⤷ Title: The Mirage of Free Money on X
════════════════════════
𐀪 Author: J Khaishkai
════════════════════════
ⴵ Time: Sun, 21 Jun 2026 18:07:48 GMT
════════════════════════
⌗ Tags: #money #giveaway #xs
════════════════════════
𐀪 Author: J Khaishkai
════════════════════════
ⴵ Time: Sun, 21 Jun 2026 18:07:48 GMT
════════════════════════
⌗ Tags: #money #giveaway #xs
Medium
The Mirage of Free Money on X
Why Most Giveaways Are Smoke, Mirrors, and Scams — But a Few Honest Ones Actually Deliver
⤷ Title: I Spent 4 Hours Testing HubSpot’s AI Assistant for Prompt Injection — Here’s Everything I Found
════════════════════════
𐀪 Author: SUDOACCESS__SHARAN
════════════════════════
ⴵ Time: Sun, 21 Jun 2026 19:47:02 GMT
════════════════════════
⌗ Tags: #llm_prompt_injection #llm_security #bug_bounty_writeup #ai_security #cybersecurity
════════════════════════
𐀪 Author: SUDOACCESS__SHARAN
════════════════════════
ⴵ Time: Sun, 21 Jun 2026 19:47:02 GMT
════════════════════════
⌗ Tags: #llm_prompt_injection #llm_security #bug_bounty_writeup #ai_security #cybersecurity
Medium
I Spent 4 Hours Testing HubSpot’s AI Assistant for Prompt Injection — Here’s Everything I Found
A systematic security assessment of HubSpot Breeze AI across 17 attack vectors
⤷ Title: The Spy Group Hiding Their Orders Inside a Dropbox Folder
════════════════════════
𐀪 Author: Pop123
════════════════════════
ⴵ Time: Sun, 21 Jun 2026 21:36:22 GMT
════════════════════════
⌗ Tags: #technology #politics #hacking #north_korea #cybersecurity
════════════════════════
𐀪 Author: Pop123
════════════════════════
ⴵ Time: Sun, 21 Jun 2026 21:36:22 GMT
════════════════════════
⌗ Tags: #technology #politics #hacking #north_korea #cybersecurity
Medium
The Spy Group Hiding Their Orders Inside a Dropbox Folder
In March 2025, a North Korean spy crew emailed activists a poster, the download link pointed to Dropbox, and so did every secret command…
⤷ Title: I Didn’t Just Hack the AI. I Built Something That Hacks It For Me. DIVYASTRA
════════════════════════
𐀪 Author: Nilanjan Chowdhury
════════════════════════
ⴵ Time: Sun, 21 Jun 2026 20:52:22 GMT
════════════════════════
⌗ Tags: #hacking #prompt_engineering #ai_security #machine_learning #ethical_hacking
════════════════════════
𐀪 Author: Nilanjan Chowdhury
════════════════════════
ⴵ Time: Sun, 21 Jun 2026 20:52:22 GMT
════════════════════════
⌗ Tags: #hacking #prompt_engineering #ai_security #machine_learning #ethical_hacking
Medium
I Didn’t Just Hack the AI. I Built Something That Hacks It For Me. DIVYASTRA
Author: Nilanjan Chowdhury
⤷ Title: ARP and ARP Spoofing: The Basics Every Pentester Should Know
════════════════════════
𐀪 Author: Cipher Mira
════════════════════════
ⴵ Time: Sun, 21 Jun 2026 20:20:15 GMT
════════════════════════
⌗ Tags: #penetration_testing #kali_linux #man_in_the_middle_attack #cybersecurity #networking
════════════════════════
𐀪 Author: Cipher Mira
════════════════════════
ⴵ Time: Sun, 21 Jun 2026 20:20:15 GMT
════════════════════════
⌗ Tags: #penetration_testing #kali_linux #man_in_the_middle_attack #cybersecurity #networking
Medium
ARP and ARP Spoofing: The Basics Every Pentester Should Know
Understanding the protocol before you exploit it.
⤷ Title: Climbing the Stairs to SYSTEM: From One User to the Whole Domain
════════════════════════
𐀪 Author: Will Giles | Cybersecurity
════════════════════════
ⴵ Time: Sun, 21 Jun 2026 20:01:11 GMT
════════════════════════
⌗ Tags: #active_directory #active_directory_security #cybersecurity #penetration_testing
════════════════════════
𐀪 Author: Will Giles | Cybersecurity
════════════════════════
ⴵ Time: Sun, 21 Jun 2026 20:01:11 GMT
════════════════════════
⌗ Tags: #active_directory #active_directory_security #cybersecurity #penetration_testing
Medium
Climbing the Stairs to SYSTEM: From One User to the Whole Domain
How I worked a single low-privileged account all the way up to SYSTEM on the domain controller, one step at a time.
⤷ Title: SQL Injection (SQLi): A Beginner’s Guide to Understanding One of the Most Common Web…
════════════════════════
𐀪 Author: VICTUS(RQ)
════════════════════════
ⴵ Time: Sun, 21 Jun 2026 21:47:14 GMT
════════════════════════
⌗ Tags: #sql_injection #sqlinjectiontypes #owasp_top_10 #ethical_hacking #purpose_learning
════════════════════════
𐀪 Author: VICTUS(RQ)
════════════════════════
ⴵ Time: Sun, 21 Jun 2026 21:47:14 GMT
════════════════════════
⌗ Tags: #sql_injection #sqlinjectiontypes #owasp_top_10 #ethical_hacking #purpose_learning
Medium
SQL Injection (SQLi): A Beginner’s Guide to Understanding One of the Most Common Web…
Introduction
⤷ Title: DAY 13-NAMP FOR BEGINNERS
════════════════════════
𐀪 Author: Wandesrtech
════════════════════════
ⴵ Time: Sun, 21 Jun 2026 20:46:00 GMT
════════════════════════
⌗ Tags: #linux #ethical_hacking #nmap #cybersecurity #reconnaissance
════════════════════════
𐀪 Author: Wandesrtech
════════════════════════
ⴵ Time: Sun, 21 Jun 2026 20:46:00 GMT
════════════════════════
⌗ Tags: #linux #ethical_hacking #nmap #cybersecurity #reconnaissance
Medium
DAY 13-NAMP FOR BEGINNERS
Introduction
⤷ Title: New Tool, The Six Eyes!
════════════════════════
𐀪 Author: The Husky Hacker
════════════════════════
ⴵ Time: Sun, 21 Jun 2026 20:33:24 GMT
════════════════════════
⌗ Tags: #ethical_hacking_tools #ethical_hacking
════════════════════════
𐀪 Author: The Husky Hacker
════════════════════════
ⴵ Time: Sun, 21 Jun 2026 20:33:24 GMT
════════════════════════
⌗ Tags: #ethical_hacking_tools #ethical_hacking
Medium
New Tool, The Six Eyes!
So, I kept making nerdy tools and really had the idea, Gojo has the six eyes, why not make that a quicker script with PowerShell for quick…
⤷ Title: OAuth Is Still Misunderstood
════════════════════════
𐀪 Author: Lu Li
════════════════════════
ⴵ Time: Sun, 21 Jun 2026 21:45:08 GMT
════════════════════════
⌗ Tags: #software_development #oauth2 #api_security #web_development #cybersecurity
════════════════════════
𐀪 Author: Lu Li
════════════════════════
ⴵ Time: Sun, 21 Jun 2026 21:45:08 GMT
════════════════════════
⌗ Tags: #software_development #oauth2 #api_security #web_development #cybersecurity
Medium
OAuth Is Still Misunderstood
OAuth has a reputation for being complicated, mysterious, and slightly annoying. To be fair, it has worked hard to earn that reputation.
⤷ Title: Blind SQL isn’t Blind any More
════════════════════════
𐀪 Author: Hyper Vare
════════════════════════
ⴵ Time: Sun, 21 Jun 2026 21:28:57 GMT
════════════════════════
⌗ Tags: #blind_sql_injection #database_hacking #i_can_see_blind_sql #sql_injection
════════════════════════
𐀪 Author: Hyper Vare
════════════════════════
ⴵ Time: Sun, 21 Jun 2026 21:28:57 GMT
════════════════════════
⌗ Tags: #blind_sql_injection #database_hacking #i_can_see_blind_sql #sql_injection
Medium
Blind SQL isn’t Blind any More
Hi, I am HV (Harsh Vardhan) a Security Researcher. So, that’s it about me.
⤷ Title: Reflected XSS into a JavaScript string with angle brackets HTML encoded | Shiv Kumar | OWASP Top 10…
════════════════════════
𐀪 Author: Shiv Kumar
════════════════════════
ⴵ Time: Sun, 21 Jun 2026 23:25:13 GMT
════════════════════════
⌗ Tags: #xss_attack #aplication_security #reflected_xss #owasp_top_10 #bug_bounty
════════════════════════
𐀪 Author: Shiv Kumar
════════════════════════
ⴵ Time: Sun, 21 Jun 2026 23:25:13 GMT
════════════════════════
⌗ Tags: #xss_attack #aplication_security #reflected_xss #owasp_top_10 #bug_bounty
Medium
Reflected XSS into a JavaScript string with angle brackets HTML encoded | Shiv Kumar | OWASP Top 10…
Portswigger lab Reflected XSS into a JavaScript string with angle brackets HTML encoded
⤷ Title: The Single-Primitive Write: WriteProcessMemory’s Hidden Page Flip
════════════════════════
𐀪 Author: Tom O'Neill
════════════════════════
ⴵ Time: Sun, 21 Jun 2026 22:15:43 GMT
════════════════════════
⌗ Tags: #malware #windows_internals #ethical_hacking #cybersecurity #windows
════════════════════════
𐀪 Author: Tom O'Neill
════════════════════════
ⴵ Time: Sun, 21 Jun 2026 22:15:43 GMT
════════════════════════
⌗ Tags: #malware #windows_internals #ethical_hacking #cybersecurity #windows
Medium
The Single-Primitive Write: WriteProcessMemory’s Hidden Page Flip
Documenting Undocumented WriteProcessMemory Behavior
⤷ Title: The Fallacy of the Valid Signature: Why Critical Transaction Flows Need More Than Cryptographic…
════════════════════════
𐀪 Author: Declerus Yves Kerbens
════════════════════════
ⴵ Time: Sun, 21 Jun 2026 21:56:55 GMT
════════════════════════
⌗ Tags: #pki #cryptography #appsec #certificate_pinning #api_security
════════════════════════
𐀪 Author: Declerus Yves Kerbens
════════════════════════
ⴵ Time: Sun, 21 Jun 2026 21:56:55 GMT
════════════════════════
⌗ Tags: #pki #cryptography #appsec #certificate_pinning #api_security
Medium
The Fallacy of the Valid Signature: Why Critical Transaction Flows Need More Than Cryptographic…
Abstract
⤷ Title: ErrTraffic Malware Spreads ClickFix Lures via Hacked WordPress Sites
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Mon, 22 Jun 2026 01:26:58 +0000
════════════════════════
⌗ Tags: #Malware #ClickFix #CVE_2020_25213 #ErrTraffic #EtherHiding #Malware_as_a_Service #TDS #Vidar #wordpress
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Mon, 22 Jun 2026 01:26:58 +0000
════════════════════════
⌗ Tags: #Malware #ClickFix #CVE_2020_25213 #ErrTraffic #EtherHiding #Malware_as_a_Service #TDS #Vidar #wordpress
Daily CyberSecurity
ErrTraffic Malware Spreads ClickFix Lures via Hacked WordPress Sites
ErrTraffic malware powers ClickFix attacks on hacked WordPress sites, using EtherHiding on the blockchain to hide its C2 and spread infostealers.
⤷ Title: Avo Flaw CVE-2026-55518 Enables Privilege Escalation in Rails Apps
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Mon, 22 Jun 2026 01:11:11 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #admin panel #Authorization Bypass #Avo #CVE_2026_55518 #Missing Authorization #privilege escalation #Rails Security #ruby on rails
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Mon, 22 Jun 2026 01:11:11 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #admin panel #Authorization Bypass #Avo #CVE_2026_55518 #Missing Authorization #privilege escalation #Rails Security #ruby on rails
Daily CyberSecurity
Avo Flaw CVE-2026-55518 Enables Privilege Escalation in Rails Apps
CVE-2026-55518 is a critical Avo authorization bypass flaw enabling privilege escalation in Ruby on Rails admin panels. Update to Avo 3.32.1 now.
⤷ Title: Three Critical pgAdmin 4 Vulnerabilities Patched: XSS, Auth Bypass, and AI Assistant SQLi
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Mon, 22 Jun 2026 00:30:32 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2026_12045 #CVE_2026_12046 #CVE_2026_12048 #pgAdmin #pgAdmin 4 vulnerabilities #PostgreSQL #Prompt injection #Stored XSS
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Mon, 22 Jun 2026 00:30:32 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2026_12045 #CVE_2026_12046 #CVE_2026_12048 #pgAdmin #pgAdmin 4 vulnerabilities #PostgreSQL #Prompt injection #Stored XSS
Daily CyberSecurity
Three Critical pgAdmin 4 Vulnerabilities Patched: XSS, Auth Bypass, and AI Assistant SQLi
Three critical pgAdmin 4 vulnerabilities (CVE-2026-12046, CVE-2026-12048, CVE-2026-12045) risk XSS and RCE. Update to pgAdmin 4 9.16 now.
⤷ Title: Public Exploit Released for FreeBSD kTLS Local Root Flaw CVE-2026-45257
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Mon, 22 Jun 2026 00:00:56 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2026_45257 #freebsd #Kernel TLS #kTLS #Local Privilege Escalation #Local Root #proof_of_concept #sendfile
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Mon, 22 Jun 2026 00:00:56 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2026_45257 #freebsd #Kernel TLS #kTLS #Local Privilege Escalation #Local Root #proof_of_concept #sendfile
Daily CyberSecurity
Public Exploit Released for FreeBSD kTLS Local Root Flaw CVE-2026-45257
A public PoC exploit for the FreeBSD kTLS vulnerability (CVE-2026-45257) enables local privilege escalation to root. Patch your FreeBSD systems now.
⤷ Title: DragonForce Hides Backdoor C2 Inside Microsoft Teams TURN Relays
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Mon, 22 Jun 2026 03:30:15 +0000
════════════════════════
⌗ Tags: #Malware #Backdoor.Turn #BYOVD #DragonForce #Hackledorb #Microsoft Teams #QUIC #ransomware #TURN Relay
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Mon, 22 Jun 2026 03:30:15 +0000
════════════════════════
⌗ Tags: #Malware #Backdoor.Turn #BYOVD #DragonForce #Hackledorb #Microsoft Teams #QUIC #ransomware #TURN Relay
Daily CyberSecurity
DragonForce Hides Backdoor C2 Inside Microsoft Teams TURN Relays
DragonForce ransomware deployed Backdoor.Turn, a Microsoft Teams backdoor that hides C2 in Teams TURN relays. Symantec details the novel technique.
⤷ Title: 2,060 New CVEs and 4 Actively Exploited Flaws (June 15-21, 2026)
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Mon, 22 Jun 2026 03:13:03 +0000
════════════════════════
⌗ Tags: #Weekly Recap #Actively Exploited #CISA KEV #CVE #LiteSpeed #Oracle #Splunk #Vulnerability Roundup #Weekly CVE Report
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Mon, 22 Jun 2026 03:13:03 +0000
════════════════════════
⌗ Tags: #Weekly Recap #Actively Exploited #CISA KEV #CVE #LiteSpeed #Oracle #Splunk #Vulnerability Roundup #Weekly CVE Report
Daily CyberSecurity
2,060 New CVEs and 4 Actively Exploited Flaws (June 15-21, 2026)
This weekly CVE report covers 2,060 new vulnerabilities from June 15-21, including 358 critical flaws and 4 actively exploited CVEs now in CISA KEV.
⤷ Title: Four undici Vulnerabilities Affect a Package With 133M Weekly Downloads
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Mon, 22 Jun 2026 02:00:04 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2026_6734 #CVE_2026_9697 #nodejs #npm #SOCKS5 #TLS Bypass #undici #WebSocket
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Mon, 22 Jun 2026 02:00:04 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2026_6734 #CVE_2026_9697 #nodejs #npm #SOCKS5 #TLS Bypass #undici #WebSocket
Daily CyberSecurity
Four undici Vulnerabilities Affect a Package With 133M Weekly Downloads
Four undici vulnerabilities (CVE-2026-6734, CVE-2026-9697) affect the Node.js HTTP client, which sees 133M weekly downloads. Update undici now.