⤷ Title: SQL Injection — The Attack That Has Existed Since the Internet Began
════════════════════════
𐀪 Author: Raju Ranjan
════════════════════════
ⴵ Time: Sun, 07 Jun 2026 01:36:16 GMT
════════════════════════
⌗ Tags: #authentication #sqli #sql_injection_attack
════════════════════════
𐀪 Author: Raju Ranjan
════════════════════════
ⴵ Time: Sun, 07 Jun 2026 01:36:16 GMT
════════════════════════
⌗ Tags: #authentication #sqli #sql_injection_attack
Medium
💉 SQL Injection — The Attack That Has Existed Since the Internet Began
In 1998, a researcher named Jeff Forristal published a paper showing that you could manipulate a website’s database just by typing the…
⤷ Title: The Laravel Guide to SSRF Defense That Survives Redirects
════════════════════════
𐀪 Author: Hafiq Iqmal
════════════════════════
ⴵ Time: Tue, 09 Jun 2026 08:49:59 GMT
════════════════════════
⌗ Tags: #ssrf #software_engineering #cybersecurity #data_security #laravel
════════════════════════
𐀪 Author: Hafiq Iqmal
════════════════════════
ⴵ Time: Tue, 09 Jun 2026 08:49:59 GMT
════════════════════════
⌗ Tags: #ssrf #software_engineering #cybersecurity #data_security #laravel
Medium
The Laravel Guide to SSRF Defense That Survives Redirects
A hostname allowlist helps at input time. The real attack starts after your server sends the request.
⤷ Title: SSRF Explained: Making the Server Your Proxy
════════════════════════
𐀪 Author: 0x4rt1st
════════════════════════
ⴵ Time: Sun, 07 Jun 2026 14:31:12 GMT
════════════════════════
⌗ Tags: #ssrf #cybersecurity #web_development #bug_bounty #pentesting
════════════════════════
𐀪 Author: 0x4rt1st
════════════════════════
ⴵ Time: Sun, 07 Jun 2026 14:31:12 GMT
════════════════════════
⌗ Tags: #ssrf #cybersecurity #web_development #bug_bounty #pentesting
Medium
SSRF Explained: Making the Server Your Proxy
When the web application fetches things on your behalf — and you realize you can control what it fetches. Part 1 of the SSRF series.
⤷ Title: CVE-2026–48778 分析:Notepad++漏洞允許攻擊者執行任意指令
════════════════════════
𐀪 Author: segalee
════════════════════════
ⴵ Time: Wed, 10 Jun 2026 02:01:02 GMT
════════════════════════
⌗ Tags: #cybersecurity #cve_2026_48778 #notepad #blue_team #rce
════════════════════════
𐀪 Author: segalee
════════════════════════
ⴵ Time: Wed, 10 Jun 2026 02:01:02 GMT
════════════════════════
⌗ Tags: #cybersecurity #cve_2026_48778 #notepad #blue_team #rce
Medium
CVE-2026–48778 分析:Notepad++漏洞允許攻擊者執行任意指令
漏洞摘要 該漏洞在 2026 年 5 月底揭露,根據 cybersecuritynews 報導,該漏洞是因為在 Notepad++ 在 v8.9.6(含)以前的版本中,存在設定檔解析缺乏輸入驗證的命令執行漏洞,由於標準安裝版會去讀取…
⤷ Title: Gaadi Info — Check Vehicle Details, RC Status & Challan
════════════════════════
𐀪 Author: Gaadi Info Car
════════════════════════
ⴵ Time: Tue, 09 Jun 2026 18:06:16 GMT
════════════════════════
⌗ Tags: #rce #gadis #rc_status
════════════════════════
𐀪 Author: Gaadi Info Car
════════════════════════
ⴵ Time: Tue, 09 Jun 2026 18:06:16 GMT
════════════════════════
⌗ Tags: #rce #gadis #rc_status
Medium
Gaadi Info — Check Vehicle Details, RC Status & Challan
Gaadi Info helps you check vehicle owner details, RC status, driving licence information, challan status, insurance details, and RTO…
⤷ Title: SPIP RCE + Docker SUID Escape | THM Publisher
════════════════════════
𐀪 Author: Cyb3rV0lt
════════════════════════
ⴵ Time: Sat, 06 Jun 2026 07:53:51 GMT
════════════════════════
⌗ Tags: #tryhackme_walkthrough #rce_vulnerability #ctf_writeup #cve_2023_27372
════════════════════════
𐀪 Author: Cyb3rV0lt
════════════════════════
ⴵ Time: Sat, 06 Jun 2026 07:53:51 GMT
════════════════════════
⌗ Tags: #tryhackme_walkthrough #rce_vulnerability #ctf_writeup #cve_2023_27372
Medium
SPIP RCE + Docker SUID Escape | THM Publisher
Hello Friend,
⤷ Title: How to configure SQL Firewall on Oracle Database 26ai
════════════════════════
𐀪 Author: VeasnaLay
════════════════════════
ⴵ Time: Wed, 10 Jun 2026 08:21:16 GMT
════════════════════════
⌗ Tags: #firewall #security #sql_injection #oracle_database
════════════════════════
𐀪 Author: VeasnaLay
════════════════════════
ⴵ Time: Wed, 10 Jun 2026 08:21:16 GMT
════════════════════════
⌗ Tags: #firewall #security #sql_injection #oracle_database
Medium
How to configure SQL Firewall on Oracle Database 26ai
SQL Firewall in Oracle Database 26ai is come with database security feature. it can protect the database from any unauthorized SQL…
⤷ Title: Web Uygulama Güvenliğinde SQL Injection: Teori, Pratik ve Kör Yaklaşımlar (Kendi Notlarımdan)
════════════════════════
𐀪 Author: Yaren
════════════════════════
ⴵ Time: Tue, 09 Jun 2026 19:42:01 GMT
════════════════════════
⌗ Tags: #time_based_sql_injection #blind_injection #cybersecurity #sql_injection #error_based_sql_injection
════════════════════════
𐀪 Author: Yaren
════════════════════════
ⴵ Time: Tue, 09 Jun 2026 19:42:01 GMT
════════════════════════
⌗ Tags: #time_based_sql_injection #blind_injection #cybersecurity #sql_injection #error_based_sql_injection
Medium
Web Uygulama Güvenliğinde SQL Injection: Teori, Pratik ve Kör Yaklaşımlar (Kendi Notlarımdan)
Siber güvenlik süreçlerinde karşılaştığımız zafiyetleri sadece otomatize araçlarla taratıp geçmek, bizi iyi bir mühendis yapmaz. İşin…
⤷ Title: Blind but Not Stuck: MSSQL Stacked Queries to [hell] Shell
════════════════════════
𐀪 Author: DuckWrites
════════════════════════
ⴵ Time: Tue, 09 Jun 2026 16:34:06 GMT
════════════════════════
⌗ Tags: #sql_injection_attack #osep #reverse_shell #mssql #sql_injection
════════════════════════
𐀪 Author: DuckWrites
════════════════════════
ⴵ Time: Tue, 09 Jun 2026 16:34:06 GMT
════════════════════════
⌗ Tags: #sql_injection_attack #osep #reverse_shell #mssql #sql_injection
Medium
Blind but Not Stuck: MSSQL Stacked Queries to [hell] Shell
Most pentesters or OffSec students are familiarized with inbound SQLi. Those are the kind of injections that give the user some text back…
⤷ Title: SQL Injection in Password Reset: Full Database, One Email
════════════════════════
𐀪 Author: LordofHeaven
════════════════════════
ⴵ Time: Tue, 09 Jun 2026 08:42:42 GMT
════════════════════════
⌗ Tags: #ethical_hacking #sql_injection #web_security #bug_bounty #cybersecurity
════════════════════════
𐀪 Author: LordofHeaven
════════════════════════
ⴵ Time: Tue, 09 Jun 2026 08:42:42 GMT
════════════════════════
⌗ Tags: #ethical_hacking #sql_injection #web_security #bug_bounty #cybersecurity
Medium
SQL Injection in Password Reset: Full Database, One Email
A ukey token in a forgot-password email handed me full read access to every record in their database. Reported in early 2025. Still live.
⤷ Title: TryHackMe: Recruit Challenge WriteUp
════════════════════════
𐀪 Author: Eloy Albiach Forner
════════════════════════
ⴵ Time: Mon, 08 Jun 2026 23:58:24 GMT
════════════════════════
⌗ Tags: #sql_injection #lfi_vulnerability #tryhackme_writeup
════════════════════════
𐀪 Author: Eloy Albiach Forner
════════════════════════
ⴵ Time: Mon, 08 Jun 2026 23:58:24 GMT
════════════════════════
⌗ Tags: #sql_injection #lfi_vulnerability #tryhackme_writeup
Medium
TryHackMe: Recruit Challenge WriteUp
Máquina Premium de la plataforma TryHackMe que permite explotar vulnerabilidades LFI y SQL Injection…
⤷ Title: Walkthrough: TryHackMe Recruit
════════════════════════
𐀪 Author: MistressOfTheDarkweb
════════════════════════
ⴵ Time: Mon, 08 Jun 2026 21:30:23 GMT
════════════════════════
⌗ Tags: #sql_injection #tryhackme #cybersecurity #ctf #penetration_testing
════════════════════════
𐀪 Author: MistressOfTheDarkweb
════════════════════════
ⴵ Time: Mon, 08 Jun 2026 21:30:23 GMT
════════════════════════
⌗ Tags: #sql_injection #tryhackme #cybersecurity #ctf #penetration_testing
Medium
Walkthrough: TryHackMe Recruit
Recruit has just launched its new recruitment portal, allowing HR staff to manage candidate applications and administrators to oversee…
⤷ Title: Breach Files #006: MOVEit Transfer (2023)
════════════════════════
𐀪 Author: NullyBlissful
════════════════════════
ⴵ Time: Mon, 08 Jun 2026 02:31:00 GMT
════════════════════════
⌗ Tags: #sql_injection #mitre_attack #cybersecurity #infosec #ransomware
════════════════════════
𐀪 Author: NullyBlissful
════════════════════════
ⴵ Time: Mon, 08 Jun 2026 02:31:00 GMT
════════════════════════
⌗ Tags: #sql_injection #mitre_attack #cybersecurity #infosec #ransomware
Medium
Breach Files #006: MOVEit Transfer (2023)
One SQL Injection. 2,000+ Victims. The Biggest Mass-Hack in Recent History.
⤷ Title: SOC127 — SQL Injection Detected
════════════════════════
𐀪 Author: Mistermanuniq
════════════════════════
ⴵ Time: Sun, 07 Jun 2026 15:39:35 GMT
════════════════════════
⌗ Tags: #sql_injection #soc127 #letsdefendio #lets_defend #letsdefend_writeup
════════════════════════
𐀪 Author: Mistermanuniq
════════════════════════
ⴵ Time: Sun, 07 Jun 2026 15:39:35 GMT
════════════════════════
⌗ Tags: #sql_injection #soc127 #letsdefendio #lets_defend #letsdefend_writeup
Medium
SOC127 — SQL Injection Detected
Today , we are going to investigate the SOC127 alert in LetsDefend.
⤷ Title: Easy 150$ Bounty: Delete all votes
════════════════════════
𐀪 Author: Musab Sarı
════════════════════════
ⴵ Time: Tue, 09 Jun 2026 15:31:56 GMT
════════════════════════
⌗ Tags: #hackerone #cybersecurity #bug_bounty #bug_bounty_writeup #broken_access_control
════════════════════════
𐀪 Author: Musab Sarı
════════════════════════
ⴵ Time: Tue, 09 Jun 2026 15:31:56 GMT
════════════════════════
⌗ Tags: #hackerone #cybersecurity #bug_bounty #bug_bounty_writeup #broken_access_control
Medium
Easy 150$ Bounty: Delete all votes
I have been hunting for a while on the Hackerone public program and what I learned is If you choose the right program and spend more time…
⤷ Title: IDOR allows non-group members to add any group to favorites on their Facebook profile
════════════════════════
𐀪 Author: Rohmad Hidayah
════════════════════════
ⴵ Time: Tue, 09 Jun 2026 12:47:33 GMT
════════════════════════
⌗ Tags: #meta_bug_bounty #facebook_bug_bounty #idor #bug_bounty_writeup
════════════════════════
𐀪 Author: Rohmad Hidayah
════════════════════════
ⴵ Time: Tue, 09 Jun 2026 12:47:33 GMT
════════════════════════
⌗ Tags: #meta_bug_bounty #facebook_bug_bounty #idor #bug_bounty_writeup
Medium
IDOR allows non-group members to add any group to favorites on their Facebook profile
Allows users who are not members of a group to add any group to their favorites on their Facebook profile.
⤷ Title: Non-group members can be added to projects even though the “Users cannot be added to projects in…
════════════════════════
𐀪 Author: Rohmad Hidayah
════════════════════════
ⴵ Time: Tue, 09 Jun 2026 12:31:47 GMT
════════════════════════
⌗ Tags: #bug_bounty_writeup #business_logic_flaw #gitlab
════════════════════════
𐀪 Author: Rohmad Hidayah
════════════════════════
ⴵ Time: Tue, 09 Jun 2026 12:31:47 GMT
════════════════════════
⌗ Tags: #bug_bounty_writeup #business_logic_flaw #gitlab
Medium
Non-group members can be added to projects even though the “Users cannot be added to projects in…
https://gitlab.com/gitlab-org/gitlab/-/work_items/551267
⤷ Title: These Low-Hanging Fruit bugs Made Me $120+ in 30 Minutes — Bugs That 80% of Hunters Ignore
════════════════════════
𐀪 Author: Bhavishthakral
════════════════════════
ⴵ Time: Tue, 09 Jun 2026 09:38:28 GMT
════════════════════════
⌗ Tags: #bug_bounty #cybersecurity #bug_bounty_writeup
════════════════════════
𐀪 Author: Bhavishthakral
════════════════════════
ⴵ Time: Tue, 09 Jun 2026 09:38:28 GMT
════════════════════════
⌗ Tags: #bug_bounty #cybersecurity #bug_bounty_writeup
Medium
These Low-Hanging Fruit bugs Made Me $120+ in 30 Minutes — Bugs That 80% of Hunters Ignore
These Low-Hanging Fruits Made Me $120+ in 30 Minutes — Bugs That 80% of Hunters Ignore Hi everyone , bhavish here When people think about bug bounty, they imagine critical RCEs, SQL injections, and …
⤷ Title: How I Found a Critical OAuth Misconfiguration That Led to Account Takeover
════════════════════════
𐀪 Author: Shafayat Ahmed Alif
════════════════════════
ⴵ Time: Tue, 09 Jun 2026 09:21:17 GMT
════════════════════════
⌗ Tags: #account_takeover #bug_bounty_tips #bug_bounty #cybersecurity #bug_bounty_writeup
════════════════════════
𐀪 Author: Shafayat Ahmed Alif
════════════════════════
ⴵ Time: Tue, 09 Jun 2026 09:21:17 GMT
════════════════════════
⌗ Tags: #account_takeover #bug_bounty_tips #bug_bounty #cybersecurity #bug_bounty_writeup
Medium
How I Found a Critical OAuth Misconfiguration That Led to Account Takeover
A bug bounty story about OAuth, PKCE, open client registration, and how multiple low-level issues chained together into a critical account…
⤷ Title: API Hacking Sounds Scary Until You Realize It’s Just Changing Numbers
════════════════════════
𐀪 Author: Decline
════════════════════════
ⴵ Time: Tue, 09 Jun 2026 04:03:40 GMT
════════════════════════
⌗ Tags: #bug_hunting #bug_bounty_tips #bugbounty_writeup #bug_bounty #bug_bounty_writeup
════════════════════════
𐀪 Author: Decline
════════════════════════
ⴵ Time: Tue, 09 Jun 2026 04:03:40 GMT
════════════════════════
⌗ Tags: #bug_hunting #bug_bounty_tips #bugbounty_writeup #bug_bounty #bug_bounty_writeup
Medium
API Hacking Sounds Scary Until You Realize It’s Just Changing Numbers
No complex setups. No secret tools. Just you and your browser.
⤷ Title: Broken Access Control leads to delete any user’s comment
════════════════════════
𐀪 Author: Raccoon
════════════════════════
ⴵ Time: Mon, 08 Jun 2026 21:34:23 GMT
════════════════════════
⌗ Tags: #bug_bounty #bug_bounty_writeup #bug_bounty_tips #penetration_testing
════════════════════════
𐀪 Author: Raccoon
════════════════════════
ⴵ Time: Mon, 08 Jun 2026 21:34:23 GMT
════════════════════════
⌗ Tags: #bug_bounty #bug_bounty_writeup #bug_bounty_tips #penetration_testing
Medium
Broken Access Control leads to delete any user’s comment
Hello Raccoonians,