⤷ Title: Before You Deploy, Ask One Question: Are Your Gems Secure?
════════════════════════
𐀪 Author: J3
════════════════════════
ⴵ Time: Mon, 15 Jun 2026 20:04:58 GMT
════════════════════════
⌗ Tags: #devsecops #ruby_on_rails #cybersecurity #application_security #bundleraudit
════════════════════════
𐀪 Author: J3
════════════════════════
ⴵ Time: Mon, 15 Jun 2026 20:04:58 GMT
════════════════════════
⌗ Tags: #devsecops #ruby_on_rails #cybersecurity #application_security #bundleraudit
Medium
Before You Deploy, Ask One Question: Are Your Gems Secure?
A hands-on introduction to Bundler Audit, CVEs, dependency security, and safer Ruby deployments.
⤷ Title: Corporate Security Can’t Detect What They Can’t See: The Pico W Underground
════════════════════════
𐀪 Author: Aeon Flex, Elriel Assoc. 2133 [NEON MAXIMA]
════════════════════════
ⴵ Time: Mon, 15 Jun 2026 21:39:32 GMT
════════════════════════
⌗ Tags: #embedded_systems #hacking #raspberry_pi #raspberry_pi_pico_w #makers
════════════════════════
𐀪 Author: Aeon Flex, Elriel Assoc. 2133 [NEON MAXIMA]
════════════════════════
ⴵ Time: Mon, 15 Jun 2026 21:39:32 GMT
════════════════════════
⌗ Tags: #embedded_systems #hacking #raspberry_pi #raspberry_pi_pico_w #makers
Medium
Corporate Security Can’t Detect What They Can’t See: The Pico W Underground
Why a six-dollar microcontroller is quietly becoming one of the most interesting pieces of hardware in modern security research.
⤷ Title: I’ve Been Securing Linux the Hard Way — Then I Found bootc
════════════════════════
𐀪 Author: Ralston Gordon
════════════════════════
ⴵ Time: Mon, 15 Jun 2026 20:44:27 GMT
════════════════════════
⌗ Tags: #cybersecurity #immutable #infosec #devops #containers
════════════════════════
𐀪 Author: Ralston Gordon
════════════════════════
ⴵ Time: Mon, 15 Jun 2026 20:44:27 GMT
════════════════════════
⌗ Tags: #cybersecurity #immutable #infosec #devops #containers
Medium
I’ve Been Securing Linux the Hard Way — Then I Found bootc
A cybersecurity professional’s first encounter with bootable containers and why it might change everything about how we harden Linux…
⤷ Title: Reimage Downloader PUP Analysis
════════════════════════
𐀪 Author: Justin C.
════════════════════════
ⴵ Time: Mon, 15 Jun 2026 20:08:41 GMT
════════════════════════
⌗ Tags: #infosec_write_ups #process #cybersecurity #infosec #computer_science
════════════════════════
𐀪 Author: Justin C.
════════════════════════
ⴵ Time: Mon, 15 Jun 2026 20:08:41 GMT
════════════════════════
⌗ Tags: #infosec_write_ups #process #cybersecurity #infosec #computer_science
Medium
Reimage Downloader PUP Analysis
What do an Authenticode-signed executable, browser cookie harvesting, regsvr32 abuse, and filenames like invoice.exe and 不需要.exe have in…
⤷ Title: Prompt Engineering
════════════════════════
𐀪 Author: Brian Grier
════════════════════════
ⴵ Time: Mon, 15 Jun 2026 21:20:43 GMT
════════════════════════
⌗ Tags: #tryhackme_walkthrough #thm_writeup #tryhackme
════════════════════════
𐀪 Author: Brian Grier
════════════════════════
ⴵ Time: Mon, 15 Jun 2026 21:20:43 GMT
════════════════════════
⌗ Tags: #tryhackme_walkthrough #thm_writeup #tryhackme
Medium
Prompt Engineering
Task 1: Introduction
⤷ Title: I Took a Cyber security & Ethical Hacking Course — Here’s Who It’s Actually For.
════════════════════════
𐀪 Author: Fiyinfoluwa
════════════════════════
ⴵ Time: Mon, 15 Jun 2026 20:30:56 GMT
════════════════════════
⌗ Tags: #self_improvement #technology #privacy #ethical_hacking #cybersecurity
════════════════════════
𐀪 Author: Fiyinfoluwa
════════════════════════
ⴵ Time: Mon, 15 Jun 2026 20:30:56 GMT
════════════════════════
⌗ Tags: #self_improvement #technology #privacy #ethical_hacking #cybersecurity
Medium
I Took a Cyber security & Ethical Hacking Course — Here’s Who It’s Actually For.
I Took a Cyber security & Ethical Hacking Course — Here’s Who It’s Actually For. Most people think cybersecurity is for guys in hoodies typing in dark rooms. I used to think that too. But …
⤷ Title: PortSwigger : SQL Injection Vulnerability Allowing Login Bypass
════════════════════════
𐀪 Author: Imajinasidanar
════════════════════════
ⴵ Time: Mon, 15 Jun 2026 20:19:54 GMT
════════════════════════
⌗ Tags: #web_security #cybersecurity #writeup #sql_injection #portswigger
════════════════════════
𐀪 Author: Imajinasidanar
════════════════════════
ⴵ Time: Mon, 15 Jun 2026 20:19:54 GMT
════════════════════════
⌗ Tags: #web_security #cybersecurity #writeup #sql_injection #portswigger
Medium
PortSwigger : SQL Injection Vulnerability Allowing Login Bypass
In this lab, the website has a SQL injection vulnerability in the login function.
⤷ Title: PortSwigger : SQL Injection in WHERE Clause Allowing Retrieval of Hidden Data
════════════════════════
𐀪 Author: Imajinasidanar
════════════════════════
ⴵ Time: Mon, 15 Jun 2026 20:00:29 GMT
════════════════════════
⌗ Tags: #writeup #web_security #portswigger #cybersecurity #sql_injection
════════════════════════
𐀪 Author: Imajinasidanar
════════════════════════
ⴵ Time: Mon, 15 Jun 2026 20:00:29 GMT
════════════════════════
⌗ Tags: #writeup #web_security #portswigger #cybersecurity #sql_injection
Medium
PortSwigger : SQL Injection in WHERE Clause Allowing Retrieval of Hidden Data
In this lab, the website has a SQL injection vulnerability in the product category filter. When a user chooses a category, the application…
⤷ Title: Clinejection: One Misconfigured GitHub Action Can Compromise Your App (Deep Dive & Lessons Learned)
════════════════════════
𐀪 Author: Mohamed AboElKheir
════════════════════════
ⴵ Time: Mon, 15 Jun 2026 22:52:17 GMT
════════════════════════
⌗ Tags: #ai #software_development #software_engineering #cybersecurity #application_security
════════════════════════
𐀪 Author: Mohamed AboElKheir
════════════════════════
ⴵ Time: Mon, 15 Jun 2026 22:52:17 GMT
════════════════════════
⌗ Tags: #ai #software_development #software_engineering #cybersecurity #application_security
Medium
Clinejection: One Misconfigured GitHub Action Can Compromise Your App (Deep Dive & Lessons Learned)
Welcome to another story in the Lessons Learned series, where we discuss real-world vulnerabilities from the perspective of an application…
⤷ Title: Loly | Proving Grounds | OSCP Preparation
════════════════════════
𐀪 Author: SilentExploit
════════════════════════
ⴵ Time: Mon, 15 Jun 2026 22:38:29 GMT
════════════════════════
⌗ Tags: #infosec #ethical_hacking #hacking #ctf #security
════════════════════════
𐀪 Author: SilentExploit
════════════════════════
ⴵ Time: Mon, 15 Jun 2026 22:38:29 GMT
════════════════════════
⌗ Tags: #infosec #ethical_hacking #hacking #ctf #security
Medium
Loly | Proving Grounds | OSCP Preparation
As always, we start off with a nmap scan of the target:
⤷ Title: Footprinting Lab — Easy (Walkthrough)
════════════════════════
𐀪 Author: th3V0!D
════════════════════════
ⴵ Time: Mon, 15 Jun 2026 22:14:13 GMT
════════════════════════
⌗ Tags: #hackthebox #cybersecurity #red_team #hacking #penetration_testing
════════════════════════
𐀪 Author: th3V0!D
════════════════════════
ⴵ Time: Mon, 15 Jun 2026 22:14:13 GMT
════════════════════════
⌗ Tags: #hackthebox #cybersecurity #red_team #hacking #penetration_testing
Medium
Footprinting Lab — Easy (Walkthrough)
We were commissioned by the company Inlanefreight Ltd to test three different servers in their internal network. The company uses many…
⤷ Title: Wardriving — Pasándolo bien con las redes WiFi del barrio
════════════════════════
𐀪 Author: BeachO
════════════════════════
ⴵ Time: Mon, 15 Jun 2026 22:02:28 GMT
════════════════════════
⌗ Tags: #wifi #wifihacking #español #hacking #wardriving
════════════════════════
𐀪 Author: BeachO
════════════════════════
ⴵ Time: Mon, 15 Jun 2026 22:02:28 GMT
════════════════════════
⌗ Tags: #wifi #wifihacking #español #hacking #wardriving
Medium
Wardriving — Pasándolo bien con las redes WiFi del barrio
Discreción o potencia, todo junto no puede ser
⤷ Title: The Four Reflexes That Separate Real SOC Analysts From People Who Memorized the Definitions
════════════════════════
𐀪 Author: Jbird
════════════════════════
ⴵ Time: Mon, 15 Jun 2026 22:00:17 GMT
════════════════════════
⌗ Tags: #information_security #information_technology #infosec #career_development #cybersecurity
════════════════════════
𐀪 Author: Jbird
════════════════════════
ⴵ Time: Mon, 15 Jun 2026 22:00:17 GMT
════════════════════════
⌗ Tags: #information_security #information_technology #infosec #career_development #cybersecurity
Medium
The Four Reflexes That Separate Real SOC Analysts From People Who Memorized the Definitions
Two analysts can have the same certs and one freezes on a live alert while the other moves. The difference is four reflexes, not…
⤷ Title: Naxclow IoT Vulnerabilities: 7 Flaws Let Attackers Hijack Doorbells and Cameras
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Tue, 16 Jun 2026 01:45:47 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CISA #CVE_2026_28742 #Device Takeover #Hard_Coded Key #IoT security #Naxclow #Smart Doorbell
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Tue, 16 Jun 2026 01:45:47 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CISA #CVE_2026_28742 #Device Takeover #Hard_Coded Key #IoT security #Naxclow #Smart Doorbell
Daily CyberSecurity
Naxclow IoT Vulnerabilities: 7 Flaws Let Attackers Hijack Doorbells and Cameras
CISA warns of 7 Naxclow IoT vulnerabilities, including a hard-coded key (CVE-2026-28742) enabling device takeover of doorbells and cameras.
⤷ Title: FreeSWITCH Heap Buffer Overflow Bugs Expose Servers to Pre-Auth Attacks
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Tue, 16 Jun 2026 01:01:15 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2026_49840 #CVE_2026_49841 #FreeSWITCH #Heap Buffer Overflow #libesl #mod_verto
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Tue, 16 Jun 2026 01:01:15 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2026_49840 #CVE_2026_49841 #FreeSWITCH #Heap Buffer Overflow #libesl #mod_verto
Daily CyberSecurity
FreeSWITCH Heap Buffer Overflow Bugs Expose Servers to Pre-Auth Attacks
Two pre-auth FreeSWITCH heap buffer overflow bugs (CVE-2026-49841, CVE-2026-49840) hit mod_verto and libesl. Update to v1.11.1 to stay safe.
⤷ Title: Thousands of phpBB Forums Exposed by Critical Authentication Bypass
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Tue, 16 Jun 2026 00:27:40 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Account Takeover #Authentication Bypass #CVE_2026_48611 #OAuth #phpBB #phpBB 3.3.17
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Tue, 16 Jun 2026 00:27:40 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Account Takeover #Authentication Bypass #CVE_2026_48611 #OAuth #phpBB #phpBB 3.3.17
Daily CyberSecurity
Thousands of phpBB Forums Exposed by Critical Authentication Bypass
A critical phpBB authentication bypass (CVE-2026-48611) lets attackers hijack any account on thousands of forums. Update to 3.3.17 now.
⤷ Title: LiteSpeed cPanel Privilege Escalation Flaw Exploited in the Wild (CVE-2026-54420)
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Tue, 16 Jun 2026 00:00:13 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Active Exploitation #CageFS #CloudLinux #CPanel #CVE_2026_54420 #LiteSpeed #privilege escalation #Shared Hosting
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Tue, 16 Jun 2026 00:00:13 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Active Exploitation #CageFS #CloudLinux #CPanel #CVE_2026_54420 #LiteSpeed #privilege escalation #Shared Hosting
Daily CyberSecurity
LiteSpeed cPanel Privilege Escalation Flaw Exploited in the Wild (CVE-2026-54420)
CVE-2026-54420, a LiteSpeed cPanel privilege escalation flaw, is exploited in the wild to gain root on shared hosting. Patch to plugin v2.4.8 now.
⤷ Title: MSRPM Internals: What the AMD APM Actually Means
════════════════════════
𐀪 Author: Matheus Santos
════════════════════════
ⴵ Time: Tue, 16 Jun 2026 01:43:48 GMT
════════════════════════
⌗ Tags: #amd #hacking #software_architecture #hypervisors #programming
════════════════════════
𐀪 Author: Matheus Santos
════════════════════════
ⴵ Time: Tue, 16 Jun 2026 01:43:48 GMT
════════════════════════
⌗ Tags: #amd #hacking #software_architecture #hypervisors #programming
Medium
MSRPM Internals: What the AMD APM Actually Means
Astaroth Development Notes — MSR Permission Map Implementation
⤷ Title: I Cleared the eWPT — Here’s Everything You Need to Know
════════════════════════
𐀪 Author: Divya
════════════════════════
ⴵ Time: Tue, 16 Jun 2026 00:04:31 GMT
════════════════════════
⌗ Tags: #penetration_testing #certification #security
════════════════════════
𐀪 Author: Divya
════════════════════════
ⴵ Time: Tue, 16 Jun 2026 00:04:31 GMT
════════════════════════
⌗ Tags: #penetration_testing #certification #security
Medium
I Cleared the eWPT — Here’s Everything You Need to Know
Divya Gupta
⤷ Title: Velvet Ant Hid in Air-Gapped Network for 10 Years
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 16 Jun 2026 03:49:53 +0000
════════════════════════
⌗ Tags: #Cybercriminals #air_gapped network #China APT #cybersecurity #OpenSSH Compromise #Operation Highland #PAM Backdoor #Velvet Ant
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 16 Jun 2026 03:49:53 +0000
════════════════════════
⌗ Tags: #Cybercriminals #air_gapped network #China APT #cybersecurity #OpenSSH Compromise #Operation Highland #PAM Backdoor #Velvet Ant
Information Security News
Velvet Ant Hid in Air-Gapped Network for 10 Years
Sygnia exposes Operation Highland: China-linked Velvet Ant persisted for nearly 10 years in an air-gapped network by backdooring PAM and OpenSSH.
⤷ Title: CVE-2026-46316: KVM arm64 Guest Escapes to Host
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 16 Jun 2026 03:47:25 +0000
════════════════════════
⌗ Tags: #Vulnerability #ARM64 #cloud security #CVE_2026_46316 #KVM Escape #Linux Kernel #Virtual Machine Escape
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 16 Jun 2026 03:47:25 +0000
════════════════════════
⌗ Tags: #Vulnerability #ARM64 #cloud security #CVE_2026_46316 #KVM Escape #Linux Kernel #Virtual Machine Escape
Information Security News
CVE-2026-46316: KVM arm64 Guest Escapes to Host
CVE-2026-46316 is a critical Linux KVM arm64 flaw scoring 9.3 that lets a guest VM escape to the host kernel via a vGIC-ITS race condition.