⤷ Title: My LYKNCTF experience — One Flag, many lessons
════════════════════════
𐀪 Author: Asmita Das
════════════════════════
ⴵ Time: Wed, 29 Jul 2026 05:00:35 GMT
════════════════════════
⌗ Tags: #web #penetration_testing #ctf_writeup #ctf #lessons_learned
════════════════════════
𐀪 Author: Asmita Das
════════════════════════
ⴵ Time: Wed, 29 Jul 2026 05:00:35 GMT
════════════════════════
⌗ Tags: #web #penetration_testing #ctf_writeup #ctf #lessons_learned
Medium
My LYKNCTF experience — One Flag, many lessons
The LYKNCTF was a whole whirlwind. Like any other CTFs, they too had many categories to choose from like Web, OSINT, Misc etc however I…
⤷ Title: Room 404 — Tryhackme
════════════════════════
𐀪 Author: PRiTi.EX
════════════════════════
ⴵ Time: Wed, 29 Jul 2026 05:56:44 GMT
════════════════════════
⌗ Tags: #tryhackme_walkthrough #tryhackme
════════════════════════
𐀪 Author: PRiTi.EX
════════════════════════
ⴵ Time: Wed, 29 Jul 2026 05:56:44 GMT
════════════════════════
⌗ Tags: #tryhackme_walkthrough #tryhackme
Medium
Room 404 — Tryhackme
Solution:
⤷ Title: TryHackMe: Room 404 Walkthrough | Hacker Holidays — Day 2
════════════════════════
𐀪 Author: Rishi Kumavat
════════════════════════
ⴵ Time: Wed, 29 Jul 2026 04:13:25 GMT
════════════════════════
⌗ Tags: #python #tryhackme #javascript #programming #tech
════════════════════════
𐀪 Author: Rishi Kumavat
════════════════════════
ⴵ Time: Wed, 29 Jul 2026 04:13:25 GMT
════════════════════════
⌗ Tags: #python #tryhackme #javascript #programming #tech
Medium
TryHackMe: Room 404 Walkthrough | Hacker Holidays — Day 2
Welcome back to another writeup! Today, we’re checking into The Byte Lotus Hotel for Day 2 of TryHackMe’s Hacker Holidays event.
⤷ Title: Flying Eagle Android RAT Traces Found on 170 Servers as Source Code Circulates
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Wed, 29 Jul 2026 12:37:23 +0530
════════════════════════
⌗ Tags: No_Tags
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Wed, 29 Jul 2026 12:37:23 +0530
════════════════════════
⌗ Tags: No_Tags
⤷ Title: OpenAI Agent Used Exposed Credentials Across Four Services During Hugging Face Breach
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Wed, 29 Jul 2026 12:15:02 +0530
════════════════════════
⌗ Tags: No_Tags
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Wed, 29 Jul 2026 12:15:02 +0530
════════════════════════
⌗ Tags: No_Tags
⤷ Title: Cl0p Affiliates Exploit PTC Windchill for Corporate Extortion
════════════════════════
𐀪 Author: Nam Phong
════════════════════════
ⴵ Time: Wed, 29 Jul 2026 07:34:10 +0000
════════════════════════
⌗ Tags: #Malware #Cl0p #CVE_2026_12569 #cybersecurity #ransomware #Windchill
════════════════════════
𐀪 Author: Nam Phong
════════════════════════
ⴵ Time: Wed, 29 Jul 2026 07:34:10 +0000
════════════════════════
⌗ Tags: #Malware #Cl0p #CVE_2026_12569 #cybersecurity #ransomware #Windchill
Information Security News
Cl0p Affiliates Exploit PTC Windchill for Corporate Extortion
Corporate systems designed to securely warehouse engineering blueprints and proprietary project documentation have morphed into a lucrative extortion vector for cybercriminals. Malicious actors ar…
⤷ Title: Dependabot and PyPI Add Supply Chain Cooldowns
════════════════════════
𐀪 Author: Nam Phong
════════════════════════
ⴵ Time: Wed, 29 Jul 2026 06:34:12 +0000
════════════════════════
⌗ Tags: #Malware #cybersecurity #Dependabot #Github #PyPI #Supply Chain Security
════════════════════════
𐀪 Author: Nam Phong
════════════════════════
ⴵ Time: Wed, 29 Jul 2026 06:34:12 +0000
════════════════════════
⌗ Tags: #Malware #cybersecurity #Dependabot #Github #PyPI #Supply Chain Security
Information Security News
Dependabot and PyPI Add Supply Chain Cooldowns
GitHub and the Python Package Index (PyPI) have introduced strategic delays into dependency updates, discouraging developers from inadvertently deploying malicious packages upon initial release. D…
⤷ Title: Gitea RCE Flaw CVE-2026-60004 (CVSS 9.8): Details and PoC Exploit Publicly Disclosed
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 29 Jul 2026 07:59:11 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2026_60004 #diffpatch #Git Hook #Gitea #go #rce #Remote Code Execution
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 29 Jul 2026 07:59:11 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2026_60004 #diffpatch #Git Hook #Gitea #go #rce #Remote Code Execution
Daily CyberSecurity
Gitea RCE Flaw CVE-2026-60004 (CVSS 9.8): Details and PoC Exploit Publicly Disclosed
TL;DR A critical Gitea RCE flaw now has public details and a proof-of-concept exploit. Tracked as CVE-2026-60004, it scores a CVSS of 9.8. A user with repository write access can run shell command…
⤷ Title: Lampion Malware Campaign Targets Portugal With Fake Payment Receipts
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 29 Jul 2026 07:30:42 +0000
════════════════════════
⌗ Tags: #Malware #Acronis TRU #Banking Trojan #Lampion #Lampion malware campaign #Portugal phishing campaign #VBS Malware
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 29 Jul 2026 07:30:42 +0000
════════════════════════
⌗ Tags: #Malware #Acronis TRU #Banking Trojan #Lampion #Lampion malware campaign #Portugal phishing campaign #VBS Malware
Daily CyberSecurity
Lampion Malware Campaign Targets Portugal With Fake Payment Receipts
At a Glance Malware family Lampion, a Brazilian banking trojan from the ChePro lineage Threat actor No group named; operators tracked only as the Lampion crew Targets Portuguese speakers; 94.6% of…
⤷ Title: Chaos Ransomware Uses msaRAT to Hide C2 Traffic Inside Chrome
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 29 Jul 2026 06:30:45 +0000
════════════════════════
⌗ Tags: #Malware #Chaos Ransomware #Chrome DevTools Protocol #Cisco Talos #msaRAT #Remote Access Trojan #Rust malware #WebRTC C2
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 29 Jul 2026 06:30:45 +0000
════════════════════════
⌗ Tags: #Malware #Chaos Ransomware #Chrome DevTools Protocol #Cisco Talos #msaRAT #Remote Access Trojan #Rust malware #WebRTC C2
Daily CyberSecurity
Chaos Ransomware Uses msaRAT to Hide C2 Traffic Inside Chrome
At a glance Malware family msaRAT, a Rust remote access trojan Threat actor Chaos ransomware group (confirmed by Cisco Talos) Target or victims Windows hosts inside already-breached large organiza…
⤷ Title: Snowflake SQL Injection via Compile-Time Constant Folding with SYSTEM$WAIT
════════════════════════
𐀪 Author: Alvin Ferdiansyah
════════════════════════
ⴵ Time: Wed, 29 Jul 2026 07:28:59 GMT
════════════════════════
⌗ Tags: #snowflake #bug_bounty #bug_bounty_writeup #bug_bounty_tips #sql_injection
════════════════════════
𐀪 Author: Alvin Ferdiansyah
════════════════════════
ⴵ Time: Wed, 29 Jul 2026 07:28:59 GMT
════════════════════════
⌗ Tags: #snowflake #bug_bounty #bug_bounty_writeup #bug_bounty_tips #sql_injection
Medium
Snowflake SQL Injection via Compile-Time Constant Folding with SYSTEM$WAIT
You have confirmed SQL injection against a Snowflake backend. The injected expression executes. The behavior is repeatable. The database is…
⤷ Title: Account Takeover Across Multiple Programs via Featurebase Integration
════════════════════════
𐀪 Author: JEETPAL
════════════════════════
ⴵ Time: Wed, 29 Jul 2026 07:16:59 GMT
════════════════════════
⌗ Tags: #bug_bounty_writeup #bug_bounty #bugbounty_writeup #bug_bounty_tips #account_takeover
════════════════════════
𐀪 Author: JEETPAL
════════════════════════
ⴵ Time: Wed, 29 Jul 2026 07:16:59 GMT
════════════════════════
⌗ Tags: #bug_bounty_writeup #bug_bounty #bugbounty_writeup #bug_bounty_tips #account_takeover
Medium
Account Takeover Across Multiple Programs via Featurebase Integration
In this blog, I am going to share an account takeover vulnerability in a third-party provider widely used by many bug bounty programs.
⤷ Title: Automating Google Dorking Across Multiple Search Engines for Faster Recon
════════════════════════
𐀪 Author: Monika
════════════════════════
ⴵ Time: Wed, 29 Jul 2026 06:31:08 GMT
════════════════════════
⌗ Tags: #bug_bounty_writeup #technology #cybersecurity #penetration_testing #bug_bounty
════════════════════════
𐀪 Author: Monika
════════════════════════
ⴵ Time: Wed, 29 Jul 2026 06:31:08 GMT
════════════════════════
⌗ Tags: #bug_bounty_writeup #technology #cybersecurity #penetration_testing #bug_bounty
Medium
Automating Google Dorking Across Multiple Search Engines for Faster Recon
How I Used XNLDorker to Discover Hidden Endpoints Across Multiple Search Engines
⤷ Title: Giving Claude Hands: Wiring 110 Pentest Tools Through MCP
════════════════════════
𐀪 Author: rohan badekan
════════════════════════
ⴵ Time: Wed, 29 Jul 2026 06:22:48 GMT
════════════════════════
⌗ Tags: #cybersecurity #ai #ai_security #bug_bounty #ai_agent
════════════════════════
𐀪 Author: rohan badekan
════════════════════════
ⴵ Time: Wed, 29 Jul 2026 06:22:48 GMT
════════════════════════
⌗ Tags: #cybersecurity #ai #ai_security #bug_bounty #ai_agent
Medium
Giving Claude Hands: Wiring 110 Pentest Tools Through MCP
Part 4 of the Aii-Aii Hunter series: why “advise” vs “execute” is the whole point, and how the bridge actually works
⤷ Title: OAuth Security Explained Without the Marketing
════════════════════════
𐀪 Author: Ismail Tasdelen
════════════════════════
ⴵ Time: Wed, 29 Jul 2026 05:55:47 GMT
════════════════════════
⌗ Tags: #cybersecurity #application_security #software_architecture #software_development #software_engineering
════════════════════════
𐀪 Author: Ismail Tasdelen
════════════════════════
ⴵ Time: Wed, 29 Jul 2026 05:55:47 GMT
════════════════════════
⌗ Tags: #cybersecurity #application_security #software_architecture #software_development #software_engineering
Medium
OAuth Security Explained Without the Marketing
OAuth Security Explained Without the Marketing OAuth 2.0 is often marketed as a “security protocol” that magically makes your application safe. In reality, OAuth is an authorization framework — …
⤷ Title: Room 404: The Directory the Floor Plan Forgot
════════════════════════
𐀪 Author: Dragon Shot
════════════════════════
ⴵ Time: Wed, 29 Jul 2026 07:58:46 GMT
════════════════════════
⌗ Tags: #tryhackme #hacking #hacker_holidays #tryhackme_walkthrough #web_hacking
════════════════════════
𐀪 Author: Dragon Shot
════════════════════════
ⴵ Time: Wed, 29 Jul 2026 07:58:46 GMT
════════════════════════
⌗ Tags: #tryhackme #hacking #hacker_holidays #tryhackme_walkthrough #web_hacking
Medium
Room 404: The Directory the Floor Plan Forgot
A walkthrough of TryHackMe’s “Room 404” — Very Easy, 30 points, Web category — Day 2 of the Hacker Holidays event at the Byte Lotus Hotel.
⤷ Title: Hacking Commands You Need to Know
════════════════════════
𐀪 Author: Shahzaib
════════════════════════
ⴵ Time: Wed, 29 Jul 2026 07:52:28 GMT
════════════════════════
⌗ Tags: #programming #technology #hacking #cybersecurity #tech
════════════════════════
𐀪 Author: Shahzaib
════════════════════════
ⴵ Time: Wed, 29 Jul 2026 07:52:28 GMT
════════════════════════
⌗ Tags: #programming #technology #hacking #cybersecurity #tech
Medium
Hacking Commands You Need to Know
The 25 Commands that Cover 90% of real Penetration tests from Recon to Root
⤷ Title: “ลูกค้าได้เงินครบ” แต่ระบบล้มเหลวตรงไหน: ถอดบทเรียน Bitkub ผ่าน 4 ชั้นของความเสี่ยง
════════════════════════
𐀪 Author: Kapombibi
════════════════════════
ⴵ Time: Wed, 29 Jul 2026 07:31:59 GMT
════════════════════════
⌗ Tags: #blockchain #cryptocurrency #cybersecurity #fintech #hacking
════════════════════════
𐀪 Author: Kapombibi
════════════════════════
ⴵ Time: Wed, 29 Jul 2026 07:31:59 GMT
════════════════════════
⌗ Tags: #blockchain #cryptocurrency #cybersecurity #fintech #hacking
⤷ Title: Historical Detective: Solving the TryHackMe “Letter” OSINT Challenge
════════════════════════
𐀪 Author: Babayeva Sevinj
════════════════════════
ⴵ Time: Wed, 29 Jul 2026 07:18:04 GMT
════════════════════════
⌗ Tags: #tryhackme #hacking #penetration_testing #cybersecurity
════════════════════════
𐀪 Author: Babayeva Sevinj
════════════════════════
ⴵ Time: Wed, 29 Jul 2026 07:18:04 GMT
════════════════════════
⌗ Tags: #tryhackme #hacking #penetration_testing #cybersecurity
Medium
Historical Detective: Solving the TryHackMe “Letter” OSINT Challenge
Open-Source Intelligence (OSINT) isn’t just about scanning modern social media profiles, tracking geolocation through metadata, or…
⤷ Title: What to Do After Cyber Fraud in India
════════════════════════
𐀪 Author: DRIVESYNC INFOTECH PRIVATE LIMITED
════════════════════════
ⴵ Time: Wed, 29 Jul 2026 07:02:42 GMT
════════════════════════
⌗ Tags: #cybersecurity #hacking #cyberattack #cyber_security_awareness
════════════════════════
𐀪 Author: DRIVESYNC INFOTECH PRIVATE LIMITED
════════════════════════
ⴵ Time: Wed, 29 Jul 2026 07:02:42 GMT
════════════════════════
⌗ Tags: #cybersecurity #hacking #cyberattack #cyber_security_awareness
Medium
What to Do After Cyber Fraud in India
What to Do in the First 60 Minutes After a Cyber Fraud ?
⤷ Title: Welcome to CyberClarity: Making Cybersecurity Make Sense
════════════════════════
𐀪 Author: Amanpreet Singh Gandhi
════════════════════════
ⴵ Time: Wed, 29 Jul 2026 07:01:03 GMT
════════════════════════
⌗ Tags: #technology #privacy #hacking #infosec #cybersecurity
════════════════════════
𐀪 Author: Amanpreet Singh Gandhi
════════════════════════
ⴵ Time: Wed, 29 Jul 2026 07:01:03 GMT
════════════════════════
⌗ Tags: #technology #privacy #hacking #infosec #cybersecurity
Medium
Welcome to CyberClarity: Making Cybersecurity Make Sense
I used to believe, cybersecurity was reserved for hoodie-wearing geniuses staring at green code in a dark room, sipping energy drinks…