⤷ Title: Roundcube 1.7.2 Patches Zero-Click Stored XSS CVE-2026-54433
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Thu, 09 Jul 2026 15:00:45 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2026_54432 #CVE_2026_54433 #Roundcube #Roundcube Webmail #ssrf #Stored XSS #Webmail Security #Zero_Click XSS
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Thu, 09 Jul 2026 15:00:45 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2026_54432 #CVE_2026_54433 #Roundcube #Roundcube Webmail #ssrf #Stored XSS #Webmail Security #Zero_Click XSS
Daily CyberSecurity
Roundcube 1.7.2 Patches Zero-Click Stored XSS CVE-2026-54433
TL;DR Roundcube shipped versions 1.7.2 and 1.6.17 to fix six security bugs. The headline flaw is a Roundcube zero-click XSS, tracked as CVE-2026-54433, in plain-text message rendering. The update …
⤷ Title: Apache Lucene.NET Vulnerability Trio Fixed in Beta 18
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Thu, 09 Jul 2026 14:33:43 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Apache Lucene.NET #CVE_2026_47896 #CVE_2026_47897 #CVE_2026_47898 #Lucene.Net.Replicator #Path Traversal #xxe
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Thu, 09 Jul 2026 14:33:43 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Apache Lucene.NET #CVE_2026_47896 #CVE_2026_47897 #CVE_2026_47898 #Lucene.Net.Replicator #Path Traversal #xxe
Daily CyberSecurity
Apache Lucene.NET Vulnerability Trio Fixed in Beta 18
The Apache project patched three Apache Lucene.NET vulnerability issues in the 4.8.0-beta00018 release. Two of the flaws carry a high CVSS score of 8.9. Both live inside the Lucene.Net.Replicator …
⤷ Title: Feast Feature Server Flaw Lets Unauthenticated Attackers Write Files
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Thu, 09 Jul 2026 13:33:40 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Arbitrary File Write #CVE_2026_23537 #Feast #Feature Store #machine_learning #rce #unauthenticated
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Thu, 09 Jul 2026 13:33:40 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Arbitrary File Write #CVE_2026_23537 #Feast #Feature Store #machine_learning #rce #unauthenticated
Daily CyberSecurity
Feast Feature Server Flaw Lets Unauthenticated Attackers Write Files
A critical flaw in the Feast Feature Server carries a CVSS score of 9.1. The bug, tracked as CVE-2026-23537, sits in the /save-document endpoint. It lets an unauthenticated attacker write arbitrar…
⤷ Title: OPNsense Root RCE Flaw CVE-2026-57155 (CVSS 9.9): Details and PoC Publicly Disclosed
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Thu, 09 Jul 2026 13:05:38 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Arbitrary File Write #CVE_2026_57154 #CVE_2026_57155 #CVE_2026_58390 #firewall security #OPNsense #Root RCE #Stored XSS
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Thu, 09 Jul 2026 13:05:38 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Arbitrary File Write #CVE_2026_57154 #CVE_2026_57155 #CVE_2026_58390 #firewall security #OPNsense #Root RCE #Stored XSS
Daily CyberSecurity
OPNsense Root RCE Flaw CVE-2026-57155 (CVSS 9.9): Details and PoC Publicly Disclosed
TL;DR A researcher from Hacking Cult published full technical details and proof-of-concept code for three OPNsense firewall flaws. The worst, CVE-2026-57155 (CVSS 9.9), escalates a low-privileged …
⤷ Title: Linux Kernel Privilege Escalation Flaw CVE-2026-46215: PoC and Full Write-Up Public
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Thu, 09 Jul 2026 12:33:38 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2026_46215 #DRM #Linux Kernel #privilege escalation #use after free
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Thu, 09 Jul 2026 12:33:38 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2026_46215 #DRM #Linux Kernel #privilege escalation #use after free
Daily CyberSecurity
Linux Kernel Privilege Escalation Flaw CVE-2026-46215: PoC and Full Write-Up Public
TL;DR A researcher has published a full technical write-up and proof-of-concept exploit for a Linux kernel privilege escalation flaw. Tracked as CVE-2026-46215 (CVSS 7.8), it is a use-after-free i…
⤷ Title: MOVEit Transfer Fixes Stored XSS and Two Other Vulnerabilities
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Thu, 09 Jul 2026 11:29:50 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Cross_Site Scripting #CVE_2026_10698 #CVE_2026_10699 #CVE_2026_11903 #Denial of Service #MOVEit Transfer #Progress Software #Stored XSS
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Thu, 09 Jul 2026 11:29:50 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Cross_Site Scripting #CVE_2026_10698 #CVE_2026_10699 #CVE_2026_11903 #Denial of Service #MOVEit Transfer #Progress Software #Stored XSS
Daily CyberSecurity
MOVEit Transfer Fixes Stored XSS and Two Other Vulnerabilities
TL;DR Progress released a MOVEit Transfer security bulletin on July 8, 2026. It fixes three flaws, and the top one is a stored XSS bug, CVE-2026-11903, rated CVSS 8.0. None of the three is a pre-a…
⤷ Title: BUG-BOUNTY SERIES 18: Directory Traversal.
════════════════════════
𐀪 Author: Krisna Wahyu Andriawan
════════════════════════
ⴵ Time: Fri, 10 Jul 2026 02:39:51 GMT
════════════════════════
⌗ Tags: #linux #hacking #bug_bounty
════════════════════════
𐀪 Author: Krisna Wahyu Andriawan
════════════════════════
ⴵ Time: Fri, 10 Jul 2026 02:39:51 GMT
════════════════════════
⌗ Tags: #linux #hacking #bug_bounty
Medium
BUG-BOUNTY SERIES 18: Directory Traversal. Eksploitasi Manipulasi Path untuk Mengakses File di Luar Boundary Sistem
Directory Traversal merupakan salah satu vulnerability fundamental yang berakar pada kesalahan dalam pengelolaan path file dan kontrol…
⤷ Title: BUG-BOUNTY SERIES 17: Broken Authentication.
════════════════════════
𐀪 Author: Krisna Wahyu Andriawan
════════════════════════
ⴵ Time: Fri, 10 Jul 2026 02:33:57 GMT
════════════════════════
⌗ Tags: #bug_bounty #hacking #linux
════════════════════════
𐀪 Author: Krisna Wahyu Andriawan
════════════════════════
ⴵ Time: Fri, 10 Jul 2026 02:33:57 GMT
════════════════════════
⌗ Tags: #bug_bounty #hacking #linux
Medium
BUG-BOUNTY SERIES 17: Broken Authentication. Analisis Kegagalan Mekanisme Identitas dan Manajemen Session
Dalam arsitektur keamanan aplikasi, autentikasi berfungsi sebagai lapisan pertama yang menentukan identitas pengguna. Namun, dalam praktik…
⤷ Title: How Alibaba Allegedly Used a Distillation Attack to Copy Anthropic’s Claude Core Capabilities
════════════════════════
𐀪 Author: David SEHYEON Baek
════════════════════════
ⴵ Time: Fri, 10 Jul 2026 02:41:25 GMT
════════════════════════
⌗ Tags: #artificial_intelligence #ai #hacking #cybersecurity #claude
════════════════════════
𐀪 Author: David SEHYEON Baek
════════════════════════
ⴵ Time: Fri, 10 Jul 2026 02:41:25 GMT
════════════════════════
⌗ Tags: #artificial_intelligence #ai #hacking #cybersecurity #claude
Medium
How Alibaba Allegedly Used a Distillation Attack to Copy Anthropic’s Claude Core Capabilities
“” is published by David SEHYEON Baek.
⤷ Title: যেকোনো কিছু নিজে নিজে শেখার উপায় (যখন আপনি কিছুই জানেন না)
════════════════════════
𐀪 Author: Fahad Ahmad
════════════════════════
ⴵ Time: Fri, 10 Jul 2026 02:50:38 GMT
════════════════════════
⌗ Tags: #cybersecurity #career_advice #education #ethical_hacking #learning
════════════════════════
𐀪 Author: Fahad Ahmad
════════════════════════
ⴵ Time: Fri, 10 Jul 2026 02:50:38 GMT
════════════════════════
⌗ Tags: #cybersecurity #career_advice #education #ethical_hacking #learning
Medium
যেকোনো কিছু নিজে নিজে শেখার উপায় (যখন আপনি কিছুই জানেন না)
ছোটবেলা থেকেই আমার একটা বড় জেদ ছিল — কারো অধীনে চাকরি নয়, বরং নিজের একটা কিছু তৈরি করা। ব্যবসায় নামার স্বপ্ন ছিল আমার অস্তিত্বের সাথে মিশে…
⤷ Title: I Attacked a Vulnerable Web App and Then Fixed It — A Security Engineer’s Approach to OWASP Top 10
════════════════════════
𐀪 Author: Houston Jones
════════════════════════
ⴵ Time: Fri, 10 Jul 2026 03:06:06 GMT
════════════════════════
⌗ Tags: #security_engineering #dvwa #sql_injection #cross_site_scripting #kali_linux
════════════════════════
𐀪 Author: Houston Jones
════════════════════════
ⴵ Time: Fri, 10 Jul 2026 03:06:06 GMT
════════════════════════
⌗ Tags: #security_engineering #dvwa #sql_injection #cross_site_scripting #kali_linux
Medium
I Attacked a Vulnerable Web App and Then Fixed It — A Security Engineer’s Approach to OWASP Top 10
SQL Injection and Cross-Site Scripting: attack, analyze, and remediate.
⤷ Title: Building My First Custom PCB:
════════════════════════
𐀪 Author: Satyam Pathania
════════════════════════
ⴵ Time: Fri, 10 Jul 2026 05:46:00 GMT
════════════════════════
⌗ Tags: #technology #hardware_hacking #cybersecurity #pcbway #hacking
════════════════════════
𐀪 Author: Satyam Pathania
════════════════════════
ⴵ Time: Fri, 10 Jul 2026 05:46:00 GMT
════════════════════════
⌗ Tags: #technology #hardware_hacking #cybersecurity #pcbway #hacking
Medium
Building My First Custom PCB:
A Cybersecurity Researcher’s Journey from Breadboards to Real Hardware
⤷ Title: Cybersecurity Tools বাংলা সিরিজ — আসুন শিখি Cybersecurity
════════════════════════
𐀪 Author: Boni Yeamin
════════════════════════
ⴵ Time: Fri, 10 Jul 2026 04:47:16 GMT
════════════════════════
⌗ Tags: #cybersecurity #infosec
════════════════════════
𐀪 Author: Boni Yeamin
════════════════════════
ⴵ Time: Fri, 10 Jul 2026 04:47:16 GMT
════════════════════════
⌗ Tags: #cybersecurity #infosec
Medium
Cybersecurity Tools বাংলা সিরিজ — আসুন শিখি Cybersecurity
অনেক দিন ধরেই ভাবছিলাম সাইবার সিকিউরিটি নিয়ে বাংলায় নিয়মিত কিছু লিখব। কারণ আজও বাংলা ভাষায় মানসম্মত Cybersecurity রিসোর্স তুলনামূলকভাবে…
⤷ Title: CERT-In VAPT Services in India: Secure Your Business
════════════════════════
𐀪 Author: Innovations Arm
════════════════════════
ⴵ Time: Fri, 10 Jul 2026 05:39:56 GMT
════════════════════════
⌗ Tags: #vulnerability_assessment #information_security #cybersecurity #compliance #penetration_testing
════════════════════════
𐀪 Author: Innovations Arm
════════════════════════
ⴵ Time: Fri, 10 Jul 2026 05:39:56 GMT
════════════════════════
⌗ Tags: #vulnerability_assessment #information_security #cybersecurity #compliance #penetration_testing
Medium
CERT-In VAPT Services in India: Secure Your Business
Introduction
⤷ Title: Alert Triage with Elastic — TryHackMe Write-Up
════════════════════════
𐀪 Author: Darshan
════════════════════════
ⴵ Time: Fri, 10 Jul 2026 05:42:49 GMT
════════════════════════
⌗ Tags: #cybersecurity #soc #tryhackme
════════════════════════
𐀪 Author: Darshan
════════════════════════
ⴵ Time: Fri, 10 Jul 2026 05:42:49 GMT
════════════════════════
⌗ Tags: #cybersecurity #soc #tryhackme
Medium
Alert Triage with Elastic — TryHackMe Write-Up
Task 1 — Introduction
⤷ Title: Alert Triage with Splunk — TryHackMe Write-Up
════════════════════════
𐀪 Author: Darshan
════════════════════════
ⴵ Time: Fri, 10 Jul 2026 05:41:58 GMT
════════════════════════
⌗ Tags: #tryhackme #cybersecurity #soc
════════════════════════
𐀪 Author: Darshan
════════════════════════
ⴵ Time: Fri, 10 Jul 2026 05:41:58 GMT
════════════════════════
⌗ Tags: #tryhackme #cybersecurity #soc
Medium
Alert Triage with Splunk — TryHackMe Write-Up
Task 1 — Introduction
⤷ Title: Breaking into Red Teaming: A Beginner’s Honest Roadmap to Offensive Security
════════════════════════
𐀪 Author: @krittikasarkar
════════════════════════
ⴵ Time: Fri, 10 Jul 2026 05:09:35 GMT
════════════════════════
⌗ Tags: #cybersecurity #roadmapping #offensive_security #red_team #ethical_hacking
════════════════════════
𐀪 Author: @krittikasarkar
════════════════════════
ⴵ Time: Fri, 10 Jul 2026 05:09:35 GMT
════════════════════════
⌗ Tags: #cybersecurity #roadmapping #offensive_security #red_team #ethical_hacking
Medium
Breaking into Red Teaming: A Beginner’s Honest Roadmap to Offensive Security
A few months ago, “Red Teaming” was just a buzzword I kept seeing in cybersecurity job postings and LinkedIn posts. People talked about it…
⤷ Title: Adobe ColdFusion Critical Vulnerabilities Patched
════════════════════════
𐀪 Author: Nam Phong
════════════════════════
ⴵ Time: Fri, 10 Jul 2026 07:59:04 +0000
════════════════════════
⌗ Tags: #Vulnerability #Adobe ColdFusion #CVE_2026_48282 #cybersecurity #vulnerability
════════════════════════
𐀪 Author: Nam Phong
════════════════════════
ⴵ Time: Fri, 10 Jul 2026 07:59:04 +0000
════════════════════════
⌗ Tags: #Vulnerability #Adobe ColdFusion #CVE_2026_48282 #cybersecurity #vulnerability
Information Security News
Adobe ColdFusion Critical Vulnerabilities Patched
In a recent update, Adobe patched a suite of dangerous vulnerabilities. Several of these flaws allowed attackers to execute code directly on the server. These severe problems affect Adobe ColdFusi…
⤷ Title: Advanced Vulnerabilities Part 1: Logic Bugs, Economic Attacks & MEV
════════════════════════
𐀪 Author: Hacker MD
════════════════════════
ⴵ Time: Fri, 10 Jul 2026 07:08:27 GMT
════════════════════════
⌗ Tags: #infosec #logicbugs #cybersecurity #web3 #bug_bounty
════════════════════════
𐀪 Author: Hacker MD
════════════════════════
ⴵ Time: Fri, 10 Jul 2026 07:08:27 GMT
════════════════════════
⌗ Tags: #infosec #logicbugs #cybersecurity #web3 #bug_bounty
Medium
Advanced Vulnerabilities Part 1: Logic Bugs, Economic Attacks & MEV
Series: Web3 Security Zero se Advance 🛡️ | Article #21 By HackerMD | 32 min read
⤷ Title: Why Login Pages Fail: The Small Authentication Mistakes That Become Big Security Problems
════════════════════════
𐀪 Author: Z3r0D4y
════════════════════════
ⴵ Time: Fri, 10 Jul 2026 06:46:01 GMT
════════════════════════
⌗ Tags: #information_technology #cybersecurity #bug_bounty #bug_hunting #information_security
════════════════════════
𐀪 Author: Z3r0D4y
════════════════════════
ⴵ Time: Fri, 10 Jul 2026 06:46:01 GMT
════════════════════════
⌗ Tags: #information_technology #cybersecurity #bug_bounty #bug_hunting #information_security
Medium
Why Login Pages Fail: The Small Authentication Mistakes That Become Big Security Problems
Every web application has one thing in common — a login page.
⤷ Title: AI Coding Assistants Are Changing Application Security: How Enterprises Can Secure AI-Generated…
════════════════════════
𐀪 Author: Akash
════════════════════════
ⴵ Time: Fri, 10 Jul 2026 06:32:45 GMT
════════════════════════
⌗ Tags: #application_security
════════════════════════
𐀪 Author: Akash
════════════════════════
ⴵ Time: Fri, 10 Jul 2026 06:32:45 GMT
════════════════════════
⌗ Tags: #application_security
Medium
AI Coding Assistants Are Changing Application Security: How Enterprises Can Secure AI-Generated Code
AI coding assistants have rapidly become part of the modern software development lifecycle. Developers are using tools powered by large…