⤷ Title: SSRF to Full Cloud Compromise: A Methodology Breakdown
════════════════════════
𐀪 Author: Chirag Goel
════════════════════════
ⴵ Time: Mon, 06 Jul 2026 17:58:02 GMT
════════════════════════
⌗ Tags: #cybersecurity #technology #hacking #information_security #penetration_testing
════════════════════════
𐀪 Author: Chirag Goel
════════════════════════
ⴵ Time: Mon, 06 Jul 2026 17:58:02 GMT
════════════════════════
⌗ Tags: #cybersecurity #technology #hacking #information_security #penetration_testing
Medium
SSRF to Full Cloud Compromise: A Methodology Breakdown
A companion piece to “They Said Our Health Matters. My Privacy Didn’t.” This one is for the security crowd. No target, no identifiers, just…
⤷ Title: Meet SEPTA: the AI hacker that knows what it doesn’t know
════════════════════════
𐀪 Author: Rui Fernandes
════════════════════════
ⴵ Time: Mon, 06 Jul 2026 17:01:03 GMT
════════════════════════
⌗ Tags: #large_language_models #cybersecurity #artificial_intelligence #penetration_testing #offensive_security
════════════════════════
𐀪 Author: Rui Fernandes
════════════════════════
ⴵ Time: Mon, 06 Jul 2026 17:01:03 GMT
════════════════════════
⌗ Tags: #large_language_models #cybersecurity #artificial_intelligence #penetration_testing #offensive_security
Medium
Meet SEPTA: the AI hacker that knows what it doesn’t know
Large Language Models have basically become the new intern on every cybersecurity team, fast, eager, surprisingly capable… and now and…
⤷ Title: TryHackMe Writeup: Frosteau Busy with Vim
════════════════════════
𐀪 Author: Berkay AĞGÜL
════════════════════════
ⴵ Time: Mon, 06 Jul 2026 17:09:32 GMT
════════════════════════
⌗ Tags: #cybersecurity #tryhackme_writeup #tryhackme #tryhackme_walkthrough #cybercrime
════════════════════════
𐀪 Author: Berkay AĞGÜL
════════════════════════
ⴵ Time: Mon, 06 Jul 2026 17:09:32 GMT
════════════════════════
⌗ Tags: #cybersecurity #tryhackme_writeup #tryhackme #tryhackme_walkthrough #cybercrime
⤷ Title: Overpass {1,2,3} — Tryhackme Walkup
════════════════════════
𐀪 Author: S Aryan Malto
════════════════════════
ⴵ Time: Mon, 06 Jul 2026 16:33:28 GMT
════════════════════════
⌗ Tags: #tryhackme_walkthrough #overpass3 #overpass1 #tryhackme #overpass2
════════════════════════
𐀪 Author: S Aryan Malto
════════════════════════
ⴵ Time: Mon, 06 Jul 2026 16:33:28 GMT
════════════════════════
⌗ Tags: #tryhackme_walkthrough #overpass3 #overpass1 #tryhackme #overpass2
Medium
Overpass {1,2,3} — Tryhackme Walkup
Overpass THM
⤷ Title: {Ra & Ra 2} — TryHackMe Walkthrough
════════════════════════
𐀪 Author: S Aryan Malto
════════════════════════
ⴵ Time: Mon, 06 Jul 2026 16:04:32 GMT
════════════════════════
⌗ Tags: #ra2_tryhackme #ra_tryhackme #tryhackme #tryhackme_walkthrough #tryhackme_writeup
════════════════════════
𐀪 Author: S Aryan Malto
════════════════════════
ⴵ Time: Mon, 06 Jul 2026 16:04:32 GMT
════════════════════════
⌗ Tags: #ra2_tryhackme #ra_tryhackme #tryhackme #tryhackme_walkthrough #tryhackme_writeup
Medium
{Ra & Ra 2} — TryHackMe Walkthrough
TL;DR Walkthrough to the TryHackMe Ra practice VM, including a few things I didn’t see on the linked write-ups.
⤷ Title: Fools Mate Pair
════════════════════════
𐀪 Author: Domon
════════════════════════
ⴵ Time: Mon, 06 Jul 2026 16:01:02 GMT
════════════════════════
⌗ Tags: #capture_the_flag #ctf_writeup #cybersecurity #tryhackme
════════════════════════
𐀪 Author: Domon
════════════════════════
ⴵ Time: Mon, 06 Jul 2026 16:01:02 GMT
════════════════════════
⌗ Tags: #capture_the_flag #ctf_writeup #cybersecurity #tryhackme
Medium
Fools Mate Pair
Two new Capture-the-Flag rooms, the Fools Mate and its sequel Fools Mate, Revenge.
⤷ Title: Beginning My 100-Day Cybersecurity Journey: A Practical Blue Team & SOC Learning Series
════════════════════════
𐀪 Author: SIAM AHMED
════════════════════════
ⴵ Time: Mon, 06 Jul 2026 17:37:23 GMT
════════════════════════
⌗ Tags: #cybersecurity #ethical_hacking #blue_team #soc_analyst #learning
════════════════════════
𐀪 Author: SIAM AHMED
════════════════════════
ⴵ Time: Mon, 06 Jul 2026 17:37:23 GMT
════════════════════════
⌗ Tags: #cybersecurity #ethical_hacking #blue_team #soc_analyst #learning
Medium
Beginning My 100-Day Cybersecurity Journey: A Practical Blue Team & SOC Learning Series
Cybersecurity is a field where learning never stops. Every day brings new attack techniques, new defensive strategies, and new technologies…
⤷ Title: How an Exposed .git Directory Left a Scientific Observatory Vulnerable
════════════════════════
𐀪 Author: Novahunter
════════════════════════
ⴵ Time: Mon, 06 Jul 2026 06:26:50 GMT
════════════════════════
⌗ Tags: #bug_bounty_writeup #ethical_hacking #cybersecurity #information_security #web_application_security
════════════════════════
𐀪 Author: Novahunter
════════════════════════
ⴵ Time: Mon, 06 Jul 2026 06:26:50 GMT
════════════════════════
⌗ Tags: #bug_bounty_writeup #ethical_hacking #cybersecurity #information_security #web_application_security
Medium
How an Exposed .git Directory Left a Scientific Observatory Vulnerable
Introduction 🔍
⤷ Title: Iran-Linked Hackers Use New Cavern C2 Framework to Target Israeli Organizations
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Tue, 07 Jul 2026 00:04:26 +0530
════════════════════════
⌗ Tags: No_Tags
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Tue, 07 Jul 2026 00:04:26 +0530
════════════════════════
⌗ Tags: No_Tags
⤷ Title: 16-Year-Old Linux KVM Flaw Lets Guest VMs Escape to Host on Intel and AMD x86 Systems
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Mon, 06 Jul 2026 23:07:01 +0530
════════════════════════
⌗ Tags: No_Tags
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Mon, 06 Jul 2026 23:07:01 +0530
════════════════════════
⌗ Tags: No_Tags
⤷ Title: How a Missing Rate Limit Could Have Flooded an Entire Support System
════════════════════════
𐀪 Author: Ilianothingg
════════════════════════
ⴵ Time: Mon, 06 Jul 2026 19:15:14 GMT
════════════════════════
⌗ Tags: #bug_bounty
════════════════════════
𐀪 Author: Ilianothingg
════════════════════════
ⴵ Time: Mon, 06 Jul 2026 19:15:14 GMT
════════════════════════
⌗ Tags: #bug_bounty
Medium
How a Missing Rate Limit Could Have Flooded an Entire Support System
Responsible Disclosure: This vulnerability was responsibly disclosed, fixed by the vendor, and published only after receiving disclosure…
⤷ Title: Finding a Stored XSS in a Support Ticket System: A Responsible Disclosure Story
════════════════════════
𐀪 Author: Ilianothingg
════════════════════════
ⴵ Time: Mon, 06 Jul 2026 19:08:55 GMT
════════════════════════
⌗ Tags: #bug_bounty
════════════════════════
𐀪 Author: Ilianothingg
════════════════════════
ⴵ Time: Mon, 06 Jul 2026 19:08:55 GMT
════════════════════════
⌗ Tags: #bug_bounty
Medium
Finding a Stored XSS in a Support Ticket System: A Responsible Disclosure Story
Responsible Disclosure Notice: The vulnerability described in this article was responsibly reported, verified, and remediated before…
⤷ Title: Introducing the Secure Code Review Challenge (Practice Real-World Reviews)
════════════════════════
𐀪 Author: Mohamed AboElKheir
════════════════════════
ⴵ Time: Mon, 06 Jul 2026 18:53:09 GMT
════════════════════════
⌗ Tags: #cybersecurity #code_review #software_development #application_security
════════════════════════
𐀪 Author: Mohamed AboElKheir
════════════════════════
ⴵ Time: Mon, 06 Jul 2026 18:53:09 GMT
════════════════════════
⌗ Tags: #cybersecurity #code_review #software_development #application_security
Medium
Introducing the Secure Code Review Challenge (Practice Real-World Reviews)
📢 I have some exciting news: I’m launching a new series called the Secure Code Review Challenge. Check out the video version of this story…
⤷ Title: PENTESTING CON AGENTES DE IA
════════════════════════
𐀪 Author: Adrian Romanov
════════════════════════
ⴵ Time: Mon, 06 Jul 2026 19:10:13 GMT
════════════════════════
⌗ Tags: #cybercrime #hacking #pentesting #artificial_intelligence #ai
════════════════════════
𐀪 Author: Adrian Romanov
════════════════════════
ⴵ Time: Mon, 06 Jul 2026 19:10:13 GMT
════════════════════════
⌗ Tags: #cybercrime #hacking #pentesting #artificial_intelligence #ai
Medium
PENTESTING CON AGENTES DE IA
Hola Comunidad.
⤷ Title: Fractal Reconnaissance in Pentesting: Extracting Signal from Network Randomness
════════════════════════
𐀪 Author: AYA
════════════════════════
ⴵ Time: Mon, 06 Jul 2026 19:03:10 GMT
════════════════════════
⌗ Tags: #reconnaissance #penetration_testing #cybersecurity
════════════════════════
𐀪 Author: AYA
════════════════════════
ⴵ Time: Mon, 06 Jul 2026 19:03:10 GMT
════════════════════════
⌗ Tags: #reconnaissance #penetration_testing #cybersecurity
Medium
Fractal Reconnaissance in Pentesting: Extracting Signal from Network Randomness
The mistake the amateur do is they approaches reconnaissance like a linear process. Handed a /16 subnet or a wildcard domain, they load…
⤷ Title: Linux Shells — TryHackMe Answers | by Deepti Gupta
════════════════════════
𐀪 Author: Deepti Gupta
════════════════════════
ⴵ Time: Mon, 06 Jul 2026 19:29:22 GMT
════════════════════════
⌗ Tags: #linux #tryhackme_walkthrough #shell #tryhackme #tryhackme_writeup
════════════════════════
𐀪 Author: Deepti Gupta
════════════════════════
ⴵ Time: Mon, 06 Jul 2026 19:29:22 GMT
════════════════════════
⌗ Tags: #linux #tryhackme_walkthrough #shell #tryhackme #tryhackme_writeup
Medium
Linux Shells — TryHackMe Answers | by Deepti Gupta
Platform: TryHackMe
⤷ Title: Hook Chains (how I built Crystal Kit incorrectly*)
════════════════════════
𐀪 Author: Rasta Mouse
════════════════════════
ⴵ Time: Mon, 06 Jul 2026 20:29:30 GMT
════════════════════════
⌗ Tags: #crystal_palace
════════════════════════
𐀪 Author: Rasta Mouse
════════════════════════
ⴵ Time: Mon, 06 Jul 2026 20:29:30 GMT
════════════════════════
⌗ Tags: #crystal_palace
Rasta Mouse
Hook Chains (how I built Crystal Kit incorrectly*)
Despite what some would lead you to believe, Crystal Kit is not, and was never intended to be, an all-encompassing nirvana of evasion tradecraft. It was a simple project to experiment with Crystal Palace (CPL) by applying evasion tradecraft to Cobalt Strike's…
⤷ Title: How I Bypassed Mandatory 2FA Three Ways on a multi tenant SaaS Platform (~$1,125)
════════════════════════
𐀪 Author: Gautam Sharma
════════════════════════
ⴵ Time: Mon, 06 Jul 2026 20:58:13 GMT
════════════════════════
⌗ Tags: #bug_bounty_writeup #bug_bounty #bug_bounty_tips #penetration_testing #cybersecurity
════════════════════════
𐀪 Author: Gautam Sharma
════════════════════════
ⴵ Time: Mon, 06 Jul 2026 20:58:13 GMT
════════════════════════
⌗ Tags: #bug_bounty_writeup #bug_bounty #bug_bounty_tips #penetration_testing #cybersecurity
Medium
How I Bypassed Mandatory 2FA Three Ways on a multi tenant SaaS Platform (~$1,125)
How I Bypassed Mandatory 2FA Three Ways on One SaaS Platform (~$1,125) Redacted writeup. Program and target withheld per disclosure policy; endpoints and values below are illustrative. The platform …
⤷ Title: When Changing an Email Isn’t Enough: Discovering a Persistent Account Takeover and Session Leakage…
════════════════════════
𐀪 Author: Zyadatef
════════════════════════
ⴵ Time: Mon, 06 Jul 2026 20:12:41 GMT
════════════════════════
⌗ Tags: #hacker #cybersecurity #hackerone #penetration_testing #bug_bounty
════════════════════════
𐀪 Author: Zyadatef
════════════════════════
ⴵ Time: Mon, 06 Jul 2026 20:12:41 GMT
════════════════════════
⌗ Tags: #hacker #cybersecurity #hackerone #penetration_testing #bug_bounty
Medium
When Changing an Email Isn’t Enough: Discovering a Persistent Account Takeover and Session Leakage…
Introduction
⤷ Title: We Audited Our Own Security Tool Before Asking Anyone Else to Trust It
════════════════════════
𐀪 Author: Ankit Das
════════════════════════
ⴵ Time: Mon, 06 Jul 2026 20:19:09 GMT
════════════════════════
⌗ Tags: #building_in_public #startup #cybersecurity #software_engineering #application_security
════════════════════════
𐀪 Author: Ankit Das
════════════════════════
ⴵ Time: Mon, 06 Jul 2026 20:19:09 GMT
════════════════════════
⌗ Tags: #building_in_public #startup #cybersecurity #software_engineering #application_security
Medium
We Audited Our Own Security Tool Before Asking Anyone Else to Trust It
Found two P0 bugs in our own code last week. Here’s what that process looked like, what’s still not done, and why I think building AppSec…
⤷ Title: Stop Blocking Domains. Here’s How to Actually Protect Yourself.
════════════════════════
𐀪 Author: Pop123
════════════════════════
ⴵ Time: Mon, 06 Jul 2026 21:15:38 GMT
════════════════════════
⌗ Tags: #technology #hacking #cybersecurity #data_protection #domains
════════════════════════
𐀪 Author: Pop123
════════════════════════
ⴵ Time: Mon, 06 Jul 2026 21:15:38 GMT
════════════════════════
⌗ Tags: #technology #hacking #cybersecurity #data_protection #domains
Medium
Stop Blocking Domains. Here’s How to Actually Protect Yourself.
The old defense of blocking known malicious domains is easily bypassed. Learn why — and the new strategies you need now.