⤷ Title: How to Know If There Is a Hidden Camera in Your Room (Without Buying Expensive Tools)
════════════════════════
𐀪 Author: Muhammad Wasay Ur Rehman
════════════════════════
ⴵ Time: Mon, 27 Jul 2026 12:16:01 GMT
════════════════════════
⌗ Tags: #cybercrime #hacking #hidden_camera #cybersecurity
════════════════════════
𐀪 Author: Muhammad Wasay Ur Rehman
════════════════════════
ⴵ Time: Mon, 27 Jul 2026 12:16:01 GMT
════════════════════════
⌗ Tags: #cybercrime #hacking #hidden_camera #cybersecurity
Medium
How to Know If There Is a Hidden Camera in Your Room (Without Buying Expensive Tools)
“Social media is full of spy cam paranoia. Here is the actual hacker science to detect hidden lenses using devices you already own.”
⤷ Title: Anonymous Playground (THM) Tryhackme Hard Challenge
════════════════════════
𐀪 Author: Lawvye
════════════════════════
ⴵ Time: Mon, 27 Jul 2026 12:07:34 GMT
════════════════════════
⌗ Tags: #tryhackme #privilege_escalation #linux #cybersecurity #hacking
════════════════════════
𐀪 Author: Lawvye
════════════════════════
ⴵ Time: Mon, 27 Jul 2026 12:07:34 GMT
════════════════════════
⌗ Tags: #tryhackme #privilege_escalation #linux #cybersecurity #hacking
Medium
Anonymous Playground (THM) Tryhackme Hard Challenge
Description : Want to become part of Anonymous? They have a challenge for you. Can you get the flags and become an operative?
⤷ Title: GitLab RCE Vulnerability Explained: The Notebook Diff Exploit Chain
════════════════════════
𐀪 Author: Xpert4Cyber
════════════════════════
ⴵ Time: Mon, 27 Jul 2026 12:57:44 GMT
════════════════════════
⌗ Tags: #gitlab #infosec #devsecops #cybersecurity #vulnerability
════════════════════════
𐀪 Author: Xpert4Cyber
════════════════════════
ⴵ Time: Mon, 27 Jul 2026 12:57:44 GMT
════════════════════════
⌗ Tags: #gitlab #infosec #devsecops #cybersecurity #vulnerability
Medium
GitLab RCE Vulnerability Explained: The Notebook Diff Exploit Chain
GitLab just patched a remote code execution vulnerability that never got a CVE, never got a security advisory, and was triggered by…
⤷ Title: Deconstructing a Phishing Email: A Step by Step Header Analysis & Investigation
════════════════════════
𐀪 Author: Mihindi Gunawardana
════════════════════════
ⴵ Time: Mon, 27 Jul 2026 12:10:54 GMT
════════════════════════
⌗ Tags: #phishing #cybersecurity #infosec #digital_forensics #threat_intelligence
════════════════════════
𐀪 Author: Mihindi Gunawardana
════════════════════════
ⴵ Time: Mon, 27 Jul 2026 12:10:54 GMT
════════════════════════
⌗ Tags: #phishing #cybersecurity #infosec #digital_forensics #threat_intelligence
Medium
Deconstructing a Phishing Email: A Step by Step Header Analysis & Investigation
Phishing remains one of the primary initial access vectors in real world cyberattacks. While modern security appliances catch a vast…
⤷ Title: Publisher: TryHackMe CTF Walkthrough
════════════════════════
𐀪 Author: Huzaifa Malik
════════════════════════
ⴵ Time: Mon, 27 Jul 2026 13:46:02 GMT
════════════════════════
⌗ Tags: #ctf_writeup #penetration_testing #web_security #tryhackme #privilege_escalation
════════════════════════
𐀪 Author: Huzaifa Malik
════════════════════════
ⴵ Time: Mon, 27 Jul 2026 13:46:02 GMT
════════════════════════
⌗ Tags: #ctf_writeup #penetration_testing #web_security #tryhackme #privilege_escalation
Medium
Publisher: TryHackMe CTF Walkthrough
A begginer level CTF to practice the enumeration skills and perform multi-step privilege escalation
⤷ Title: Setup Oracle VirtualBox dan Instalasi Kali Linux sebagai Environment Network Penetration Testing
════════════════════════
𐀪 Author: Thoibi Afriadi
════════════════════════
ⴵ Time: Mon, 27 Jul 2026 12:15:09 GMT
════════════════════════
⌗ Tags: #oracle_virtual_box #penetration_testing #cybersecurity #linux #kali_linux
════════════════════════
𐀪 Author: Thoibi Afriadi
════════════════════════
ⴵ Time: Mon, 27 Jul 2026 12:15:09 GMT
════════════════════════
⌗ Tags: #oracle_virtual_box #penetration_testing #cybersecurity #linux #kali_linux
Medium
Setup Oracle VirtualBox dan Instalasi Kali Linux sebagai Environment Network Penetration Testing
Dalam dunia cybersecurity, khususnya Network Penetration Testing, lingkungan kerja yang aman sangat penting. Oleh karena itu, penggunaan…
⤷ Title: WinterMute: 1 Walkthrough
════════════════════════
𐀪 Author: Boldhacker
════════════════════════
ⴵ Time: Mon, 27 Jul 2026 13:40:16 GMT
════════════════════════
⌗ Tags: #vulnhub #walkthrough #wintermute1
════════════════════════
𐀪 Author: Boldhacker
════════════════════════
ⴵ Time: Mon, 27 Jul 2026 13:40:16 GMT
════════════════════════
⌗ Tags: #vulnhub #walkthrough #wintermute1
Medium
WinterMute: 1 Walkthrough
Introduction Welcome to another VulnHub walkthrough! In this article, we’ll be solving Wintermute:1, a Linux-based Boot2Root machine that…
⤷ Title: Hack Remote Windows PC using DLL Files (SMB Delivery Exploit) — Metasploit Walkthrough
════════════════════════
𐀪 Author: Priyankachandrakar
════════════════════════
ⴵ Time: Mon, 27 Jul 2026 13:15:00 GMT
════════════════════════
⌗ Tags: #kali_linux #ethical_hacking #cybersecurity #oscp #metasploit
════════════════════════
𐀪 Author: Priyankachandrakar
════════════════════════
ⴵ Time: Mon, 27 Jul 2026 13:15:00 GMT
════════════════════════
⌗ Tags: #kali_linux #ethical_hacking #cybersecurity #oscp #metasploit
Medium
Hack Remote Windows PC using DLL Files (SMB Delivery Exploit) — Metasploit Walkthrough
A beginner-friendly guide explaining how the smb_delivery module can be used to deliver a payload to a Windows target via SMB.
⤷ Title: How to Change Windows Wallpaper of a Remote PC (Post-Exploitation Demo)
════════════════════════
𐀪 Author: Priyankachandrakar
════════════════════════
ⴵ Time: Mon, 27 Jul 2026 12:34:49 GMT
════════════════════════
⌗ Tags: #linux #metasploit #ethical_hacking #cybersecurity #oscp
════════════════════════
𐀪 Author: Priyankachandrakar
════════════════════════
ⴵ Time: Mon, 27 Jul 2026 12:34:49 GMT
════════════════════════
⌗ Tags: #linux #metasploit #ethical_hacking #cybersecurity #oscp
Medium
How to Change Windows Wallpaper of a Remote PC (Post-Exploitation Demo)
A fun, low-impact post-exploitation exercise showing how to change a victim’s desktop wallpaper once a Meterpreter session is established.
⤷ Title: Chaining Public Endpoints Into Data Exposure: A Case Study in Unauthenticated PII Leakage
════════════════════════
𐀪 Author: Inside_m
════════════════════════
ⴵ Time: Mon, 27 Jul 2026 13:58:58 GMT
════════════════════════
⌗ Tags: #cybersecurity #software_engineering #web_security #api_security #data_privacy
════════════════════════
𐀪 Author: Inside_m
════════════════════════
ⴵ Time: Mon, 27 Jul 2026 13:58:58 GMT
════════════════════════
⌗ Tags: #cybersecurity #software_engineering #web_security #api_security #data_privacy
Medium
Chaining Public Endpoints Into Data Exposure: A Case Study in Unauthenticated PII Leakage
Not every impactful security issue starts with a sophisticated exploit. Sometimes it starts with a design pattern that looks harmless until…
⤷ Title: When Does an API Become a Security Vulnerability?
════════════════════════
𐀪 Author: @dsfglobal
════════════════════════
ⴵ Time: Mon, 27 Jul 2026 13:22:34 GMT
════════════════════════
⌗ Tags: #api #api_security #api_testing
════════════════════════
𐀪 Author: @dsfglobal
════════════════════════
ⴵ Time: Mon, 27 Jul 2026 13:22:34 GMT
════════════════════════
⌗ Tags: #api #api_security #api_testing
Medium
When Does an API Become a Security Vulnerability?
We use dozens of APIs every day without even realizing it. Whether we are ordering food, checking our bank accounts, or booking a hotel…
⤷ Title: Public Exploit Released for Patched vBulletin Pre-Auth Code Execution Flaw
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Mon, 27 Jul 2026 20:10:00 +0530
════════════════════════
⌗ Tags: No_Tags
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Mon, 27 Jul 2026 20:10:00 +0530
════════════════════════
⌗ Tags: No_Tags
⤷ Title: ⚡ Weekly Recap: Rogue AI Agents, Check Point Exploit, Slopsquatting, ClickFix Lures and More
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Mon, 27 Jul 2026 19:40:54 +0530
════════════════════════
⌗ Tags: No_Tags
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Mon, 27 Jul 2026 19:40:54 +0530
════════════════════════
⌗ Tags: No_Tags
⤷ Title: Hackers Compromise Hotel Wi-Fi Gateways to Hijack Microsoft 365 Accounts
════════════════════════
𐀪 Author: Waqas
════════════════════════
ⴵ Time: Mon, 27 Jul 2026 14:43:57 +0000
════════════════════════
⌗ Tags: #Security #Phishing Scam #APT28 #Cyber Attack #Cybersecurity #Fancy Bear #Forest Blizzard #Hotels #Microsoft #Microsoft 365 #Phishing #ReliaQuest #Scam #WIFI
════════════════════════
𐀪 Author: Waqas
════════════════════════
ⴵ Time: Mon, 27 Jul 2026 14:43:57 +0000
════════════════════════
⌗ Tags: #Security #Phishing Scam #APT28 #Cyber Attack #Cybersecurity #Fancy Bear #Forest Blizzard #Hotels #Microsoft #Microsoft 365 #Phishing #ReliaQuest #Scam #WIFI
Hackread
Hackers Compromise Hotel Wi-Fi Gateways to Hijack Microsoft 365 Accounts
Compromised hotel Wi-Fi gateways redirect business travelers to fake Microsoft 365 login pages allowing attackers to steal credentials and authorization tokens.
⤷ Title: Critical GitLab RCE Vulnerability Exposed in Oj JSON Parser
════════════════════════
𐀪 Author: Nam Phong
════════════════════════
ⴵ Time: Mon, 27 Jul 2026 15:00:55 +0000
════════════════════════
⌗ Tags: #Vulnerability #Gitlab #Jupyter Notebook #Oj Parser #remote code execution #vulnerability
════════════════════════
𐀪 Author: Nam Phong
════════════════════════
ⴵ Time: Mon, 27 Jul 2026 15:00:55 +0000
════════════════════════
⌗ Tags: #Vulnerability #Gitlab #Jupyter Notebook #Oj Parser #remote code execution #vulnerability
Information Security News
Critical GitLab RCE Vulnerability Exposed in Oj JSON Parser
Unmasking the Concealed Remote Code Execution Flaw A critical remote code execution (RCE) flaw in self-hosted GitLab installations lay concealed for nearly six weeks. Although GitLab patched the u…
⤷ Title: Iranian Hackers Modify PLC Logic in US Infrastructure Attacks
════════════════════════
𐀪 Author: Nam Phong
════════════════════════
ⴵ Time: Mon, 27 Jul 2026 14:09:38 +0000
════════════════════════
⌗ Tags: #Cyber Security #CISA Advisory #Critical Infrastructure #ICS Security #Iranian hackers #PLC Hacking
════════════════════════
𐀪 Author: Nam Phong
════════════════════════
ⴵ Time: Mon, 27 Jul 2026 14:09:38 +0000
════════════════════════
⌗ Tags: #Cyber Security #CISA Advisory #Critical Infrastructure #ICS Security #Iranian hackers #PLC Hacking
Information Security News
Iranian Hackers Modify PLC Logic in US Infrastructure Attacks
Covert Sabotage of Critical Infrastructure Iranian threat actors have developed sophisticated techniques to covertly manipulate programmable logic controllers (PLCs), ensuring that human operators…
⤷ Title: CVE-2026-16812: VeloCloud Orchestrator OS Command Injection (CVSS 10) Exploited in the Wild
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Mon, 27 Jul 2026 15:26:35 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Arista #CVE_2026_16812 #CVE_2026_17191 #CVE_2026_17192 #exploited in the wild #os command injection #ssrf #VCO #VeloCloud #VeloCloud Orchestrator
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Mon, 27 Jul 2026 15:26:35 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Arista #CVE_2026_16812 #CVE_2026_17191 #CVE_2026_17192 #exploited in the wild #os command injection #ssrf #VCO #VeloCloud #VeloCloud Orchestrator
Daily CyberSecurity
CVE-2026-16812: VeloCloud Orchestrator OS Command Injection (CVSS 10) Exploited in the Wild
TL;DR: Arista confirmed that CVE-2026-16812, a VeloCloud command injection flaw, is under active attack. The bug scores a maximum CVSS 10.0 and needs no credentials. Arista also patched two relate…
⤷ Title: VMRay Exposes Operation STANDOFF, a Russian-Speaking Intrusion Campaign Hidden Behind GitHub
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Mon, 27 Jul 2026 14:50:14 +0000
════════════════════════
⌗ Tags: #Cybercriminals #active directory #Operation STANDOFF #proxy botnet #Raccoon Stealer #Russian_speaking threat group #Telegram account farm #VMRay
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Mon, 27 Jul 2026 14:50:14 +0000
════════════════════════
⌗ Tags: #Cybercriminals #active directory #Operation STANDOFF #proxy botnet #Raccoon Stealer #Russian_speaking threat group #Telegram account farm #VMRay
Daily CyberSecurity
VMRay Exposes Operation STANDOFF, a Russian-Speaking Intrusion Campaign Hidden Behind GitHub
At a glance Actor or group Unnamed Russian-speaking crew tracked as Operation STANDOFF; self-branded “GG Influence” and “ggstandoff” Activity type Pay-per-install malware, …
⤷ Title: Kimsuky Hacked South Korean Groupware Vendors With New Gomir Variants
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Mon, 27 Jul 2026 14:01:28 +0000
════════════════════════
⌗ Tags: #Cybercriminals #BirdTroy #DriveTroy #Gomir #HttpTroy #Kimsuky #Linux Backdoor #North Korea #supply chain attack
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Mon, 27 Jul 2026 14:01:28 +0000
════════════════════════
⌗ Tags: #Cybercriminals #BirdTroy #DriveTroy #Gomir #HttpTroy #Kimsuky #Linux Backdoor #North Korea #supply chain attack
Daily CyberSecurity
Kimsuky Hacked South Korean Groupware Vendors With New Gomir Variants
At a glance Actor or group Kimsuky, a North Korea-linked group also tracked as Springtail, Thallium and APT43 Activity type Espionage, supply-chain pivoting, credential theft, Linux backdoor deplo…
⤷ Title: How a Hidden GraphQL Endpoint Led Me to a Critical SQL Injection Worth €2,500
════════════════════════
𐀪 Author: 0xSADAT
════════════════════════
ⴵ Time: Mon, 27 Jul 2026 14:58:18 GMT
════════════════════════
⌗ Tags: #bug_bounty_writeup #infosec #bug_bounty #info_sec_writeups #cybersecurity
════════════════════════
𐀪 Author: 0xSADAT
════════════════════════
ⴵ Time: Mon, 27 Jul 2026 14:58:18 GMT
════════════════════════
⌗ Tags: #bug_bounty_writeup #infosec #bug_bounty #info_sec_writeups #cybersecurity
Medium
How a Hidden GraphQL Endpoint Led Me to a Critical SQL Injection Worth €2,500
A simple directory fuzzing session uncovered a hidden GraphQL endpoint. A harmless-looking search bar eventually turned into a confirmed…
⤷ Title: TryHeartMe THM write-up
════════════════════════
𐀪 Author: Creepus
════════════════════════
ⴵ Time: Mon, 27 Jul 2026 15:31:01 GMT
════════════════════════
⌗ Tags: #labs #writeup #solved #hacking #tryhackme
════════════════════════
𐀪 Author: Creepus
════════════════════════
ⴵ Time: Mon, 27 Jul 2026 15:31:01 GMT
════════════════════════
⌗ Tags: #labs #writeup #solved #hacking #tryhackme
Medium
TryHeartMe THM write-up
Introduction