⤷ Title: Outbound HackTheBox writeup
════════════════════════
𐀪 Author: Muhammadnidal
════════════════════════
ⴵ Time: Sat, 06 Jun 2026 08:36:24 GMT
════════════════════════
⌗ Tags: #capture_the_flag #hackthebox_writeup #oscp #outbound
════════════════════════
𐀪 Author: Muhammadnidal
════════════════════════
ⴵ Time: Sat, 06 Jun 2026 08:36:24 GMT
════════════════════════
⌗ Tags: #capture_the_flag #hackthebox_writeup #oscp #outbound
Medium
Outbound HackTheBox writeup
Initial Information
⤷ Title: HTB Labs: Interpreter Writeup
════════════════════════
𐀪 Author: CradS
════════════════════════
ⴵ Time: Sat, 06 Jun 2026 05:10:02 GMT
════════════════════════
⌗ Tags: #hackthebox #penetration_testing #linux #hackthebox_writeup
════════════════════════
𐀪 Author: CradS
════════════════════════
ⴵ Time: Sat, 06 Jun 2026 05:10:02 GMT
════════════════════════
⌗ Tags: #hackthebox #penetration_testing #linux #hackthebox_writeup
Medium
HTB Labs: Interpreter Writeup
As always, we start off with an nmap scan.
⤷ Title: How AI Automation Is Changing Jobs and Why AI Diploma Matters
════════════════════════
𐀪 Author: cybersecuritycourse
════════════════════════
ⴵ Time: Wed, 10 Jun 2026 10:15:14 GMT
════════════════════════
⌗ Tags: #ai_automation #ethical_hacking #ai #education #cybersecurity
════════════════════════
𐀪 Author: cybersecuritycourse
════════════════════════
ⴵ Time: Wed, 10 Jun 2026 10:15:14 GMT
════════════════════════
⌗ Tags: #ai_automation #ethical_hacking #ai #education #cybersecurity
Medium
How AI Automation Is Changing Jobs and Why AI Diploma Matters
Artificial Intelligence (AI) is rapidly transforming the way businesses operate and how professionals work. From customer service and…
⤷ Title: The Ultimate Windows Security Event ID Cheatsheet for Blue Teams & DFIR
════════════════════════
𐀪 Author: Arafat
════════════════════════
ⴵ Time: Wed, 10 Jun 2026 09:56:14 GMT
════════════════════════
⌗ Tags: #blue_team #ethical_hacking #windows #cybersecurity #dfir
════════════════════════
𐀪 Author: Arafat
════════════════════════
ⴵ Time: Wed, 10 Jun 2026 09:56:14 GMT
════════════════════════
⌗ Tags: #blue_team #ethical_hacking #windows #cybersecurity #dfir
Medium
The Ultimate Windows Security Event ID Cheatsheet for Blue Teams & DFIR
If you work in Digital Forensics and Incident Response (DFIR) or manage a Security Operations Center (SOC), you already know the truth…
⤷ Title: How I Recovered a Password from a Linux Binary Using Ghidra
════════════════════════
𐀪 Author: revs3k
════════════════════════
ⴵ Time: Wed, 10 Jun 2026 09:44:54 GMT
════════════════════════
⌗ Tags: #ethical_hacking #linux #windows #reverse_engineering #hacking
════════════════════════
𐀪 Author: revs3k
════════════════════════
ⴵ Time: Wed, 10 Jun 2026 09:44:54 GMT
════════════════════════
⌗ Tags: #ethical_hacking #linux #windows #reverse_engineering #hacking
Medium
How I Recovered a Password from a Linux Binary Using Ghidra
Introduction
⤷ Title: Autoswagger: Automated Broken Authorization Detection Using OpenAPI
════════════════════════
𐀪 Author: Neova Solutions
════════════════════════
ⴵ Time: Wed, 10 Jun 2026 12:36:15 GMT
════════════════════════
⌗ Tags: #devsecops #open_api #api_security #software_development #cybersecurity
════════════════════════
𐀪 Author: Neova Solutions
════════════════════════
ⴵ Time: Wed, 10 Jun 2026 12:36:15 GMT
════════════════════════
⌗ Tags: #devsecops #open_api #api_security #software_development #cybersecurity
Medium
Autoswagger: Automated Broken Authorization Detection Using OpenAPI
1. Introduction
⤷ Title: The Security Questions Nobody Warned Me About When Building SaaS Applications
════════════════════════
𐀪 Author: Maha Ali
════════════════════════
ⴵ Time: Tue, 09 Jun 2026 22:12:55 GMT
════════════════════════
⌗ Tags: #api_security #programming #software_development #saas #cybersecurity
════════════════════════
𐀪 Author: Maha Ali
════════════════════════
ⴵ Time: Tue, 09 Jun 2026 22:12:55 GMT
════════════════════════
⌗ Tags: #api_security #programming #software_development #saas #cybersecurity
Medium
The Security Questions Nobody Warned Me About When Building SaaS Applications
By Maha Aledresi
⤷ Title: A Practical Introduction to GraphQL Pentesting
════════════════════════
𐀪 Author: Amir Dehghan
════════════════════════
ⴵ Time: Tue, 09 Jun 2026 12:55:03 GMT
════════════════════════
⌗ Tags: #cybersecurity #graphql #api_security #web_security #penetration_testing
════════════════════════
𐀪 Author: Amir Dehghan
════════════════════════
ⴵ Time: Tue, 09 Jun 2026 12:55:03 GMT
════════════════════════
⌗ Tags: #cybersecurity #graphql #api_security #web_security #penetration_testing
Medium
A Practical Introduction to GraphQL Pentesting
Understanding GraphQL architecture, reconnaissance techniques, and common security vulnerabilities.
⤷ Title: Account Takeover Detection's Residential Proxy Blind Spot
════════════════════════
𐀪 Author: ABDULLAH AFZAL
════════════════════════
ⴵ Time: Tue, 09 Jun 2026 11:36:34 GMT
════════════════════════
⌗ Tags: #api_security #fraud_detection #credential_stuffing #account_takeover #cybersecurity
════════════════════════
𐀪 Author: ABDULLAH AFZAL
════════════════════════
ⴵ Time: Tue, 09 Jun 2026 11:36:34 GMT
════════════════════════
⌗ Tags: #api_security #fraud_detection #credential_stuffing #account_takeover #cybersecurity
Medium
Account Takeover Detection's Residential Proxy Blind Spot
Why Does Account Takeover Detection Miss Residential Proxies? The IPs behind modern credential stuffing look exactly like your customers. Here is the one signal that tells them apart. Account …
⤷ Title: I’ve Moved! Here Is Where You Can Find My Future Writing
════════════════════════
𐀪 Author: Ceylon
════════════════════════
ⴵ Time: Tue, 09 Jun 2026 10:29:22 GMT
════════════════════════
⌗ Tags: #machine_learning #artificial_intelligence #web_security #cybersecurity #api_security
════════════════════════
𐀪 Author: Ceylon
════════════════════════
ⴵ Time: Tue, 09 Jun 2026 10:29:22 GMT
════════════════════════
⌗ Tags: #machine_learning #artificial_intelligence #web_security #cybersecurity #api_security
Medium
I’ve Moved! Here Is Where You Can Find My Future Writing
If you’ve read any of my writing here, thank you — it means a lot.
⤷ Title: The Rule-Based WAF Is Showing Its Age. Here’s What Comes Next.
════════════════════════
𐀪 Author: Gladioswaf
════════════════════════
ⴵ Time: Tue, 09 Jun 2026 10:27:57 GMT
════════════════════════
⌗ Tags: #cybersecurity #api_security #machine_learning #artificial_intelligence #web_security
════════════════════════
𐀪 Author: Gladioswaf
════════════════════════
ⴵ Time: Tue, 09 Jun 2026 10:27:57 GMT
════════════════════════
⌗ Tags: #cybersecurity #api_security #machine_learning #artificial_intelligence #web_security
Medium
The Rule-Based WAF Is Showing Its Age. Here’s What Comes Next.
Web Application Firewalls have been built around the same idea for decades: inspect the request, match it against known attack patterns…
⤷ Title: How I Identified Critical Cardholder Data Exposure During an API Security Review
════════════════════════
𐀪 Author: Odunlade Adeola
════════════════════════
ⴵ Time: Tue, 09 Jun 2026 06:01:00 GMT
════════════════════════
⌗ Tags: #burpsuite #pci_dss #owasp #api_security #cybersecurity
════════════════════════
𐀪 Author: Odunlade Adeola
════════════════════════
ⴵ Time: Tue, 09 Jun 2026 06:01:00 GMT
════════════════════════
⌗ Tags: #burpsuite #pci_dss #owasp #api_security #cybersecurity
Medium
How I Identified Critical Cardholder Data Exposure During an API Security Review
One of the fundamental principles of API security is ensuring that applications expose only the information that users genuinely need.
⤷ Title: AegisAPI: Securing the APIs Organizations Don’t Even Know They Have
════════════════════════
𐀪 Author: Prathamesh Desai
════════════════════════
ⴵ Time: Sat, 06 Jun 2026 13:44:23 GMT
════════════════════════
⌗ Tags: #technology #software_architecture #cybersecurity #api_security #artificial_intelligence
════════════════════════
𐀪 Author: Prathamesh Desai
════════════════════════
ⴵ Time: Sat, 06 Jun 2026 13:44:23 GMT
════════════════════════
⌗ Tags: #technology #software_architecture #cybersecurity #api_security #artificial_intelligence
Medium
AegisAPI: Securing the APIs Organizations Don’t Even Know They Have
Rethinking API Security Through Behavioral Intelligence, Anomaly Detection, and AI-Powered Reasoning
⤷ Title: The “Open House” API: How I Found a Massive IDOR Vulnerability
════════════════════════
𐀪 Author: Alfaz Hossain
════════════════════════
ⴵ Time: Sat, 06 Jun 2026 13:20:51 GMT
════════════════════════
⌗ Tags: #bug_bounty #api_security #web_development #cybersecurity #information_security
════════════════════════
𐀪 Author: Alfaz Hossain
════════════════════════
ⴵ Time: Sat, 06 Jun 2026 13:20:51 GMT
════════════════════════
⌗ Tags: #bug_bounty #api_security #web_development #cybersecurity #information_security
Medium
The “Open House” API: How I Found a Massive IDOR Vulnerability
In the world of bug bounty hunting, we often talk about complex exploit chains or fancy RCEs. But sometimes, the most dangerous…
⤷ Title: XSS WAF Bypass: The Ultimate Deep Dive
════════════════════════
𐀪 Author: MD Mehedi Hasan
════════════════════════
ⴵ Time: Mon, 08 Jun 2026 09:48:02 GMT
════════════════════════
⌗ Tags: #xss_bypass #reflected_xss #xss_attack #xss_vulnerability #xs
════════════════════════
𐀪 Author: MD Mehedi Hasan
════════════════════════
ⴵ Time: Mon, 08 Jun 2026 09:48:02 GMT
════════════════════════
⌗ Tags: #xss_bypass #reflected_xss #xss_attack #xss_vulnerability #xs
Medium
XSS WAF Bypass: The Ultimate Deep Dive
From Detection to Exploitation — Breaking Modern Web Application Firewalls
⤷ Title: How I Found an XSS Vulnerability on a Gray-Zone Search Feed (Invect.com)
════════════════════════
𐀪 Author: Psychology Studio
════════════════════════
ⴵ Time: Mon, 08 Jun 2026 09:04:53 GMT
════════════════════════
⌗ Tags: #infosec #cybersecurity #xs #bug_bounty #web_security
════════════════════════
𐀪 Author: Psychology Studio
════════════════════════
ⴵ Time: Mon, 08 Jun 2026 09:04:53 GMT
════════════════════════
⌗ Tags: #infosec #cybersecurity #xs #bug_bounty #web_security
Medium
How I Found an XSS Vulnerability on a Gray-Zone Search Feed (Invect.com)
A step-by-step walkthrough of a Reflected XSS discovery, from an unusual URL to an independent security advisory.
⤷ Title: Making A SQLi Lab Is Not Difficult, Build One With Me.
════════════════════════
𐀪 Author: ShadowForge
════════════════════════
ⴵ Time: Tue, 09 Jun 2026 10:57:38 GMT
════════════════════════
⌗ Tags: #pentesting #lab_building #ethical_hacking #sqli
════════════════════════
𐀪 Author: ShadowForge
════════════════════════
ⴵ Time: Tue, 09 Jun 2026 10:57:38 GMT
════════════════════════
⌗ Tags: #pentesting #lab_building #ethical_hacking #sqli
Medium
Making A SQLi Lab Is Not Difficult, Build One With Me.
In the previous part we made a lab with vulnerabilities that, at least to me, is one of the coolest. Today we’re building a lab that can be…
⤷ Title: SQL Injection — The Attack That Has Existed Since the Internet Began
════════════════════════
𐀪 Author: Raju Ranjan
════════════════════════
ⴵ Time: Sun, 07 Jun 2026 01:36:16 GMT
════════════════════════
⌗ Tags: #authentication #sqli #sql_injection_attack
════════════════════════
𐀪 Author: Raju Ranjan
════════════════════════
ⴵ Time: Sun, 07 Jun 2026 01:36:16 GMT
════════════════════════
⌗ Tags: #authentication #sqli #sql_injection_attack
Medium
💉 SQL Injection — The Attack That Has Existed Since the Internet Began
In 1998, a researcher named Jeff Forristal published a paper showing that you could manipulate a website’s database just by typing the…
⤷ Title: The Laravel Guide to SSRF Defense That Survives Redirects
════════════════════════
𐀪 Author: Hafiq Iqmal
════════════════════════
ⴵ Time: Tue, 09 Jun 2026 08:49:59 GMT
════════════════════════
⌗ Tags: #ssrf #software_engineering #cybersecurity #data_security #laravel
════════════════════════
𐀪 Author: Hafiq Iqmal
════════════════════════
ⴵ Time: Tue, 09 Jun 2026 08:49:59 GMT
════════════════════════
⌗ Tags: #ssrf #software_engineering #cybersecurity #data_security #laravel
Medium
The Laravel Guide to SSRF Defense That Survives Redirects
A hostname allowlist helps at input time. The real attack starts after your server sends the request.
⤷ Title: SSRF Explained: Making the Server Your Proxy
════════════════════════
𐀪 Author: 0x4rt1st
════════════════════════
ⴵ Time: Sun, 07 Jun 2026 14:31:12 GMT
════════════════════════
⌗ Tags: #ssrf #cybersecurity #web_development #bug_bounty #pentesting
════════════════════════
𐀪 Author: 0x4rt1st
════════════════════════
ⴵ Time: Sun, 07 Jun 2026 14:31:12 GMT
════════════════════════
⌗ Tags: #ssrf #cybersecurity #web_development #bug_bounty #pentesting
Medium
SSRF Explained: Making the Server Your Proxy
When the web application fetches things on your behalf — and you realize you can control what it fetches. Part 1 of the SSRF series.
⤷ Title: CVE-2026–48778 分析:Notepad++漏洞允許攻擊者執行任意指令
════════════════════════
𐀪 Author: segalee
════════════════════════
ⴵ Time: Wed, 10 Jun 2026 02:01:02 GMT
════════════════════════
⌗ Tags: #cybersecurity #cve_2026_48778 #notepad #blue_team #rce
════════════════════════
𐀪 Author: segalee
════════════════════════
ⴵ Time: Wed, 10 Jun 2026 02:01:02 GMT
════════════════════════
⌗ Tags: #cybersecurity #cve_2026_48778 #notepad #blue_team #rce
Medium
CVE-2026–48778 分析:Notepad++漏洞允許攻擊者執行任意指令
漏洞摘要 該漏洞在 2026 年 5 月底揭露,根據 cybersecuritynews 報導,該漏洞是因為在 Notepad++ 在 v8.9.6(含)以前的版本中,存在設定檔解析缺乏輸入驗證的命令執行漏洞,由於標準安裝版會去讀取…