⤷ Title: The Supply Chain Security Interview Question I Couldn’t Answer — Until I Started Thinking Like an…
════════════════════════
𐀪 Author: Vineet Singh
════════════════════════
ⴵ Time: Fri, 10 Jul 2026 20:31:18 GMT
════════════════════════
⌗ Tags: #information_security #enterprise_security #supply_chain_security #application_security #product_security
════════════════════════
𐀪 Author: Vineet Singh
════════════════════════
ⴵ Time: Fri, 10 Jul 2026 20:31:18 GMT
════════════════════════
⌗ Tags: #information_security #enterprise_security #supply_chain_security #application_security #product_security
Medium
The Supply Chain Security Interview Question I Couldn’t Answer — Until I Started Thinking Like an Enterprise Architect
How a 25-minute interview discussion completely changed the way I think about Supply Chain Security.
⤷ Title: TryHackMe: Support Walkthrough
════════════════════════
𐀪 Author: Farid Narimanov
════════════════════════
ⴵ Time: Fri, 10 Jul 2026 21:16:42 GMT
════════════════════════
⌗ Tags: #cybersecurity #tryhackme #tryhackme_walkthrough #ethical_hacking #penetration_testing
════════════════════════
𐀪 Author: Farid Narimanov
════════════════════════
ⴵ Time: Fri, 10 Jul 2026 21:16:42 GMT
════════════════════════
⌗ Tags: #cybersecurity #tryhackme #tryhackme_walkthrough #ethical_hacking #penetration_testing
Medium
TryHackMe: Support Walkthrough
Welcome to my writeup for the Support room on TryHackMe. This room is a fantastic playground for practicing fundamental web application…
⤷ Title: Phase One: Getting Situational Awareness Right
════════════════════════
𐀪 Author: Matthew Hennigan
════════════════════════
ⴵ Time: Fri, 10 Jul 2026 21:14:27 GMT
════════════════════════
⌗ Tags: #windows_security #cybersecurity #penetration_testing #active_directory #red_team
════════════════════════
𐀪 Author: Matthew Hennigan
════════════════════════
ⴵ Time: Fri, 10 Jul 2026 21:14:27 GMT
════════════════════════
⌗ Tags: #windows_security #cybersecurity #penetration_testing #active_directory #red_team
Medium
Phase One: Getting Situational Awareness Right
How Active Directory penetration tests should begin with environmental context.
⤷ Title: “screenshot” | CyberTalents | Bypass SSRF filters using PHP wrappers| Web Exploitation : Hard
════════════════════════
𐀪 Author: Dr_ro0t
════════════════════════
ⴵ Time: Fri, 10 Jul 2026 21:08:54 GMT
════════════════════════
⌗ Tags: #web_security #ctf_writeup #ssrf #cyber_talents
════════════════════════
𐀪 Author: Dr_ro0t
════════════════════════
ⴵ Time: Fri, 10 Jul 2026 21:08:54 GMT
════════════════════════
⌗ Tags: #web_security #ctf_writeup #ssrf #cyber_talents
Medium
“screenshot” | CyberTalents | Bypass SSRF filters using PHP wrappers| Web Exploitation : Hard
Exploiting SSRF vulnerability, bypassing hostname filters, and leaking source code using PHP wrappers to capture the flag.
⤷ Title: SQL Injection Is Not Dead: Why an Old Vulnerability Still Breaks Modern Applications
════════════════════════
𐀪 Author: Security Clarity
════════════════════════
ⴵ Time: Fri, 10 Jul 2026 21:18:56 GMT
════════════════════════
⌗ Tags: #information_security #sql_injection #vulnerability_management #cybersecurity
════════════════════════
𐀪 Author: Security Clarity
════════════════════════
ⴵ Time: Fri, 10 Jul 2026 21:18:56 GMT
════════════════════════
⌗ Tags: #information_security #sql_injection #vulnerability_management #cybersecurity
Medium
SQL Injection Is Not Dead: Why an Old Vulnerability Still Breaks Modern Applications
SQL injection is one of the oldest web application vulnerabilities.
⤷ Title: Reflected XSS into HTML context with most tags and attributes blocked
════════════════════════
𐀪 Author: zero_day
════════════════════════
ⴵ Time: Fri, 10 Jul 2026 23:26:18 GMT
════════════════════════
⌗ Tags: #xss_attack #burpsuite #bug_bounty #cybersecurity #penetration_testing
════════════════════════
𐀪 Author: zero_day
════════════════════════
ⴵ Time: Fri, 10 Jul 2026 23:26:18 GMT
════════════════════════
⌗ Tags: #xss_attack #burpsuite #bug_bounty #cybersecurity #penetration_testing
Medium
Reflected XSS into HTML context with most tags and attributes blocked
Hello hunters,
⤷ Title: Beyond Recon: My Personal Methodology for Hunting High-Impact Vulnerabilities in 2026
════════════════════════
𐀪 Author: Abd Elhakim
════════════════════════
ⴵ Time: Fri, 10 Jul 2026 23:06:19 GMT
════════════════════════
⌗ Tags: #bug_bounty #cybersecurity #web_security #methodology #ethical_hacking
════════════════════════
𐀪 Author: Abd Elhakim
════════════════════════
ⴵ Time: Fri, 10 Jul 2026 23:06:19 GMT
════════════════════════
⌗ Tags: #bug_bounty #cybersecurity #web_security #methodology #ethical_hacking
Medium
Beyond Recon: My Personal Methodology for Hunting High-Impact Vulnerabilities in 2026
introduction
⤷ Title: Your bug bounty session has too many windows open. Crusader wants to fix that.
════════════════════════
𐀪 Author: Crusader Security
════════════════════════
ⴵ Time: Fri, 10 Jul 2026 22:18:49 GMT
════════════════════════
⌗ Tags: #bug_bounty #information_security #pentesting #bug_bounty_tips #penetration_testing
════════════════════════
𐀪 Author: Crusader Security
════════════════════════
ⴵ Time: Fri, 10 Jul 2026 22:18:49 GMT
════════════════════════
⌗ Tags: #bug_bounty #information_security #pentesting #bug_bounty_tips #penetration_testing
Medium
Your bug bounty session has too many windows open. Crusader wants to fix that.
A first look at Crusader — a local-first web security proxy built for how people actually hunt in 2026.
⤷ Title: AD vs. Evasion: CAPE/OSEP and the Myth about them
════════════════════════
𐀪 Author: Zumi Yumi
════════════════════════
ⴵ Time: Fri, 10 Jul 2026 22:51:55 GMT
════════════════════════
⌗ Tags: #penetration_testing #osep #active_directory #hacking #av_evasion
════════════════════════
𐀪 Author: Zumi Yumi
════════════════════════
ⴵ Time: Fri, 10 Jul 2026 22:51:55 GMT
════════════════════════
⌗ Tags: #penetration_testing #osep #active_directory #hacking #av_evasion
Medium
AD vs. Evasion: CAPE/OSEP and the Myth about them
Helloooo once again readers, I had the opportunity to take the Certified Active Directory Pentesting Expert (CAPE) exam offered by…
⤷ Title: Dissecting RedLine Stealer: A Playbook Walkthrough of Malware Analysis Foundations
════════════════════════
𐀪 Author: Pop123
════════════════════════
ⴵ Time: Fri, 10 Jul 2026 22:48:43 GMT
════════════════════════
⌗ Tags: #technology #cybersecurity #tryhackme #malware_analysis #hacking
════════════════════════
𐀪 Author: Pop123
════════════════════════
ⴵ Time: Fri, 10 Jul 2026 22:48:43 GMT
════════════════════════
⌗ Tags: #technology #cybersecurity #tryhackme #malware_analysis #hacking
Medium
Dissecting RedLine Stealer: A Playbook Walkthrough of Malware Analysis Foundations
From entropy scores to PE headers — how to trace an information stealer’s hidden structures and dynamic footprints before execution.
⤷ Title: AI Threatens Defense. Offense Gets the Same Tools — With Rules
════════════════════════
𐀪 Author: Igor Nesterenko
════════════════════════
ⴵ Time: Fri, 10 Jul 2026 23:05:29 GMT
════════════════════════
⌗ Tags: #penetration_testing #artificial_intelligence #red_team #ai #cybersecurity
════════════════════════
𐀪 Author: Igor Nesterenko
════════════════════════
ⴵ Time: Fri, 10 Jul 2026 23:05:29 GMT
════════════════════════
⌗ Tags: #penetration_testing #artificial_intelligence #red_team #ai #cybersecurity
Medium
AI Threatens Defense. Offense Gets the Same Tools — With Rules
Most teams treat AI as a defensive crisis. Few examine what it does to authorised offense — and what happens if only adversaries…
⤷ Title: Apache IoTDB Fixes Path Traversal and Authentication Bypass Flaws (CVE-2026-24014)
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Sat, 11 Jul 2026 01:37:25 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Apache IoTDB #Arbitrary File Write #Authentication Bypass #CVE_2026_24012 #CVE_2026_24013 #CVE_2026_24014 #IoT security #Path Traversal
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Sat, 11 Jul 2026 01:37:25 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Apache IoTDB #Arbitrary File Write #Authentication Bypass #CVE_2026_24012 #CVE_2026_24013 #CVE_2026_24014 #IoT security #Path Traversal
Daily CyberSecurity
Apache IoTDB Fixes Path Traversal and Authentication Bypass Flaws (CVE-2026-24014)
TL;DR Apache IoTDB has patched three flaws in its time-series database. The worst is a critical path traversal bug, CVE-2026-24014, scored 9.8. A second flaw allows an authentication bypass, and a…
⤷ Title: Silver Fox Ghost Distributor Delivers MODBEACON Trojan to Chosen Targets
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Sat, 11 Jul 2026 01:28:22 +0000
════════════════════════
⌗ Tags: #Cyber Security #Ghost RAT #MODBEACON #Operation Phnom Penh #QiAnXin #Rust malware #Silver Fox #UTG_Q_1000 #ValleyRAT
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Sat, 11 Jul 2026 01:28:22 +0000
════════════════════════
⌗ Tags: #Cyber Security #Ghost RAT #MODBEACON #Operation Phnom Penh #QiAnXin #Rust malware #Silver Fox #UTG_Q_1000 #ValleyRAT
Daily CyberSecurity
Silver Fox Ghost Distributor Delivers MODBEACON Trojan to Chosen Targets
At a glance Actor A Silver Fox (UTG-Q-1000) Ghost distributor — assessed “hybrid threat actor” Activity SEO-poisoned fake installers deliver Ghost and the MODBEACON Rust trojan Targets…
⤷ Title: From Prompt to Shell: Exploiting Tool-Calling Agents via Indirect Injection
════════════════════════
𐀪 Author: Aleksa Zatezalo
════════════════════════
ⴵ Time: Sat, 11 Jul 2026 00:48:15 GMT
════════════════════════
⌗ Tags: #python #ai_agent #hacking
════════════════════════
𐀪 Author: Aleksa Zatezalo
════════════════════════
ⴵ Time: Sat, 11 Jul 2026 00:48:15 GMT
════════════════════════
⌗ Tags: #python #ai_agent #hacking
Medium
From Prompt to Shell: Exploiting Tool-Calling Agents via Indirect Injection
How PyHunter finds the taint path that turns a poisoned web page into id; whoami; echo PWNEDBYRESEARCHER
⤷ Title: Hacking Web Routers 101
════════════════════════
𐀪 Author: Aleksa Zatezalo
════════════════════════
ⴵ Time: Sat, 11 Jul 2026 00:19:22 GMT
════════════════════════
⌗ Tags: #python #glinet_router #hacking
════════════════════════
𐀪 Author: Aleksa Zatezalo
════════════════════════
ⴵ Time: Sat, 11 Jul 2026 00:19:22 GMT
════════════════════════
⌗ Tags: #python #glinet_router #hacking
Medium
Hacking Web Routers 101
How three zero-days in a travel router chained together into unauthenticated remote root — and what it says about the “privacy on the go”…
⤷ Title: VulnHub — Funbox: Under Construction! Walkthrough
════════════════════════
𐀪 Author: Antonio
════════════════════════
ⴵ Time: Sat, 11 Jul 2026 01:01:01 GMT
════════════════════════
⌗ Tags: #vulnhub #vulnhub_walkthrough #vulnhub_writeup
════════════════════════
𐀪 Author: Antonio
════════════════════════
ⴵ Time: Sat, 11 Jul 2026 01:01:01 GMT
════════════════════════
⌗ Tags: #vulnhub #vulnhub_walkthrough #vulnhub_writeup
Medium
VulnHub — Funbox: Under Construction! Walkthrough
Machine details
⤷ Title: ProtonVPN Stores Your Authentication Private Key in Plaintext — Proton Says It’s Intended Behavior
════════════════════════
𐀪 Author: Aaron Thomas
════════════════════════
ⴵ Time: Sat, 11 Jul 2026 03:43:52 GMT
════════════════════════
⌗ Tags: #cybersecurity #bug_bounty
════════════════════════
𐀪 Author: Aaron Thomas
════════════════════════
ⴵ Time: Sat, 11 Jul 2026 03:43:52 GMT
════════════════════════
⌗ Tags: #cybersecurity #bug_bounty
⤷ Title: SQL Injection: Listing Database Contents on Oracle | PortSwigger Web Security Academy Walkthrough
════════════════════════
𐀪 Author: Jinesh Majithia
════════════════════════
ⴵ Time: Sat, 11 Jul 2026 02:48:20 GMT
════════════════════════
⌗ Tags: #penetration_testing #portswigger_lab #cybersecurity #sql_injection #burpsuite
════════════════════════
𐀪 Author: Jinesh Majithia
════════════════════════
ⴵ Time: Sat, 11 Jul 2026 02:48:20 GMT
════════════════════════
⌗ Tags: #penetration_testing #portswigger_lab #cybersecurity #sql_injection #burpsuite
Medium
SQL Injection: Listing Database Contents on Oracle | PortSwigger Web Security Academy Walkthrough
As I continue my hands-on journey through the PortSwigger Web Security Academy, I completed another SQL Injection lab that focused on…
⤷ Title: Memburu Celah Keamanan di Situs Besar: Eksplorasi CVE-2021–41182 pada jQuery UI
════════════════════════
𐀪 Author: Abdulrhidayat
════════════════════════
ⴵ Time: Sat, 11 Jul 2026 03:37:30 GMT
════════════════════════
⌗ Tags: #cve_2021_41182 #jquery #xss_vulnerability
════════════════════════
𐀪 Author: Abdulrhidayat
════════════════════════
ⴵ Time: Sat, 11 Jul 2026 03:37:30 GMT
════════════════════════
⌗ Tags: #cve_2021_41182 #jquery #xss_vulnerability
Medium
Memburu Celah Keamanan di Situs Besar: Eksplorasi CVE-2021–41182 pada jQuery UI
Pernahkah Anda membayangkan bahwa sebuah situs berita besar yang Anda kunjungi setiap hari mungkin memiliki celah keamanan yang bisa…
⤷ Title: State of Exploited Vulnerabilities — Q2 2026
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Sat, 11 Jul 2026 03:45:34 +0000
════════════════════════
⌗ Tags: #Report #CISA #CVE Watchtower #Ivanti #KEV #Microsoft
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Sat, 11 Jul 2026 03:45:34 +0000
════════════════════════
⌗ Tags: #Report #CISA #CVE Watchtower #Ivanti #KEV #Microsoft
Daily CyberSecurity
State of Exploited Vulnerabilities — Q2 2026
State of Exploited Vulnerabilities — Q2 2026 Coverage period: April 1 – June 30, 2026 Data source: CISA Known Exploited Vulnerabilities (KEV) catalog + Daily CyberSecurity CVE Watchtower Published…
⤷ Title: Prompt Injection: How I Hacked a Corporate AI Chatbot to Leak Private API Keys
════════════════════════
𐀪 Author: Prabhakar
════════════════════════
ⴵ Time: Sat, 11 Jul 2026 04:40:51 GMT
════════════════════════
⌗ Tags: #bug_bounty #ethical_hacking #data_science #writing_prompts #cybersecurity
════════════════════════
𐀪 Author: Prabhakar
════════════════════════
ⴵ Time: Sat, 11 Jul 2026 04:40:51 GMT
════════════════════════
⌗ Tags: #bug_bounty #ethical_hacking #data_science #writing_prompts #cybersecurity
Medium
Prompt Injection: How I Hacked a Corporate AI Chatbot to Leak Private API Keys
Imagine you hire a highly educated Security Guard for your house. You give him a strict rule: “Never give the house locker key to anyone…