⤷ Title: Only 10% of SOCs Say They’re Getting Excellent Value From AI. Here’s What the Second Wave Has to Deliver
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Fri, 05 Jun 2026 16:50:00 +0530
════════════════════════
⌗ Tags: No_Tags
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Fri, 05 Jun 2026 16:50:00 +0530
════════════════════════
⌗ Tags: No_Tags
⤷ Title: BOF Cocktails in Cobalt Strike
════════════════════════
𐀪 Author: Rasta Mouse
════════════════════════
ⴵ Time: Fri, 05 Jun 2026 12:03:42 GMT
════════════════════════
⌗ Tags: #cobalt_strike #crystal_palace
════════════════════════
𐀪 Author: Rasta Mouse
════════════════════════
ⴵ Time: Fri, 05 Jun 2026 12:03:42 GMT
════════════════════════
⌗ Tags: #cobalt_strike #crystal_palace
Rasta Mouse
BOF Cocktails in Cobalt Strike
In a previous post, I wrote about BOF Cocktails - an execution pattern to merge tradecraft into postex BOFs so they didn't have to rely on an agent/loader for their evasion. That post outlines the problem areas more fully, so I encourage you to read that…
⤷ Title: The Purified Desktop: Brave Software Launches Premium, Unfettered “Origin” Browser
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Fri, 05 Jun 2026 11:07:00 +0000
════════════════════════
⌗ Tags: #Technology #ad blocking software #Brave Origin browser #minimalist privacy web #open source Linux #paid browser license #remove crypto AI
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Fri, 05 Jun 2026 11:07:00 +0000
════════════════════════
⌗ Tags: #Technology #ad blocking software #Brave Origin browser #minimalist privacy web #open source Linux #paid browser license #remove crypto AI
Daily CyberSecurity
The Purified Desktop: Brave Software Launches Premium, Unfettered "Origin" Browser
Discover the new Brave Origin browser. Learn how this paid, minimalist ad-blocking version completely removes AI, crypto, and reward features.
⤷ Title: HTML Injection in Outbound Emails: An Overlooked Security Risk
════════════════════════
𐀪 Author: vibhuti bhatt
════════════════════════
ⴵ Time: Fri, 05 Jun 2026 12:26:37 GMT
════════════════════════
⌗ Tags: #html_injection #vulnerability #application_security #pentesting #injection_in_email
════════════════════════
𐀪 Author: vibhuti bhatt
════════════════════════
ⴵ Time: Fri, 05 Jun 2026 12:26:37 GMT
════════════════════════
⌗ Tags: #html_injection #vulnerability #application_security #pentesting #injection_in_email
Medium
HTML Injection in Outbound Emails: An Overlooked Security Risk
Introduction
⤷ Title: The Attacker Lives Between Your Tools
════════════════════════
𐀪 Author: Eldor Zufarov
════════════════════════
ⴵ Time: Fri, 05 Jun 2026 11:24:32 GMT
════════════════════════
⌗ Tags: #application_security #information_security #devsecops #cybersecurity #software_architecture
════════════════════════
𐀪 Author: Eldor Zufarov
════════════════════════
ⴵ Time: Fri, 05 Jun 2026 11:24:32 GMT
════════════════════════
⌗ Tags: #application_security #information_security #devsecops #cybersecurity #software_architecture
Medium
The Attacker Lives Between Your Tools
Why your SAST, DAST, and SCA each see a clean report — and you still get breached
⤷ Title: Breach Files #003: SolarWinds 2020
════════════════════════
𐀪 Author: NullyBlissful
════════════════════════
ⴵ Time: Fri, 05 Jun 2026 12:24:23 GMT
════════════════════════
⌗ Tags: #threat_intelligence #apt #mitre_attack #infosec #cybersecurity
════════════════════════
𐀪 Author: NullyBlissful
════════════════════════
ⴵ Time: Fri, 05 Jun 2026 12:24:23 GMT
════════════════════════
⌗ Tags: #threat_intelligence #apt #mitre_attack #infosec #cybersecurity
Medium
Breach Files #003: SolarWinds 2020
The Attackers Who Were Inside for 14 Months — And Nobody Noticed
⤷ Title: Defensive Security Tooling
════════════════════════
𐀪 Author: ExploitHunter
════════════════════════
ⴵ Time: Fri, 05 Jun 2026 11:08:28 GMT
════════════════════════
⌗ Tags: #cybersecurity #web_development #cyber_security_awareness #ethical_hacking #infosec
════════════════════════
𐀪 Author: ExploitHunter
════════════════════════
ⴵ Time: Fri, 05 Jun 2026 11:08:28 GMT
════════════════════════
⌗ Tags: #cybersecurity #web_development #cyber_security_awareness #ethical_hacking #infosec
Medium
Defensive Security Tooling
CAPA: The Basics — part 1
⤷ Title: Introduction to Web Application Penetration Testing
════════════════════════
𐀪 Author: Mohd Kaif
════════════════════════
ⴵ Time: Fri, 05 Jun 2026 11:38:08 GMT
════════════════════════
⌗ Tags: #penetration_testing #cybersecurity #web_penetration_testing #intro_to_web_pen_testing #web_pentesting
════════════════════════
𐀪 Author: Mohd Kaif
════════════════════════
ⴵ Time: Fri, 05 Jun 2026 11:38:08 GMT
════════════════════════
⌗ Tags: #penetration_testing #cybersecurity #web_penetration_testing #intro_to_web_pen_testing #web_pentesting
Medium
Introduction to Web Application Penetration Testing
As businesses increasingly rely on web applications for banking, shopping, education, healthcare, and communication, securing these…
⤷ Title: Checkmate | TryHackMe Writeup
════════════════════════
𐀪 Author: Raviraj Kumar
════════════════════════
ⴵ Time: Fri, 05 Jun 2026 11:21:42 GMT
════════════════════════
⌗ Tags: #cybersecurity #writeup #tryhackme_writeup #penetration_testing #checkmate
════════════════════════
𐀪 Author: Raviraj Kumar
════════════════════════
ⴵ Time: Fri, 05 Jun 2026 11:21:42 GMT
════════════════════════
⌗ Tags: #cybersecurity #writeup #tryhackme_writeup #penetration_testing #checkmate
Medium
Checkmate | TryHackMe Writeup
Hey everyone! This is my first writeup, so I might make some mistakes nothing too serious though! I’m going to share a full walkthrough of…
⤷ Title: Easy Peasy — TryHackMe Walkthrough
════════════════════════
𐀪 Author: Sunjid Ahmed Siyem
════════════════════════
ⴵ Time: Fri, 05 Jun 2026 12:58:38 GMT
════════════════════════
⌗ Tags: #ctf #tryhackme #easypeasy
════════════════════════
𐀪 Author: Sunjid Ahmed Siyem
════════════════════════
ⴵ Time: Fri, 05 Jun 2026 12:58:38 GMT
════════════════════════
⌗ Tags: #ctf #tryhackme #easypeasy
Medium
Easy Peasy — TryHackMe Walkthrough
Task 1 : Enumeration through Nmap
⤷ Title: Include THM Writeup
════════════════════════
𐀪 Author: L4ZZ3RJ0D
════════════════════════
ⴵ Time: Fri, 05 Jun 2026 12:27:00 GMT
════════════════════════
⌗ Tags: #ctf #ethical_hacking #cybersecurity #web_security #tryhackme
════════════════════════
𐀪 Author: L4ZZ3RJ0D
════════════════════════
ⴵ Time: Fri, 05 Jun 2026 12:27:00 GMT
════════════════════════
⌗ Tags: #ctf #ethical_hacking #cybersecurity #web_security #tryhackme
Medium
Include THM Writeup
This room looked pretty straightforward at first.
⤷ Title: New Threat Cluster OP-512 Targets Microsoft IIS Servers with Custom Web Shell Framework
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Fri, 05 Jun 2026 18:03:38 +0530
════════════════════════
⌗ Tags: No_Tags
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Fri, 05 Jun 2026 18:03:38 +0530
════════════════════════
⌗ Tags: No_Tags
⤷ Title: Reaper macOS Infostealer Abuses Script Editor to Steal Crypto and Passwords
════════════════════════
𐀪 Author: Deeba Ahmed
════════════════════════
ⴵ Time: Fri, 05 Jun 2026 13:06:01 +0000
════════════════════════
⌗ Tags: #Security #Malware #ClickFix #Crypto #Infostealer #macOS #Password #Reaper #Script Editor #SHub Stealer #WeChat
════════════════════════
𐀪 Author: Deeba Ahmed
════════════════════════
ⴵ Time: Fri, 05 Jun 2026 13:06:01 +0000
════════════════════════
⌗ Tags: #Security #Malware #ClickFix #Crypto #Infostealer #macOS #Password #Reaper #Script Editor #SHub Stealer #WeChat
Hackread
Reaper macOS Infostealer Abuses Script Editor to Steal Crypto and Passwords
Threat actors deploy Reaper, an updated SHub Stealer variant abusing macOS Script Editor to bypass protections and steal cryptocurrency assets.
⤷ Title: How a Broken Cryptographic Key Derivation Allowed Full Tenant Takeover on an Enterprise Identity…
════════════════════════
𐀪 Author: Tanvi Chauhan
════════════════════════
ⴵ Time: Fri, 05 Jun 2026 14:21:00 GMT
════════════════════════
⌗ Tags: #cybersecurity #bug_bounty_writeup #pentesting #bug_bounty #security
════════════════════════
𐀪 Author: Tanvi Chauhan
════════════════════════
ⴵ Time: Fri, 05 Jun 2026 14:21:00 GMT
════════════════════════
⌗ Tags: #cybersecurity #bug_bounty_writeup #pentesting #bug_bounty #security
Medium
How a Broken Cryptographic Key Derivation Allowed Full Tenant Takeover on an Enterprise Identity…
Three weeks ago, I was looking at a high-end enterprise Identity Provider (IdP) platform on a private bug bounty program. This service…
⤷ Title: $600 BOLA: Breaking Event Boundaries Using Cross-Selection Injection
════════════════════════
𐀪 Author: Abhi Sharma
════════════════════════
ⴵ Time: Fri, 05 Jun 2026 13:31:01 GMT
════════════════════════
⌗ Tags: #bug_bounty #infosec #pentesting #cybersecurity #backend
════════════════════════
𐀪 Author: Abhi Sharma
════════════════════════
ⴵ Time: Fri, 05 Jun 2026 13:31:01 GMT
════════════════════════
⌗ Tags: #bug_bounty #infosec #pentesting #cybersecurity #backend
Medium
$600 BOLA: Breaking Event Boundaries Using Cross-Selection Injection
Hi Everyone! Sometimes bugs don’t look dangerous at first… until you understand what they break behind the scenes.
⤷ Title: Nginx Rift (CVE-2026–42945)-Part2
════════════════════════
𐀪 Author: rezauditore
════════════════════════
ⴵ Time: Fri, 05 Jun 2026 13:03:48 GMT
════════════════════════
⌗ Tags: #programming #penetration_testing #hacking #bug_bounty #nginx
════════════════════════
𐀪 Author: rezauditore
════════════════════════
ⴵ Time: Fri, 05 Jun 2026 13:03:48 GMT
════════════════════════
⌗ Tags: #programming #penetration_testing #hacking #bug_bounty #nginx
Medium
Nginx Rift (CVE-2026–42945)-Part2
The first part:
⤷ Title: Using .npmrc to achieve remote code execution on npm users
════════════════════════
𐀪 Author: Mohammed Dief
════════════════════════
ⴵ Time: Fri, 05 Jun 2026 14:15:40 GMT
════════════════════════
⌗ Tags: #exploitation #cybersecurity #github #hackerone #hacking
════════════════════════
𐀪 Author: Mohammed Dief
════════════════════════
ⴵ Time: Fri, 05 Jun 2026 14:15:40 GMT
════════════════════════
⌗ Tags: #exploitation #cybersecurity #github #hackerone #hacking
Medium
Using .npmrc to achieve remote code execution on npm users
What a miserable day to be wring about anything, But here we go again since this day has been really amazing and I couldn’t miss writing a…
⤷ Title: The AI Attack Surface in 2026 Is Larger Than Most Defenders Realize
════════════════════════
𐀪 Author: Aeon Flex, Elriel Assoc. 2133 [NEON MAXIMA]
════════════════════════
ⴵ Time: Fri, 05 Jun 2026 13:56:00 GMT
════════════════════════
⌗ Tags: #cybersecurity #security_research #ethical_hacking #penetration_testing #hacking
════════════════════════
𐀪 Author: Aeon Flex, Elriel Assoc. 2133 [NEON MAXIMA]
════════════════════════
ⴵ Time: Fri, 05 Jun 2026 13:56:00 GMT
════════════════════════
⌗ Tags: #cybersecurity #security_research #ethical_hacking #penetration_testing #hacking
Medium
The AI Attack Surface in 2026 Is Larger Than Most Defenders Realize
Bug bounty hunters are still writing XSS reports. Meanwhile, the LLMs running enterprise workflows are accepting arbitrary instructions…
⤷ Title: La nuova frontiera degli attacchi informatici
════════════════════════
𐀪 Author: Hoken Tech
════════════════════════
ⴵ Time: Fri, 05 Jun 2026 13:31:02 GMT
════════════════════════
⌗ Tags: #hacking #video_call #problems #truffe #scam
════════════════════════
𐀪 Author: Hoken Tech
════════════════════════
ⴵ Time: Fri, 05 Jun 2026 13:31:02 GMT
════════════════════════
⌗ Tags: #hacking #video_call #problems #truffe #scam
Medium
La nuova frontiera degli attacchi informatici
In un mondo sempre connesso e dipendente da vari servizi centralizzati, ecco che basta una semplice vulnerabilità di una piattaforma o…
⤷ Title: Hijacking Android’s Location Stack — Without Root
════════════════════════
𐀪 Author: r69shabh
════════════════════════
ⴵ Time: Fri, 05 Jun 2026 13:08:38 GMT
════════════════════════
⌗ Tags: #android #android_development #hacking #data #kotlin
════════════════════════
𐀪 Author: r69shabh
════════════════════════
ⴵ Time: Fri, 05 Jun 2026 13:08:38 GMT
════════════════════════
⌗ Tags: #android #android_development #hacking #data #kotlin
Medium
Hijacking Android’s Location Stack — Without Root
How I reverse-engineered the Fused Location Provider, drowned real GPS in fake signals, and reflected into hidden APIs to make every app on…
⤷ Title: Sticky Keys Backdoor on Windows 10 — Pre-Auth SYSTEM Access via RDP
════════════════════════
𐀪 Author: Isha Sangpal
════════════════════════
ⴵ Time: Fri, 05 Jun 2026 13:56:32 GMT
════════════════════════
⌗ Tags: #betigetin #penetration_testing #cybersecurity #security #ethical_hacking
════════════════════════
𐀪 Author: Isha Sangpal
════════════════════════
ⴵ Time: Fri, 05 Jun 2026 13:56:32 GMT
════════════════════════
⌗ Tags: #betigetin #penetration_testing #cybersecurity #security #ethical_hacking
Medium
Sticky Keys Backdoor on Windows 10 — Pre-Auth SYSTEM Access via RDP
How attackers plant a login-screen backdoor that gives SYSTEM access without credentials and how to stop it.