Gathering in Kali Linux
In cybersecurity, collecting information about a target is a crucial first step before starting security analysis or penetration testing…
⤷ Title: Abusing Child-to-Parent Domain Trusts via ExtraSIDs Attack
════════════════════════
𐀪 Author: Md Fahim Al Shihab
════════════════════════
ⴵ Time: Sun, 24 May 2026 17:17:10 GMT
════════════════════════
⌗ Tags: #hacking #active_directory #cybersecurity #windows #hackthebox
════════════════════════
𐀪 Author: Md Fahim Al Shihab
════════════════════════
ⴵ Time: Sun, 24 May 2026 17:17:10 GMT
════════════════════════
⌗ Tags: #hacking #active_directory #cybersecurity #windows #hackthebox
Medium
Abusing Child-to-Parent Domain Trusts via ExtraSIDs Attack
Active Directory forests often contain multiple child domains connected through trust relationships. While these trusts simplify enterprise…
⤷ Title: WingData: HackTheBox Writeup (CVE-2025–47812 & CVE-2025–4517)
════════════════════════
𐀪 Author: Anish
════════════════════════
ⴵ Time: Sun, 24 May 2026 18:46:49 GMT
════════════════════════
⌗ Tags: #hackthebox #infosec #hackthebox_walkthrough #penetration_testing #cybersecurity
════════════════════════
𐀪 Author: Anish
════════════════════════
ⴵ Time: Sun, 24 May 2026 18:46:49 GMT
════════════════════════
⌗ Tags: #hackthebox #infosec #hackthebox_walkthrough #penetration_testing #cybersecurity
Medium
WingData: HackTheBox Writeup (CVE-2025–47812 & CVE-2025–4517)
An elegant walkthrough detailing how to compromise the WingData machine on HackTheBox by exploiting an authenticated Remote Code Execution…
⤷ Title: From Subdomain Enumeration to an Exposed Internal Configuration Panel
════════════════════════
𐀪 Author: Salma Ashraf
════════════════════════
ⴵ Time: Sun, 24 May 2026 18:35:58 GMT
════════════════════════
⌗ Tags: #cybersecurity #subdomains_enumeration #penetration_testing #web_security #bug_bounty_writeup
════════════════════════
𐀪 Author: Salma Ashraf
════════════════════════
ⴵ Time: Sun, 24 May 2026 18:35:58 GMT
════════════════════════
⌗ Tags: #cybersecurity #subdomains_enumeration #penetration_testing #web_security #bug_bounty_writeup
Medium
From Subdomain Enumeration to an Exposed Internal Configuration Panel
Initial Discovery
⤷ Title: API Tokens Explained: A Beginner’s Guide to JWT, OAuth, and More
════════════════════════
𐀪 Author: Abrar Bin Habib
════════════════════════
ⴵ Time: Sun, 24 May 2026 18:40:19 GMT
════════════════════════
⌗ Tags: #ethical_hacking #oauth #cybersecurity #jwt #api
════════════════════════
𐀪 Author: Abrar Bin Habib
════════════════════════
ⴵ Time: Sun, 24 May 2026 18:40:19 GMT
════════════════════════
⌗ Tags: #ethical_hacking #oauth #cybersecurity #jwt #api
Medium
API Tokens Explained: A Beginner’s Guide to JWT, OAuth, and More
Imagine you go to a library. You want to borrow a book. You show your library card to the librarian. The librarian scans it. The computer…
⤷ Title: Printer Shares 3 | PicoCTF Challenge Writeup
════════════════════════
𐀪 Author: Debmalya Mondal⚡
════════════════════════
ⴵ Time: Sun, 24 May 2026 18:15:15 GMT
════════════════════════
⌗ Tags: #ctf #ethical_hacking #ctf_walkthrough #ctf_writeup #picoctf
════════════════════════
𐀪 Author: Debmalya Mondal⚡
════════════════════════
ⴵ Time: Sun, 24 May 2026 18:15:15 GMT
════════════════════════
⌗ Tags: #ctf #ethical_hacking #ctf_walkthrough #ctf_writeup #picoctf
Medium
Printer Shares 3 | PicoCTF Challenge Writeup
Exploiting SMB Shares and Misconfigured Cron Jobs to Retrieve the Flag
⤷ Title: Cracking BlindSQLi : What Hitting a 3-Hour Wall Taught Me About Data Extraction
════════════════════════
𐀪 Author: Supremkrk
════════════════════════
ⴵ Time: Sun, 24 May 2026 18:54:41 GMT
════════════════════════
⌗ Tags: #portswigger_lab #cybersecurity #portswigger_academy_labs #sql_injection #blind_sql_injection
════════════════════════
𐀪 Author: Supremkrk
════════════════════════
ⴵ Time: Sun, 24 May 2026 18:54:41 GMT
════════════════════════
⌗ Tags: #portswigger_lab #cybersecurity #portswigger_academy_labs #sql_injection #blind_sql_injection
Medium
Cracking BlindSQLi : What Hitting a 3-Hour Wall Taught Me About Data Extraction
Expectation vs. Reality
⤷ Title: How a Simple Endpoint Exposed /etc/passwd via Path Traversal
════════════════════════
𐀪 Author: Muhammed Asfan | Cybersecurity Researcher
════════════════════════
ⴵ Time: Sun, 24 May 2026 19:07:05 GMT
════════════════════════
⌗ Tags: #bug_bounty_writeup #cybersecurity #information_security #bug_bounty_tips #path_traversal
════════════════════════
𐀪 Author: Muhammed Asfan | Cybersecurity Researcher
════════════════════════
ⴵ Time: Sun, 24 May 2026 19:07:05 GMT
════════════════════════
⌗ Tags: #bug_bounty_writeup #cybersecurity #information_security #bug_bounty_tips #path_traversal
Medium
How a Simple Endpoint Exposed /etc/passwd via Path Traversal
Hello guys, after a while, here’s a simple but classic vulnerability I came across while testing a feature on target.com.
⤷ Title: Amaterasu | ProvingGrounds | OSCP Preparation
════════════════════════
𐀪 Author: SilentExploit
════════════════════════
ⴵ Time: Sun, 24 May 2026 20:57:01 GMT
════════════════════════
⌗ Tags: #bug_bounty #ethical_hacking #hacking #bug_bounty_tips #ctf
════════════════════════
𐀪 Author: SilentExploit
════════════════════════
ⴵ Time: Sun, 24 May 2026 20:57:01 GMT
════════════════════════
⌗ Tags: #bug_bounty #ethical_hacking #hacking #bug_bounty_tips #ctf
Medium
Amaterasu | ProvingGrounds | OSCP Preparation
As always, lets start off with a nmap scan of the target:
⤷ Title: Devoured by Bots: How a Missing Parameter Enabled 100% MEV Leakage in a DeFi Zap Contract
════════════════════════
𐀪 Author: Hacker MD
════════════════════════
ⴵ Time: Sun, 24 May 2026 20:11:00 GMT
════════════════════════
⌗ Tags: #bug_bounty #smart_contracts #web3 #defi #infosec
════════════════════════
𐀪 Author: Hacker MD
════════════════════════
ⴵ Time: Sun, 24 May 2026 20:11:00 GMT
════════════════════════
⌗ Tags: #bug_bounty #smart_contracts #web3 #defi #infosec
Medium
Devoured by Bots: How a Missing Parameter Enabled 100% MEV Leakage in a DeFi Zap Contract
A deep dive into slippage vulnerabilities, sandwich attacks, and why convenience in DeFi often comes at the cost of security.
⤷ Title: How a $10 USB Drive Defeated a Million-Dollar Firewall
════════════════════════
𐀪 Author: The4byss
════════════════════════
ⴵ Time: Sun, 24 May 2026 20:40:34 GMT
════════════════════════
⌗ Tags: #hacking #information_technology #security #technology #tech
════════════════════════
𐀪 Author: The4byss
════════════════════════
ⴵ Time: Sun, 24 May 2026 20:40:34 GMT
════════════════════════
⌗ Tags: #hacking #information_technology #security #technology #tech
⤷ Title: Defending the Information Mirage: Securing the Model Context Protocol (MCP) in Agentic Autonomous…
════════════════════════
𐀪 Author: saikrishna G.S
════════════════════════
ⴵ Time: Sun, 24 May 2026 20:59:15 GMT
════════════════════════
⌗ Tags: #infosec #artificial_intelligence #model_context_protocol #ai_agent #cybersecurity
════════════════════════
𐀪 Author: saikrishna G.S
════════════════════════
ⴵ Time: Sun, 24 May 2026 20:59:15 GMT
════════════════════════
⌗ Tags: #infosec #artificial_intelligence #model_context_protocol #ai_agent #cybersecurity
Medium
Defending the Information Mirage: Securing the Model Context Protocol (MCP) in Agentic Autonomous…
The Agentic SOC Era: Architecting Next-Generation Incident Response with Open Context Standardization
⤷ Title: ContAInment a Ransomware Threat · AI Security · TryHackMe Walkthrough
════════════════════════
𐀪 Author: Rajesh Sudam
════════════════════════
ⴵ Time: Sun, 24 May 2026 20:17:28 GMT
════════════════════════
⌗ Tags: #technology #tryhackme #ransomeware #incident_response #cybersecurity
════════════════════════
𐀪 Author: Rajesh Sudam
════════════════════════
ⴵ Time: Sun, 24 May 2026 20:17:28 GMT
════════════════════════
⌗ Tags: #technology #tryhackme #ransomeware #incident_response #cybersecurity
Medium
ContAInment a Ransomware Threat · AI Security · TryHackMe Walkthrough
I had been away from TryHackMe for a short while and when I came back, ContAInment was the first room that caught my attention in the AI…
⤷ Title: CYBERTALENTS CTF : “This is Sparta” write up.
════════════════════════
𐀪 Author: OwL
════════════════════════
ⴵ Time: Sun, 24 May 2026 20:55:11 GMT
════════════════════════
⌗ Tags: #cybersecurity #cyber_talents #ethical_hacking #ctf
════════════════════════
𐀪 Author: OwL
════════════════════════
ⴵ Time: Sun, 24 May 2026 20:55:11 GMT
════════════════════════
⌗ Tags: #cybersecurity #cyber_talents #ethical_hacking #ctf
Medium
CYBERTALENTS CTF : “This is Sparta” write up.
Challenge Description