⤷ Title: MFA Prompt Bombing: Why Your Second Factor Isn't Saving You
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Tue, 26 May 2026 16:00:00 +0530
════════════════════════
⌗ Tags: No_Tags
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Tue, 26 May 2026 16:00:00 +0530
════════════════════════
⌗ Tags: No_Tags
⤷ Title: The Domino Effect of GitHub Token Exposure
════════════════════════
𐀪 Author: Veshraj Ghimire
════════════════════════
ⴵ Time: Tue, 26 May 2026 12:21:18 GMT
════════════════════════
⌗ Tags: #bug_bounty #devops #security
════════════════════════
𐀪 Author: Veshraj Ghimire
════════════════════════
ⴵ Time: Tue, 26 May 2026 12:21:18 GMT
════════════════════════
⌗ Tags: #bug_bounty #devops #security
Medium
The Domino Effect of GitHub Token Exposure
I have been working extensively with GitHub leaks lately, and it is easily one of the most common things that can go wrong in modern…
⤷ Title: How I Used Burp Suite to Discover a $6,000 XSS Vulnerability Through Responsible Disclosure
════════════════════════
𐀪 Author: Cybervolt
════════════════════════
ⴵ Time: Tue, 26 May 2026 11:02:11 GMT
════════════════════════
⌗ Tags: #penetration_testing #bug_bounty_writeup #hackerone #cybersecurity #bug_bounty
════════════════════════
𐀪 Author: Cybervolt
════════════════════════
ⴵ Time: Tue, 26 May 2026 11:02:11 GMT
════════════════════════
⌗ Tags: #penetration_testing #bug_bounty_writeup #hackerone #cybersecurity #bug_bounty
Medium
How I Used Burp Suite to Discover a $6,000 XSS Vulnerability Through Responsible Disclosure
One of the biggest misconceptions about bug bounty hunting is that valuable vulnerabilities are discovered using “advanced hacker tricks.”
⤷ Title: OWASP LLM Top 10 — Part 3: What Happens When You Give the Model Power
════════════════════════
𐀪 Author: Derick Johnson
════════════════════════
ⴵ Time: Tue, 26 May 2026 12:18:32 GMT
════════════════════════
⌗ Tags: #llm #ai #penetration_testing #security
════════════════════════
𐀪 Author: Derick Johnson
════════════════════════
ⴵ Time: Tue, 26 May 2026 12:18:32 GMT
════════════════════════
⌗ Tags: #llm #ai #penetration_testing #security
Medium
OWASP LLM Top 10 — Part 3: What Happens When You Give the Model Power
Plugin Abuse. Excessive Agency. Overreliance. Model Theft. The vulnerabilities that only exist because we handed the LLM a keyboard and…
⤷ Title: Investigating the Boogeyman 2: Memory Forensics & Fileless Persistence Case Study
════════════════════════
𐀪 Author: Svetoslav
════════════════════════
ⴵ Time: Tue, 26 May 2026 12:29:21 GMT
════════════════════════
⌗ Tags: #olevba #the_boogeyman #volatility #tryhackme #threat_hunting
════════════════════════
𐀪 Author: Svetoslav
════════════════════════
ⴵ Time: Tue, 26 May 2026 12:29:21 GMT
════════════════════════
⌗ Tags: #olevba #the_boogeyman #volatility #tryhackme #threat_hunting
Medium
Investigating the Boogeyman 2: Memory Forensics & Fileless Persistence Case Study
Executive Summary
⤷ Title: Common Attacks — TryHackMe Walkthrough
════════════════════════
𐀪 Author: Sunjid Ahmed Siyem
════════════════════════
ⴵ Time: Tue, 26 May 2026 11:26:23 GMT
════════════════════════
⌗ Tags: #tryhackme #common_attack
════════════════════════
𐀪 Author: Sunjid Ahmed Siyem
════════════════════════
ⴵ Time: Tue, 26 May 2026 11:26:23 GMT
════════════════════════
⌗ Tags: #tryhackme #common_attack
⤷ Title: SickOs 1.2 VulnHub Writeup
════════════════════════
𐀪 Author: ZeroDay-Security-Services
════════════════════════
ⴵ Time: Tue, 26 May 2026 11:58:01 GMT
════════════════════════
⌗ Tags: #ethical_hacking #vulnerability #zeroday_security_services #cybersecurity #vulnhub
════════════════════════
𐀪 Author: ZeroDay-Security-Services
════════════════════════
ⴵ Time: Tue, 26 May 2026 11:58:01 GMT
════════════════════════
⌗ Tags: #ethical_hacking #vulnerability #zeroday_security_services #cybersecurity #vulnhub
Medium
SickOs 1.2 VulnHub Writeup
Machine: SickOs 1.2
⤷ Title: Hacking Authority — How Misconfigured Certificates and Forgotten Ansible Files Lead to Domain Admin
════════════════════════
𐀪 Author: Panda Anonimo
════════════════════════
ⴵ Time: Tue, 26 May 2026 13:00:16 GMT
════════════════════════
⌗ Tags: #penetration_testing #hackthebox #esc1 #hackthebox_writeup #active_directory
════════════════════════
𐀪 Author: Panda Anonimo
════════════════════════
ⴵ Time: Tue, 26 May 2026 13:00:16 GMT
════════════════════════
⌗ Tags: #penetration_testing #hackthebox #esc1 #hackthebox_writeup #active_directory
Medium
Hacking Authority — How Misconfigured Certificates and Forgotten Ansible Files Lead to Domain Admin
HackTheBox | Windows | Medium difficulty | Active Directory | ADCS ESC1
⤷ Title: Start Your Ethical Hacking Journey: First Step: Crafting IP Headers with Scapy Python tool
════════════════════════
𐀪 Author: Shaik afrid
════════════════════════
ⴵ Time: Tue, 26 May 2026 12:17:55 GMT
════════════════════════
⌗ Tags: #programming #python_programming #ethical_hacking #cybersecurity #network_security
════════════════════════
𐀪 Author: Shaik afrid
════════════════════════
ⴵ Time: Tue, 26 May 2026 12:17:55 GMT
════════════════════════
⌗ Tags: #programming #python_programming #ethical_hacking #cybersecurity #network_security
Medium
Start Your Ethical Hacking Journey: First Step: Crafting IP Headers with Scapy Python tool
Scapy is powerful python library where you can Manipulate the packet. Think of it like if you use up a normal ping; Its generate its IP…
⤷ Title: How Broken Authorization and Excessive Data Exposure Led to a CVSS 9.8 Critical Vulnerability
════════════════════════
𐀪 Author: Pankaj Kumar Yadav
════════════════════════
ⴵ Time: Tue, 26 May 2026 12:08:05 GMT
════════════════════════
⌗ Tags: #ethical_hacking #cybersecurity #bugbounty_writeup #cyber_security_awareness #software_development
════════════════════════
𐀪 Author: Pankaj Kumar Yadav
════════════════════════
ⴵ Time: Tue, 26 May 2026 12:08:05 GMT
════════════════════════
⌗ Tags: #ethical_hacking #cybersecurity #bugbounty_writeup #cyber_security_awareness #software_development
Medium
How Broken Authorization and Excessive Data Exposure Led to a CVSS 9.8 Critical Vulnerability
Introduction
⤷ Title: Remote Code Execution (RCE): A Guide for QA Engineers and Security Enthusiasts
════════════════════════
𐀪 Author: Azama.
════════════════════════
ⴵ Time: Tue, 26 May 2026 12:31:01 GMT
════════════════════════
⌗ Tags: #cybersecurity #defense_in_depth_strategy #rce_vulnerability #qa_engineering
════════════════════════
𐀪 Author: Azama.
════════════════════════
ⴵ Time: Tue, 26 May 2026 12:31:01 GMT
════════════════════════
⌗ Tags: #cybersecurity #defense_in_depth_strategy #rce_vulnerability #qa_engineering
Medium
Remote Code Execution (RCE): For QA Engineers and Security Enthusiasts.
One thing enjoy throughout my cybersecurity learning journey is discovering how closely security and QA overlap.
⤷ Title: SQL Injection (SQLi) Assessment
════════════════════════
𐀪 Author: Kevin
════════════════════════
ⴵ Time: Tue, 26 May 2026 12:58:37 GMT
════════════════════════
⌗ Tags: #dvwa #command_injection #cybersecurity #sql_injection
════════════════════════
𐀪 Author: Kevin
════════════════════════
ⴵ Time: Tue, 26 May 2026 12:58:37 GMT
════════════════════════
⌗ Tags: #dvwa #command_injection #cybersecurity #sql_injection
Medium
SQL Injection (SQLi) Assessment
Introduction
⤷ Title: From Misconfigured Virtual Host Routing to Internal Source Code Disclosure
════════════════════════
𐀪 Author: abdulrahman
════════════════════════
ⴵ Time: Tue, 26 May 2026 11:23:51 GMT
════════════════════════
⌗ Tags: #vulnerability #bug_bounty_writeup #host_header #original_ips #backend
════════════════════════
𐀪 Author: abdulrahman
════════════════════════
ⴵ Time: Tue, 26 May 2026 11:23:51 GMT
════════════════════════
⌗ Tags: #vulnerability #bug_bounty_writeup #host_header #original_ips #backend
⤷ Title: [THN Webinar] New AI DDoS Attacks Are Smarter. Learn How to Fight Back
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Tue, 26 May 2026 17:28:00 +0530
════════════════════════
⌗ Tags: No_Tags
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Tue, 26 May 2026 17:28:00 +0530
════════════════════════
⌗ Tags: No_Tags
⤷ Title: CERT-In Recommends 12-Hour Patching for Internet-Facing Flaws Amid AI-Assisted Attacks
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Tue, 26 May 2026 14:43:02 +0530
════════════════════════
⌗ Tags: No_Tags
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Tue, 26 May 2026 14:43:02 +0530
════════════════════════
⌗ Tags: No_Tags
⤷ Title: Bug Bounty Automation Toolkit 2026 Automate Recon & Find Vulnerabilities Faster Advanced Ethical…
════════════════════════
𐀪 Author: R.H Rizvi
════════════════════════
ⴵ Time: Tue, 26 May 2026 14:44:52 GMT
════════════════════════
⌗ Tags: #bug_bounty_writeup #bug_bounty #money #business #bug_bounty_tips
════════════════════════
𐀪 Author: R.H Rizvi
════════════════════════
ⴵ Time: Tue, 26 May 2026 14:44:52 GMT
════════════════════════
⌗ Tags: #bug_bounty_writeup #bug_bounty #money #business #bug_bounty_tips
Medium
Bug Bounty Automation Toolkit 2026 Automate Recon & Find Vulnerabilities Faster Advanced Ethical…
The bug bounty landscape in 2026 looks nothing like it did five years ago. What used to be a field where a sharp eye and a copy of Burp…
⤷ Title: “Bug Bounty Bootcamp #39: PDF SSRF and Blind Exfiltration — When Headless Browsers Become Your Data…
════════════════════════
𐀪 Author: Aman Sharma
════════════════════════
ⴵ Time: Tue, 26 May 2026 14:44:26 GMT
════════════════════════
⌗ Tags: #hacking #bug_bounty #penetration_testing #cybersecurity #money
════════════════════════
𐀪 Author: Aman Sharma
════════════════════════
ⴵ Time: Tue, 26 May 2026 14:44:26 GMT
════════════════════════
⌗ Tags: #hacking #bug_bounty #penetration_testing #cybersecurity #money
Medium
“Bug Bounty Bootcamp #39: PDF SSRF and Blind Exfiltration — When Headless Browsers Become Your Data Mule”
The invoice generator doesn’t show errors. The image fetcher hangs on invalid IPs. But with a single <iframe> and a JavaScript redirect…
⤷ Title: Get PQC Ready PDQ — Part 2
════════════════════════
𐀪 Author: Brett Crawley
════════════════════════
ⴵ Time: Tue, 26 May 2026 11:34:55 GMT
════════════════════════
⌗ Tags: #cybersecurity #cryptography #devsecops #application_security
════════════════════════
𐀪 Author: Brett Crawley
════════════════════════
ⴵ Time: Tue, 26 May 2026 11:34:55 GMT
════════════════════════
⌗ Tags: #cybersecurity #cryptography #devsecops #application_security
Medium
Get PQC Ready PDQ — Part 2
The Plan, the Order, and the Bill
⤷ Title: eJPT - Post-Exploitation CTF 1
════════════════════════
𐀪 Author: Francesco Pastore
════════════════════════
ⴵ Time: Tue, 26 May 2026 14:50:24 GMT
════════════════════════
⌗ Tags: #hacking #technology #tech #security #cybersecurity
════════════════════════
𐀪 Author: Francesco Pastore
════════════════════════
ⴵ Time: Tue, 26 May 2026 14:50:24 GMT
════════════════════════
⌗ Tags: #hacking #technology #tech #security #cybersecurity
Medium
eJPT - Post-Exploitation CTF 1
A writeup for “Post-Exploitation CTF 1” from the official eJPT course.
⤷ Title: THM - Operation Coldstart
════════════════════════
𐀪 Author: Francesco Pastore
════════════════════════
ⴵ Time: Tue, 26 May 2026 14:33:59 GMT
════════════════════════
⌗ Tags: #hacking #tech #technology #cybersecurity #security
════════════════════════
𐀪 Author: Francesco Pastore
════════════════════════
ⴵ Time: Tue, 26 May 2026 14:33:59 GMT
════════════════════════
⌗ Tags: #hacking #tech #technology #cybersecurity #security
Medium
THM - Operation Coldstart
A writeup for “Operation Coldstart” on TryHackMe.
⤷ Title: I Sat Through CEH v13’s AI Modules. Here’s What’s Real and What’s Marketing
════════════════════════
𐀪 Author: Mike McNelis
════════════════════════
ⴵ Time: Tue, 26 May 2026 13:18:09 GMT
════════════════════════
⌗ Tags: #cybersecurity #hacking #ceh_certification
════════════════════════
𐀪 Author: Mike McNelis
════════════════════════
ⴵ Time: Tue, 26 May 2026 13:18:09 GMT
════════════════════════
⌗ Tags: #cybersecurity #hacking #ceh_certification
Medium
I Sat Through CEH v13’s AI Modules. Here’s What’s Real and What’s Marketing
EC-Council put the words “world’s first ethical hacking certification to harness the power of AI” on the CEH v13 marketing page. That kind…