⤷ Title: GitHub Actions Abuse Powers a Distributed cPanel and WHM Attack Campaign
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Thu, 23 Jul 2026 02:29:19 +0000
════════════════════════
⌗ Tags: #Cybercriminals #cPanel and WHM exploitation #Credential Theft #CVE_2026_41940 #GitHub Actions abuse #Packagist #supply chain attack
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Thu, 23 Jul 2026 02:29:19 +0000
════════════════════════
⌗ Tags: #Cybercriminals #cPanel and WHM exploitation #Credential Theft #CVE_2026_41940 #GitHub Actions abuse #Packagist #supply chain attack
Daily CyberSecurity
GitHub Actions Abuse Powers a Distributed cPanel and WHM Attack Campaign
At a Glance Actor or group Unattributed threat actor; no group name published Activity type GitHub Actions abuse, internet scanning, credential theft Targets Internet-facing cPanel and WHM servers…
⤷ Title: ISC Patches 9 BIND 9 Vulnerabilities, Including a DNSSEC Cache Poisoning Flaw
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Thu, 23 Jul 2026 02:20:56 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #BIND 9 #Cache Poisoning #CVE_2026_11331 #CVE_2026_11721 #CVE_2026_13321 #DNS Security #DNSSEC #ISC
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Thu, 23 Jul 2026 02:20:56 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #BIND 9 #Cache Poisoning #CVE_2026_11331 #CVE_2026_11721 #CVE_2026_13321 #DNS Security #DNSSEC #ISC
Daily CyberSecurity
ISC Patches 9 BIND 9 Vulnerabilities, Including a DNSSEC Cache Poisoning Flaw
TL;DR ISC released BIND 9.20.26 and 9.21.24 on July 22, 2026. The updates fix nine flaws in the widely used DNS server. The most serious BIND vulnerability, CVE-2026-13321, enables cross-zone cach…
⤷ Title: Change Your Role, or Change the Role?
════════════════════════
𐀪 Author: Mostafa Rashidy
════════════════════════
ⴵ Time: Thu, 23 Jul 2026 02:40:24 GMT
════════════════════════
⌗ Tags: #penetration_testing #bug_bounty #cybersecurity #bug_bounty_writeup #bug_bounty_tips
════════════════════════
𐀪 Author: Mostafa Rashidy
════════════════════════
ⴵ Time: Thu, 23 Jul 2026 02:40:24 GMT
════════════════════════
⌗ Tags: #penetration_testing #bug_bounty #cybersecurity #bug_bounty_writeup #bug_bounty_tips
Medium
Change Your Role, or Change the Role?
بسم الله الرحمن الرحيم .والصلاة والسلام على سيدنا محمد أشرف الخلق والمرسلين
⤷ Title: Tailgate/WreckIt 7.0 Web Exploitation Challenge Write Up(CL;TE Vulnerability)
════════════════════════
𐀪 Author: Fauzi Ismail
════════════════════════
ⴵ Time: Thu, 23 Jul 2026 03:02:53 GMT
════════════════════════
⌗ Tags: #bug_bounty_writeup #hacking #ctf_writeup #ctf #web_exploitation
════════════════════════
𐀪 Author: Fauzi Ismail
════════════════════════
ⴵ Time: Thu, 23 Jul 2026 03:02:53 GMT
════════════════════════
⌗ Tags: #bug_bounty_writeup #hacking #ctf_writeup #ctf #web_exploitation
Medium
Tailgate/WreckIt 7.0 Web Exploitation Challenge Write Up(CL;TE Vulnerability)
this is recent wreck it 7.0 competition held by BSSN Indonesia. I decide to wrote this and upload to medium because i think this challenge…
⤷ Title: When Your Unreleased Secret AI Model Goes Rogue and Breaks Out…
════════════════════════
𐀪 Author: Manuel "UNCLE A.I." Nardi
════════════════════════
ⴵ Time: Thu, 23 Jul 2026 02:56:42 GMT
════════════════════════
⌗ Tags: #openai #hacking #llm #hugging_face #chatgpt
════════════════════════
𐀪 Author: Manuel "UNCLE A.I." Nardi
════════════════════════
ⴵ Time: Thu, 23 Jul 2026 02:56:42 GMT
════════════════════════
⌗ Tags: #openai #hacking #llm #hugging_face #chatgpt
Medium
When Your Unreleased Secret AI Model Goes Rogue and Breaks Out…
The Unreleased Open A.I. Model Wanted To Pass The Test, So It Broke Out And Hacked Another Company.
⤷ Title: “Crack The Gate 1” | PicoCTF walkthrough | Writeup | DAY — 02
════════════════════════
𐀪 Author: Roni Hasan
════════════════════════
ⴵ Time: Thu, 23 Jul 2026 02:32:37 GMT
════════════════════════
⌗ Tags: #cybersecurity #ctf_walkthrough #ctf #hacking #ctf_writeup
════════════════════════
𐀪 Author: Roni Hasan
════════════════════════
ⴵ Time: Thu, 23 Jul 2026 02:32:37 GMT
════════════════════════
⌗ Tags: #cybersecurity #ctf_walkthrough #ctf #hacking #ctf_writeup
Medium
“Crack The Gate 1” | PicoCTF walkthrough | Writeup | DAY — 02
Get Ready for our second web challenge in picoCTF .
⤷ Title: Identity Is the Hottest Skill in Security Interviews Right Now
════════════════════════
𐀪 Author: Jbird
════════════════════════
ⴵ Time: Thu, 23 Jul 2026 03:17:29 GMT
════════════════════════
⌗ Tags: #infosec #career_development #information_technology #cybersecurity #information_security
════════════════════════
𐀪 Author: Jbird
════════════════════════
ⴵ Time: Thu, 23 Jul 2026 03:17:29 GMT
════════════════════════
⌗ Tags: #infosec #career_development #information_technology #cybersecurity #information_security
Medium
Identity Is the Hottest Skill in Security Interviews Right Now
Identity skills are all over security job boards and interviews. Here’s what gets tested, what strong answers sound like, and how to prep.
⤷ Title: From Random Scans to Real Strategy: What Penetration Testing Frameworks Taught Me
════════════════════════
𐀪 Author: Naman Patil
════════════════════════
ⴵ Time: Thu, 23 Jul 2026 03:25:24 GMT
════════════════════════
⌗ Tags: #ethical_hacking #information_security #tryhackme #penetration_testing #cybersecurity
════════════════════════
𐀪 Author: Naman Patil
════════════════════════
ⴵ Time: Thu, 23 Jul 2026 03:25:24 GMT
════════════════════════
⌗ Tags: #ethical_hacking #information_security #tryhackme #penetration_testing #cybersecurity
Medium
From Random Scans to Real Strategy: What Penetration Testing Frameworks Taught Me
I used to think penetration testing was just running tools. This TryHackMe room taught me that every successful pentest starts with a plan…
⤷ Title: How to Extract Information from Websites: Automated OSINT Techniques and Tools
════════════════════════
𐀪 Author: Karthikeyan Nagaraj
════════════════════════
ⴵ Time: Thu, 23 Jul 2026 05:36:14 GMT
════════════════════════
⌗ Tags: #careers #cybersecurity #jobs #osint #bug_bounty
════════════════════════
𐀪 Author: Karthikeyan Nagaraj
════════════════════════
ⴵ Time: Thu, 23 Jul 2026 05:36:14 GMT
════════════════════════
⌗ Tags: #careers #cybersecurity #jobs #osint #bug_bounty
Medium
How to Extract Information from Websites: Automated OSINT Techniques and Tools
A Complete Guide to Web Scraping, OSINT, and Data Extraction Using Automated Tools
⤷ Title: GitHub Just Halved Its Bug Bounty Payouts — Here’s What Actually Changed
════════════════════════
𐀪 Author: Harsh_Exploits
════════════════════════
ⴵ Time: Thu, 23 Jul 2026 05:27:29 GMT
════════════════════════
⌗ Tags: #vulnerability #cybersecurity #bug_bounty_tips #web_application_security #bug_bounty
════════════════════════
𐀪 Author: Harsh_Exploits
════════════════════════
ⴵ Time: Thu, 23 Jul 2026 05:27:29 GMT
════════════════════════
⌗ Tags: #vulnerability #cybersecurity #bug_bounty_tips #web_application_security #bug_bounty
Medium
GitHub Just Halved Its Bug Bounty Payouts — Here’s What Actually Changed
Starting July 27, 2026, public rewards drop by 50–59% across the board, while a new invite-only VIP tier pays up to 3x more for the same…
⤷ Title: Cryptography 101: What I Learned Trying to Understand How Our Data Actually Stays Safe
════════════════════════
𐀪 Author: Abhinav Mtk
════════════════════════
ⴵ Time: Thu, 23 Jul 2026 03:58:04 GMT
════════════════════════
⌗ Tags: #study #hacking #cryptography #beginers_guide #cybersecurity
════════════════════════
𐀪 Author: Abhinav Mtk
════════════════════════
ⴵ Time: Thu, 23 Jul 2026 03:58:04 GMT
════════════════════════
⌗ Tags: #study #hacking #cryptography #beginers_guide #cybersecurity
Medium
Cryptography 101: What I Learned Trying to Understand How Our Data Actually Stays Safe
A few days ago I sat down to properly study cryptography, and honestly, I went in thinking it would just be “encryption = scrambling data…
⤷ Title: No Domain, No Problem! Until There Is One…Building an Active Directory Home Lab from Scratch
════════════════════════
𐀪 Author: Tyler Reynolds
════════════════════════
ⴵ Time: Thu, 23 Jul 2026 04:03:47 GMT
════════════════════════
⌗ Tags: #cybersecurity #blue_team #infosec #active_directory #homelab
════════════════════════
𐀪 Author: Tyler Reynolds
════════════════════════
ⴵ Time: Thu, 23 Jul 2026 04:03:47 GMT
════════════════════════
⌗ Tags: #cybersecurity #blue_team #infosec #active_directory #homelab
Medium
No Domain, No Problem! Until There Is One…Building an Active Directory Home Lab from Scratch
From virtual machines to a functioning Windows domain, and what it taught me about the environment attackers love most.
⤷ Title: Vulnerability Scanning Tools | TryHackMe (THM)
════════════════════════
𐀪 Author: Nuray Xudadatova
════════════════════════
ⴵ Time: Thu, 23 Jul 2026 05:03:54 GMT
════════════════════════
⌗ Tags: #openvas #vulnerability #tryhackme #vulnerability_scanning #vulnerability_assessment
════════════════════════
𐀪 Author: Nuray Xudadatova
════════════════════════
ⴵ Time: Thu, 23 Jul 2026 05:03:54 GMT
════════════════════════
⌗ Tags: #openvas #vulnerability #tryhackme #vulnerability_scanning #vulnerability_assessment
Medium
Vulnerability Scanning Tools | TryHackMe (THM)
Learn about scanning tools such as Nmap, OpenVAS, and Nikto, and explore the world of pentesting.
⤷ Title: [IronHold] — Spring Boot Source Code Analysis: Finding Credentials, SQL Injection, PrivEsc, and…
════════════════════════
𐀪 Author: Bash Overflow
════════════════════════
ⴵ Time: Thu, 23 Jul 2026 05:38:52 GMT
════════════════════════
⌗ Tags: #capture_the_flag #spring_boot #sql_injection #insecure_deserialization #privilege_escalation
════════════════════════
𐀪 Author: Bash Overflow
════════════════════════
ⴵ Time: Thu, 23 Jul 2026 05:38:52 GMT
════════════════════════
⌗ Tags: #capture_the_flag #spring_boot #sql_injection #insecure_deserialization #privilege_escalation
Medium
[IronHold] — Spring Boot Source Code Analysis: Finding Credentials, SQL Injection, PrivEsc, and Java Deserialization Exploitation
The source leaked. Read it like an attacker, chain the flaws, and compromise the Spring Boot application.
⤷ Title: Funky Mantis Ransomware Runs a Full RaaS Platform
════════════════════════
𐀪 Author: Nam Phong
════════════════════════
ⴵ Time: Thu, 23 Jul 2026 07:18:35 +0000
════════════════════════
⌗ Tags: #Malware #ChaCha20_Poly1305 #Critical Infrastructure #DevMan #Funky Mantis #Prodaft #Ransomware_as_a_Service #threat intelligence
════════════════════════
𐀪 Author: Nam Phong
════════════════════════
ⴵ Time: Thu, 23 Jul 2026 07:18:35 +0000
════════════════════════
⌗ Tags: #Malware #ChaCha20_Poly1305 #Critical Infrastructure #DevMan #Funky Mantis #Prodaft #Ransomware_as_a_Service #threat intelligence
Information Security News
Funky Mantis Ransomware Runs a Full RaaS Platform
The Funky Mantis extortion group has transformed an ordinary file-encryption toolkit into a fully fledged commercial service. Members now manage affiliates, sell access to compromised networks, an…
⤷ Title: South Korea Diplomatic Academy Breach Hits Diplomats
════════════════════════
𐀪 Author: Nam Phong
════════════════════════
ⴵ Time: Thu, 23 Jul 2026 06:18:29 +0000
════════════════════════
⌗ Tags: #Data Leak #credential leak #data breach #Government Security #KNDA #Ministry of Foreign Affairs #phishing #South Korea
════════════════════════
𐀪 Author: Nam Phong
════════════════════════
ⴵ Time: Thu, 23 Jul 2026 06:18:29 +0000
════════════════════════
⌗ Tags: #Data Leak #credential leak #data breach #Government Security #KNDA #Ministry of Foreign Affairs #phishing #South Korea
Information Security News
South Korea Diplomatic Academy Breach Hits Diplomats
South Korea’s Ministry of Foreign Affairs has disclosed a leak of personal data belonging to staff at headquarters, overseas missions, and other users of the National Diplomatic Academy̵…
⤷ Title: Two Men Shoveled Snow Outside an Office. By Lunchtime, They Owned the Network.
════════════════════════
𐀪 Author: Raj Namdev
════════════════════════
ⴵ Time: Thu, 23 Jul 2026 06:21:08 GMT
════════════════════════
⌗ Tags: #true_crime #cybersecurity #hacking #technology
════════════════════════
𐀪 Author: Raj Namdev
════════════════════════
ⴵ Time: Thu, 23 Jul 2026 06:21:08 GMT
════════════════════════
⌗ Tags: #true_crime #cybersecurity #hacking #technology
Medium
Two Men Shoveled Snow Outside an Office. By Lunchtime, They Owned the Network.
No malware. No zero-day. Just a shovel, a missing employee badge, and a company that trusted the wrong kindness.
⤷ Title: How AI Companies Are Secretly Reading the Hidden Data in Your Vacation Photos (And How to Stop It)
════════════════════════
𐀪 Author: Muhammad Wasay Ur Rehman
════════════════════════
ⴵ Time: Thu, 23 Jul 2026 05:57:21 GMT
════════════════════════
⌗ Tags: #cybercrime #cybersecurity #hacking #ai #data_science
════════════════════════
𐀪 Author: Muhammad Wasay Ur Rehman
════════════════════════
ⴵ Time: Thu, 23 Jul 2026 05:57:21 GMT
════════════════════════
⌗ Tags: #cybercrime #cybersecurity #hacking #ai #data_science
Medium
How AI Companies Are Secretly Reading the Hidden Data in Your Vacation Photos (And How to Stop It)
The unseen side effect of the artificial intelligence boom is looking right at you — literally.
⤷ Title: WP2Shell: The WordPress Core Bug Hackers Are Already Exploiting
════════════════════════
𐀪 Author: Ajekigbe Michael. A
════════════════════════
ⴵ Time: Thu, 23 Jul 2026 07:45:40 GMT
════════════════════════
⌗ Tags: #infosec #web_development #cybersecurity #website_security #wordpress
════════════════════════
𐀪 Author: Ajekigbe Michael. A
════════════════════════
ⴵ Time: Thu, 23 Jul 2026 07:45:40 GMT
════════════════════════
⌗ Tags: #infosec #web_development #cybersecurity #website_security #wordpress
Medium
WP2Shell: The WordPress Core Bug Hackers Are Already Exploiting
Full WordPress site Takeover with no login needed.
⤷ Title: Architectural Breakdown: The OpenAI and Hugging Face AI Supply Chain Incident
════════════════════════
𐀪 Author: Cyber Updates 365
════════════════════════
ⴵ Time: Thu, 23 Jul 2026 07:36:37 GMT
════════════════════════
⌗ Tags: #devsecops #machine_learning #artificial_intelligence #cybersecurity #infosec
════════════════════════
𐀪 Author: Cyber Updates 365
════════════════════════
ⴵ Time: Thu, 23 Jul 2026 07:36:37 GMT
════════════════════════
⌗ Tags: #devsecops #machine_learning #artificial_intelligence #cybersecurity #infosec
Medium
Architectural Breakdown: The OpenAI and Hugging Face AI Supply Chain Incident
Understanding model poisoning, insecure serialization, and how to harden enterprise MLOps pipelines against supply chain exploitation.
⤷ Title: What Your Network Traffic Reveals About You — A Developer’s Guide to How Protocols Leak Information
════════════════════════
𐀪 Author: Mohan Sai Krishna G M
════════════════════════
ⴵ Time: Thu, 23 Jul 2026 07:45:27 GMT
════════════════════════
⌗ Tags: #web_development #networking #penetration_testing #technology #cybersecurity
════════════════════════
𐀪 Author: Mohan Sai Krishna G M
════════════════════════
ⴵ Time: Thu, 23 Jul 2026 07:45:27 GMT
════════════════════════
⌗ Tags: #web_development #networking #penetration_testing #technology #cybersecurity
Medium
What Your Network Traffic Reveals About You — A Developer’s Guide to How Protocols Leak Information
Every packet your server sends contains more information than you intended. Here is how protocols leak data as a side effect of the…