⤷ Title: API Pentesting | TryHackMe | practical challenge
════════════════════════
𐀪 Author: Jose Praveen
════════════════════════
ⴵ Time: Sun, 24 May 2026 19:36:00 GMT
════════════════════════
⌗ Tags: #tryhackme_walkthrough #pentesting #api_security #rest_api #cybersecurity
════════════════════════
𐀪 Author: Jose Praveen
════════════════════════
ⴵ Time: Sun, 24 May 2026 19:36:00 GMT
════════════════════════
⌗ Tags: #tryhackme_walkthrough #pentesting #api_security #rest_api #cybersecurity
Medium
API Pentesting | TryHackMe | practical challenge
Explore how to identify and exploit common API security vulnerabilities.
⤷ Title: How I Used a Race Condition to Get Unlimited Subscriptions from One Voucher on Shahid.net️
════════════════════════
𐀪 Author: Hamzawy | 0xMo3Gza
════════════════════════
ⴵ Time: Sun, 24 May 2026 22:51:29 GMT
════════════════════════
⌗ Tags: #bug_bounty #hackerone #yeswehack #bugs #cybersecurity
════════════════════════
𐀪 Author: Hamzawy | 0xMo3Gza
════════════════════════
ⴵ Time: Sun, 24 May 2026 22:51:29 GMT
════════════════════════
⌗ Tags: #bug_bounty #hackerone #yeswehack #bugs #cybersecurity
Medium
How I Used a Race Condition to Get Unlimited Subscriptions from One Voucher on Shahid.net🎞️
السلام عليكم ورحمة الله
⤷ Title: How I Found a Permanent Account Takeover Through SSO Account Linking Misconfiguration
════════════════════════
𐀪 Author: El Professor Qais
════════════════════════
ⴵ Time: Sun, 24 May 2026 21:06:27 GMT
════════════════════════
⌗ Tags: #google_sso #bugcrowd #bug_bounty #account_takeover #bug_bounty_tips
════════════════════════
𐀪 Author: El Professor Qais
════════════════════════
ⴵ Time: Sun, 24 May 2026 21:06:27 GMT
════════════════════════
⌗ Tags: #google_sso #bugcrowd #bug_bounty #account_takeover #bug_bounty_tips
Medium
How I Found a Permanent Account Takeover Through SSO Account Linking Misconfiguration
Educational write-up for security research and responsible disclosure purposes only. Founded it in BugCrowd Private Program 🔥
⤷ Title: SecLeaf 2026 Challenge Forense: Forgotten_snapshot
════════════════════════
𐀪 Author: 091!
════════════════════════
ⴵ Time: Sun, 24 May 2026 22:09:53 GMT
════════════════════════
⌗ Tags: #red_team #forense #ctf #hacking #spanish_writeup
════════════════════════
𐀪 Author: 091!
════════════════════════
ⴵ Time: Sun, 24 May 2026 22:09:53 GMT
════════════════════════
⌗ Tags: #red_team #forense #ctf #hacking #spanish_writeup
Medium
SecLeaf 2026 Challenge Forense: Forgotten_snapshot
Como primera instrucción nos dan la siguiente pista y descripción sobre nuestro reto a resolver.
⤷ Title: Remote PEB Walking: Enumerating Loaded Modules
════════════════════════
𐀪 Author: S12 - 0x12Dark Development
════════════════════════
ⴵ Time: Sun, 24 May 2026 21:42:16 GMT
════════════════════════
⌗ Tags: #infosec #malware #hacking #pentesting #cybersecurity
════════════════════════
𐀪 Author: S12 - 0x12Dark Development
════════════════════════
ⴵ Time: Sun, 24 May 2026 21:42:16 GMT
════════════════════════
⌗ Tags: #infosec #malware #hacking #pentesting #cybersecurity
Medium
Remote PEB Walking: Enumerating Loaded Modules
Welcome to this new Medium post, today we are enumerating remote modules walking the PEB, a stealthy way to do it instead of relay on the…
⤷ Title: CyberDefenders — AWSRaid Lab Writeup
════════════════════════
𐀪 Author: JBXSec
════════════════════════
ⴵ Time: Sun, 24 May 2026 22:43:45 GMT
════════════════════════
⌗ Tags: #cybersecurity #cloud_security #infosec #threat_hunting #aws
════════════════════════
𐀪 Author: JBXSec
════════════════════════
ⴵ Time: Sun, 24 May 2026 22:43:45 GMT
════════════════════════
⌗ Tags: #cybersecurity #cloud_security #infosec #threat_hunting #aws
Medium
CyberDefenders — AWSRaid Lab Writeup
Overview
⤷ Title: CyberDefenders — LummaStealer — Angry Likho Lab Writeup
════════════════════════
𐀪 Author: JBXSec
════════════════════════
ⴵ Time: Sun, 24 May 2026 22:39:14 GMT
════════════════════════
⌗ Tags: #infosec #cybersecurity #ctf_writeup #threat_hunting #dfir
════════════════════════
𐀪 Author: JBXSec
════════════════════════
ⴵ Time: Sun, 24 May 2026 22:39:14 GMT
════════════════════════
⌗ Tags: #infosec #cybersecurity #ctf_writeup #threat_hunting #dfir
Medium
CyberDefenders — LummaStealer — Angry Likho Lab Writeup
Overview
⤷ Title: Hacking HTTPBin: Uncovering a Critical Base64 Reflected XSS Vulnerability
════════════════════════
𐀪 Author: INTELEON404
════════════════════════
ⴵ Time: Sun, 24 May 2026 22:59:10 GMT
════════════════════════
⌗ Tags: #xs #cybersecurity #httpbin #penetration_testing #web_security
════════════════════════
𐀪 Author: INTELEON404
════════════════════════
ⴵ Time: Sun, 24 May 2026 22:59:10 GMT
════════════════════════
⌗ Tags: #xs #cybersecurity #httpbin #penetration_testing #web_security
Medium
Hacking HTTPBin: Uncovering a Critical Base64 Reflected XSS Vulnerability
How directory fuzzing revealed a dangerous Cross-Site Scripting flaw in one of the most popular HTTP testing services.
⤷ Title: Offensive Security Intro
════════════════════════
𐀪 Author: S4m1X
════════════════════════
ⴵ Time: Sun, 24 May 2026 22:23:00 GMT
════════════════════════
⌗ Tags: #tryhackme_pre_security #tryhackme_walkthrough #offensive_security_intro #tryhackme #tryhackme_writeup
════════════════════════
𐀪 Author: S4m1X
════════════════════════
ⴵ Time: Sun, 24 May 2026 22:23:00 GMT
════════════════════════
⌗ Tags: #tryhackme_pre_security #tryhackme_walkthrough #offensive_security_intro #tryhackme #tryhackme_writeup
Medium
Offensive Security Intro
Dans cet article, nous allons découvrir comment exploiter une mauvaise configuration web avec TryHackMe en utilisant Gobuster et des…
⤷ Title: Mobile Malware Analysis — TryHackMe — Walkthrough
════════════════════════
𐀪 Author: Ransom.Sezan
════════════════════════
ⴵ Time: Sun, 24 May 2026 21:14:24 GMT
════════════════════════
⌗ Tags: #tryhackme_walkthrough #tryhackme_writeup #tryhackme #mobile_malware_analysis #room
════════════════════════
𐀪 Author: Ransom.Sezan
════════════════════════
ⴵ Time: Sun, 24 May 2026 21:14:24 GMT
════════════════════════
⌗ Tags: #tryhackme_walkthrough #tryhackme_writeup #tryhackme #mobile_malware_analysis #room
Medium
Mobile Malware Analysis — TryHackMe — Walkthrough
Task-2:
⤷ Title: NGINX Fixes Critical Poolslip Flaw Allowing Remote Code Execution
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 25 May 2026 00:44:15 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #buffer overflow #CVE_2026_9256 #F5 #nginx #Poolslip #Regular Expression
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 25 May 2026 00:44:15 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #buffer overflow #CVE_2026_9256 #F5 #nginx #Poolslip #Regular Expression
Daily CyberSecurity
NGINX Fixes Critical Poolslip Flaw Allowing Remote Code Execution
An NGINX heap buffer overflow vulnerability known as poolslip allows remote code execution. Learn how to secure your network servers now.
⤷ Title: Spring Boot Actuator expuesto conduce a Account Takeover (ATO)
════════════════════════
𐀪 Author: Miguel Segovia Gil
════════════════════════
ⴵ Time: Sun, 24 May 2026 23:10:05 GMT
════════════════════════
⌗ Tags: #appsec #bug_bounty #bugbounty_writeup #cybersecurity #bug_bounty_tips
════════════════════════
𐀪 Author: Miguel Segovia Gil
════════════════════════
ⴵ Time: Sun, 24 May 2026 23:10:05 GMT
════════════════════════
⌗ Tags: #appsec #bug_bounty #bugbounty_writeup #cybersecurity #bug_bounty_tips
Medium
Spring Boot Actuator expuesto conduce a Account Takeover (ATO)
Los actuators de Spring Boot se emplean para exponer información operacional de la aplicación en tiempo de ejecución, incluyendo estado del…
⤷ Title: Rolling Dice on a $60 handheld
════════════════════════
𐀪 Author: Ming
════════════════════════
ⴵ Time: Mon, 25 May 2026 00:15:13 GMT
════════════════════════
⌗ Tags: #coding #computer_graphics #game_development #software_development #hacking
════════════════════════
𐀪 Author: Ming
════════════════════════
ⴵ Time: Mon, 25 May 2026 00:15:13 GMT
════════════════════════
⌗ Tags: #coding #computer_graphics #game_development #software_development #hacking
Medium
Rolling Dice on a $60 handheld
In the last post, “Porting Raylib to a $60 GBA clone”, I described how I convinced Raylib to draw 3D scenes on a budget handheld — the…
⤷ Title: Hacker Selling 340 Million OnlyFans User Records Built From Old Breaches
════════════════════════
𐀪 Author: Waqas
════════════════════════
ⴵ Time: Mon, 25 May 2026 01:20:02 +0000
════════════════════════
⌗ Tags: #Data Breaches #Cyber Attack #Cybersecurity #data breach #Instagram #OnlyFans #Privacy #Spotify #twitter #Web Scraping
════════════════════════
𐀪 Author: Waqas
════════════════════════
ⴵ Time: Mon, 25 May 2026 01:20:02 +0000
════════════════════════
⌗ Tags: #Data Breaches #Cyber Attack #Cybersecurity #data breach #Instagram #OnlyFans #Privacy #Spotify #twitter #Web Scraping
Hackread
Hacker Selling 340 Million OnlyFans User Records Built From Old Breaches
A hacker is selling a 340M OnlyFans user database allegedly built by matching old breach data and public profiles to real OnlyFans accounts.
⤷ Title: NLnet Labs Issues Urgent Security Release for Unbound Resolver
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 25 May 2026 02:12:05 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #DNS Security #DNSSEC #NLnet Labs #Patch Update #Remote Code Execution #Unbound
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 25 May 2026 02:12:05 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #DNS Security #DNSSEC #NLnet Labs #Patch Update #Remote Code Execution #Unbound
Daily CyberSecurity
NLnet Labs Issues Urgent Security Release for Unbound Resolver
NLnet Labs patches a critical Unbound DNSSEC validation vulnerability allowing unauthenticated remote code execution. Update to 1.25.1.
⤷ Title: Critical Unauthenticated RCE Flaw Threatens Kopia Backup Servers
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 25 May 2026 01:42:25 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2026_45695 #Kopia #Kopia SSH #ProxyCommand injection
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 25 May 2026 01:42:25 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2026_45695 #Kopia #Kopia SSH #ProxyCommand injection
Daily CyberSecurity
Critical Unauthenticated RCE Flaw Threatens Kopia Backup Servers
A critical unauthenticated RCE flaw (CVE-2026-45695) impacts Kopia backup servers. Learn how the Kopia SSH ProxyCommand injection exploit operates and how to patch it.
⤷ Title: Critical TYPO3 Extension Exploit: Content Element Selector Flaw (CVE-2026-46725) Triggers Unauthenticated RCE
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 25 May 2026 01:17:26 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #ceselector #Content Element Selector #CVE_2026_46725 #Cyber Security #infosec #Insecure Deserialization #Patch Alert #PHP Object Injection #Remote Code Execution #TYPO3 Extension #TYPO3_EXT_SA_2026_013
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 25 May 2026 01:17:26 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #ceselector #Content Element Selector #CVE_2026_46725 #Cyber Security #infosec #Insecure Deserialization #Patch Alert #PHP Object Injection #Remote Code Execution #TYPO3 Extension #TYPO3_EXT_SA_2026_013
Daily CyberSecurity
Critical TYPO3 Extension Exploit: Content Element Selector Flaw (CVE-2026-46725) Triggers Unauthenticated RCE
Urgent: TYPO3 patches a critical 9.2 CVSS flaw (CVE-2026-46725) in Content Element Selector plugin. Unauthenticated attackers can achieve full server RCE.
⤷ Title: Over-the-Air Root Risk: Seven Critical FreeBSD Security Advisories Fix Wi-Fi RCE and Kernel Flaws
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 25 May 2026 01:01:25 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #bsdconfig #bsdinstall #Capsicum Sandboxing #CVE_2026_45250 #CVE_2026_45255 #Cyber Security #freebsd #infosec #Kernel Stack Overflow #Patch Alert #use after free #Wi_Fi RCE
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 25 May 2026 01:01:25 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #bsdconfig #bsdinstall #Capsicum Sandboxing #CVE_2026_45250 #CVE_2026_45255 #Cyber Security #freebsd #infosec #Kernel Stack Overflow #Patch Alert #use after free #Wi_Fi RCE
Daily CyberSecurity
Over-the-Air Root Risk: Seven Critical FreeBSD Security Advisories Fix Wi-Fi RCE and Kernel Flaws
The FreeBSD Project fixes seven vulnerabilities, including a zero-interaction Wi-Fi shell expansion RCE (CVE-2026-45255) and severe kernel leaks.
⤷ Title: AI Security Path- TryHackMe- Module 3(Part 1)
════════════════════════
𐀪 Author: Swarupa Jeedimetla
════════════════════════
ⴵ Time: Mon, 25 May 2026 01:39:29 GMT
════════════════════════
⌗ Tags: #cybersecurity #ai #tryhackme #ai_security
════════════════════════
𐀪 Author: Swarupa Jeedimetla
════════════════════════
ⴵ Time: Mon, 25 May 2026 01:39:29 GMT
════════════════════════
⌗ Tags: #cybersecurity #ai #tryhackme #ai_security
Medium
AI Security Path- TryHackMe- Module 3(Part 1)
Why Prompt Injection Is Different
⤷ Title: TryHackMe: Prompt Injection Writeup
════════════════════════
𐀪 Author: Tega Akperiojire (cyber_with_tega)
════════════════════════
ⴵ Time: Mon, 25 May 2026 01:37:33 GMT
════════════════════════
⌗ Tags: #tryhackme_writeup #tryhackme #prompt_injection #ai #security
════════════════════════
𐀪 Author: Tega Akperiojire (cyber_with_tega)
════════════════════════
ⴵ Time: Mon, 25 May 2026 01:37:33 GMT
════════════════════════
⌗ Tags: #tryhackme_writeup #tryhackme #prompt_injection #ai #security
Medium
TryHackMe: Prompt Injection Writeup
What if you could trick a chatbot to divulging sensitive information
⤷ Title: Wireshark 4.6.6
════════════════════════
𐀪 Author: Manula Udyoga
════════════════════════
ⴵ Time: Mon, 25 May 2026 02:36:40 GMT
════════════════════════
⌗ Tags: #packet_analysis #ethical_hacking #wireshark #cybersecurity #threat_hunting
════════════════════════
𐀪 Author: Manula Udyoga
════════════════════════
ⴵ Time: Mon, 25 May 2026 02:36:40 GMT
════════════════════════
⌗ Tags: #packet_analysis #ethical_hacking #wireshark #cybersecurity #threat_hunting
Medium
🔍 Wireshark 4.6.6 Released: Critical Security Fixes, Stability Improvements & Enhanced Protocol Support 🚀
The cybersecurity community has welcomed the release of Wireshark 4.6.6, the latest update to the world’s most widely used network protocol…