⤷ Title: Writeup - Beach Bar
════════════════════════
𐀪 Author: Mrroot
════════════════════════
ⴵ Time: Fri, 31 Jul 2026 21:35:53 GMT
════════════════════════
⌗ Tags: #ctf_writeup #tryhackme
════════════════════════
𐀪 Author: Mrroot
════════════════════════
ⴵ Time: Fri, 31 Jul 2026 21:35:53 GMT
════════════════════════
⌗ Tags: #ctf_writeup #tryhackme
Medium
Writeup - Beach Bar
En esta maquina veremos estos metodos de Explotacion a esta maquina
⤷ Title: PortSwigger Lab Write-up: SSRF with Blacklist-Based Input Filter
════════════════════════
𐀪 Author: Abel
════════════════════════
ⴵ Time: Fri, 31 Jul 2026 22:19:00 GMT
════════════════════════
⌗ Tags: #burpsuite #ssrf #portswigger_lab #writeup #burp
════════════════════════
𐀪 Author: Abel
════════════════════════
ⴵ Time: Fri, 31 Jul 2026 22:19:00 GMT
════════════════════════
⌗ Tags: #burpsuite #ssrf #portswigger_lab #writeup #burp
Medium
PortSwigger Lab Write-up: SSRF with Blacklist-Based Input Filter
Lab Overview
⤷ Title: Mirage Kitten Deploys New Malware Against Middle East and Africa
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Sat, 01 Aug 2026 01:45:17 +0000
════════════════════════
⌗ Tags: #Cybercriminals #APT #ArcBridge #BridgeHead #cyber_espionage #kaspersky #Mirage Kitten #NightLedger #Nimbus Manticore #Smoke Sandstorm #UNC1549
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Sat, 01 Aug 2026 01:45:17 +0000
════════════════════════
⌗ Tags: #Cybercriminals #APT #ArcBridge #BridgeHead #cyber_espionage #kaspersky #Mirage Kitten #NightLedger #Nimbus Manticore #Smoke Sandstorm #UNC1549
Daily CyberSecurity
Mirage Kitten Deploys New Malware Against Middle East and Africa
At a glance Actor Mirage Kitten (also UNC1549, Smoke Sandstorm, Nimbus Manticore) Activity State-aligned cyber espionage and long-term network access Targets Aviation, defense, telecom, government…
⤷ Title: MikroTik RouterOS Flaw CVE-2026-16347 Helps Attackers Gain Unauthorized System Access
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Sat, 01 Aug 2026 01:01:00 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #authentication #Brute Force #CISA #Cloud Hosted Router #CVE_2026_16347 #MikroTik #RouterOS
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Sat, 01 Aug 2026 01:01:00 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #authentication #Brute Force #CISA #Cloud Hosted Router #CVE_2026_16347 #MikroTik #RouterOS
Daily CyberSecurity
MikroTik RouterOS Flaw CVE-2026-16347 Helps Attackers Gain Unauthorized System Access
CVE-2026-16347 lets attackers brute-force MikroTik RouterOS logins for unauthorized system access. Rated CVSS 8.8, with no fix yet. Apply mitigations. #MikroTik #RouterOS #CVE202616347 #BruteForce…
⤷ Title: How I Found a Critical Race Condition on Kruidvat — A Step-by-Step Bug Bounty Walkthrough
════════════════════════
𐀪 Author: Lelouchzero
════════════════════════
ⴵ Time: Sat, 01 Aug 2026 00:30:47 GMT
════════════════════════
⌗ Tags: #race_condition #web_application_security #ethical_hacking #bug_bounty #critical_vulnerabilities
════════════════════════
𐀪 Author: Lelouchzero
════════════════════════
ⴵ Time: Sat, 01 Aug 2026 00:30:47 GMT
════════════════════════
⌗ Tags: #race_condition #web_application_security #ethical_hacking #bug_bounty #critical_vulnerabilities
Medium
How I Found a Critical Race Condition on Kruidvat — A Step-by-Step Bug Bounty Walkthrough
Introduction
⤷ Title: Beach Day (Boot to Root) — TryHackMe Write-Up
════════════════════════
𐀪 Author: Nagib Sherif
════════════════════════
ⴵ Time: Sat, 01 Aug 2026 00:37:30 GMT
════════════════════════
⌗ Tags: #ctf #tryhackme #tryhackme_writeup
════════════════════════
𐀪 Author: Nagib Sherif
════════════════════════
ⴵ Time: Sat, 01 Aug 2026 00:37:30 GMT
════════════════════════
⌗ Tags: #ctf #tryhackme #tryhackme_writeup
Medium
Beach Day (Boot to Root) — TryHackMe Write-Up
A CTF Walkthrough on Insecure PyYAML Deserialization (yaml.load), Web App Enumeration, and Linux Process Reconnaissance.
⤷ Title: When HTTP Cookies Become a Covert Channel: Packed Light
════════════════════════
𐀪 Author: AlZeaty
════════════════════════
ⴵ Time: Sat, 01 Aug 2026 00:04:58 GMT
════════════════════════
⌗ Tags: #ctf #cybersecurity #tryhackme #hacker_holidays_2026 #ctf_writeup
════════════════════════
𐀪 Author: AlZeaty
════════════════════════
ⴵ Time: Sat, 01 Aug 2026 00:04:58 GMT
════════════════════════
⌗ Tags: #ctf #cybersecurity #tryhackme #hacker_holidays_2026 #ctf_writeup
Medium
When HTTP Cookies Become a Covert Channel: Packed Light
Following the clues behind a covert HTTP Cookie exfiltration channel in a TryHackMe forensics challenge
⤷ Title: How I Found and Claimed a Subdomain Takeover on cewe.kruidvat.nl
════════════════════════
𐀪 Author: Lelouchzero
════════════════════════
ⴵ Time: Sat, 01 Aug 2026 00:58:24 GMT
════════════════════════
⌗ Tags: #web_application_security #ethical_hacking #subdomain_takeover #bug_hunting
════════════════════════
𐀪 Author: Lelouchzero
════════════════════════
ⴵ Time: Sat, 01 Aug 2026 00:58:24 GMT
════════════════════════
⌗ Tags: #web_application_security #ethical_hacking #subdomain_takeover #bug_hunting
Medium
How I Found and Claimed a Subdomain Takeover on cewe.kruidvat.nl
Subdomain takeovers are one of those vulnerabilities that sound simple in theory but pay well in practice — and I recently found one on a…
⤷ Title: Revisiting JWT Token Forgery Attack on Recent Bounty Target
════════════════════════
𐀪 Author: Alvin Ferdiansyah
════════════════════════
ⴵ Time: Sat, 01 Aug 2026 02:44:37 GMT
════════════════════════
⌗ Tags: #bug_bounty_tips #bug_bounty #jwt_exploitation #token #bug_bounty_writeup
════════════════════════
𐀪 Author: Alvin Ferdiansyah
════════════════════════
ⴵ Time: Sat, 01 Aug 2026 02:44:37 GMT
════════════════════════
⌗ Tags: #bug_bounty_tips #bug_bounty #jwt_exploitation #token #bug_bounty_writeup
Medium
Revisiting JWT Token Forgery Attack on Recent Bounty Target
alg=none x Attacker-Controlled Object Check
⤷ Title: Understanding AI-Assisted Command & Control Research | Why Security Teams Study C2 Frameworks
════════════════════════
𐀪 Author: Pentester Club
════════════════════════
ⴵ Time: Sat, 01 Aug 2026 03:54:05 GMT
════════════════════════
⌗ Tags: #hacking #cybersecurity #bug_bounty #artificial_intelligence #web_development
════════════════════════
𐀪 Author: Pentester Club
════════════════════════
ⴵ Time: Sat, 01 Aug 2026 03:54:05 GMT
════════════════════════
⌗ Tags: #hacking #cybersecurity #bug_bounty #artificial_intelligence #web_development
Medium
Understanding AI-Assisted Command & Control Research | Why Security Teams Study C2 Frameworks 🔥
Exploring the Defensive Value of Modern Command-and-Control Research for Blue Teams, Red Teams, and Threat Hunters
⤷ Title: Are Cloud-based Water Systems at Risk?
════════════════════════
𐀪 Author: News Folder 19
════════════════════════
ⴵ Time: Sat, 01 Aug 2026 03:27:57 GMT
════════════════════════
⌗ Tags: #hacking #business #cloud_computing #technology #water
════════════════════════
𐀪 Author: News Folder 19
════════════════════════
ⴵ Time: Sat, 01 Aug 2026 03:27:57 GMT
════════════════════════
⌗ Tags: #hacking #business #cloud_computing #technology #water
Medium
Are Cloud-based Water Systems at Risk?
Is your city’s water supply at risk from afar? It could be if the system is on the cloud. Hackers have targeted water systems in several US…
⤷ Title: A DeepSeek-Powered AI Agent Tried to Hack Exposed Servers.
════════════════════════
𐀪 Author: Keerthi Kumar
════════════════════════
ⴵ Time: Sat, 01 Aug 2026 02:46:18 GMT
════════════════════════
⌗ Tags: #threat_intelligence #cybersecurity #artificial_intelligence #ai_security #hacking
════════════════════════
𐀪 Author: Keerthi Kumar
════════════════════════
ⴵ Time: Sat, 01 Aug 2026 02:46:18 GMT
════════════════════════
⌗ Tags: #threat_intelligence #cybersecurity #artificial_intelligence #ai_security #hacking
Medium
A DeepSeek-Powered AI Agent Tried to Hack Exposed Servers. The Attempts Failed, but the Workflow Matters
Unit 42 uncovered a threat actor using DeepSeek, Hermes Agent and public exploit tools to automate vulnerability research, target discovery…
⤷ Title: Hire A Hacker To Catch A Cheating Spouse
════════════════════════
𐀪 Author: Jayson Tyson
════════════════════════
ⴵ Time: Sat, 01 Aug 2026 02:08:39 GMT
════════════════════════
⌗ Tags: #hacking #cheating #cheating_spouse #ethical_hacking #cybersecurity
════════════════════════
𐀪 Author: Jayson Tyson
════════════════════════
ⴵ Time: Sat, 01 Aug 2026 02:08:39 GMT
════════════════════════
⌗ Tags: #hacking #cheating #cheating_spouse #ethical_hacking #cybersecurity
Medium
Hire A Hacker To Catch A Cheating Spouse
∘ 1. Recover lost data ∘ 2. Digital Infidelity in the Modern Age ∘ 2.1 The Rise of Smartphone Secrets ∘ 2.2 Why Traditional Surveillance…
⤷ Title: From Shared Passwords to Verified PLC Access with OTAC TAG
════════════════════════
𐀪 Author: David SEHYEON Baek
════════════════════════
ⴵ Time: Sat, 01 Aug 2026 01:55:42 GMT
════════════════════════
⌗ Tags: #hacking #cybersecurity #operational_security #authentication #password_security
════════════════════════
𐀪 Author: David SEHYEON Baek
════════════════════════
ⴵ Time: Sat, 01 Aug 2026 01:55:42 GMT
════════════════════════
⌗ Tags: #hacking #cybersecurity #operational_security #authentication #password_security
Medium
From Shared Passwords to Verified PLC Access with OTAC TAG
The Machine That Cannot Tell Who You Are
⤷ Title: tryhackme beach bar day - 05 writeup
════════════════════════
𐀪 Author: Nanashi Bx2
════════════════════════
ⴵ Time: Sat, 01 Aug 2026 03:56:09 GMT
════════════════════════
⌗ Tags: #linux #hacker_holidays_2026 #cybersecurity #boot2root #tryhackme
════════════════════════
𐀪 Author: Nanashi Bx2
════════════════════════
ⴵ Time: Sat, 01 Aug 2026 03:56:09 GMT
════════════════════════
⌗ Tags: #linux #hacker_holidays_2026 #cybersecurity #boot2root #tryhackme
Medium
Hacker Holidays 2026 — Day 5
From HTML comment credential disclosure to YAML injection and privilege escalation through exposed service credentials.
⤷ Title: Solving Room “The Concierge Knows Too Much” (TryHackMe)
════════════════════════
𐀪 Author: rad0v
════════════════════════
ⴵ Time: Sat, 01 Aug 2026 02:10:05 GMT
════════════════════════
⌗ Tags: #tryhackme_walkthrough #tryhackme #cybersecurity #ai_security #ethical_hacking
════════════════════════
𐀪 Author: rad0v
════════════════════════
ⴵ Time: Sat, 01 Aug 2026 02:10:05 GMT
════════════════════════
⌗ Tags: #tryhackme_walkthrough #tryhackme #cybersecurity #ai_security #ethical_hacking
Medium
Solving Room “The Concierge Knows Too Much” (TryHackMe)
This is a very easy room which involves Prompt Injection and LLM Security. I will be further attaching screenshots of how I completed this…
⤷ Title: Networking Fundamentals: Every Cybersecurity Beginner Should Know
════════════════════════
𐀪 Author: Abinesh Masanamuthu
════════════════════════
ⴵ Time: Sat, 01 Aug 2026 03:01:03 GMT
════════════════════════
⌗ Tags: #cybersecurity #computer_networking #networking #cybersecurity_training #ethical_hacking
════════════════════════
𐀪 Author: Abinesh Masanamuthu
════════════════════════
ⴵ Time: Sat, 01 Aug 2026 03:01:03 GMT
════════════════════════
⌗ Tags: #cybersecurity #computer_networking #networking #cybersecurity_training #ethical_hacking
Medium
Networking Fundamentals: Every Cybersecurity Beginner Should Know
Build a Strong Foundation Before Diving into Cybersecurity
⤷ Title: One Header Away from 10+ GB of Customer Documents (PII)
════════════════════════
𐀪 Author: Alvin Ferdiansyah
════════════════════════
ⴵ Time: Mon, 27 Jul 2026 09:38:35 GMT
════════════════════════
⌗ Tags: #bug_bounty_writeup #bucketlist #bug_bounty #bug_bounty_tips #authentication
════════════════════════
𐀪 Author: Alvin Ferdiansyah
════════════════════════
ⴵ Time: Mon, 27 Jul 2026 09:38:35 GMT
════════════════════════
⌗ Tags: #bug_bounty_writeup #bucketlist #bug_bounty #bug_bounty_tips #authentication
Medium
One Header Away from 10+ GB of Customer Documents (PII) — $6K Bounty
An anonymous attacker could fully enumerate, read, and overwrite the production customer-service attachment bucket of a major insurer’s…
⤷ Title: Discovering an IDOR in Hoppscotch: A Deep Dive into Broken Access Control
════════════════════════
𐀪 Author: Ajith Prabhu
════════════════════════
ⴵ Time: Sat, 01 Aug 2026 05:25:14 GMT
════════════════════════
⌗ Tags: #cybersecurity #bug_bounty #open_source #graphql #application_security
════════════════════════
𐀪 Author: Ajith Prabhu
════════════════════════
ⴵ Time: Sat, 01 Aug 2026 05:25:14 GMT
════════════════════════
⌗ Tags: #cybersecurity #bug_bounty #open_source #graphql #application_security
Medium
Discovering an IDOR in Hoppscotch: A Deep Dive into Broken Access Control
How a seemingly harmless GraphQL query exposed private user history and highlighted the importance of authorization in nested resolvers.
⤷ Title: Host & Network Penetration Testing: Exploitation CTF 2
════════════════════════
𐀪 Author: Gaonkarpranay
════════════════════════
ⴵ Time: Sat, 01 Aug 2026 04:33:37 GMT
════════════════════════
⌗ Tags: #my_ejpt_experience #exploitation #ejpt_exam_guide #hacking #metasploit
════════════════════════
𐀪 Author: Gaonkarpranay
════════════════════════
ⴵ Time: Sat, 01 Aug 2026 04:33:37 GMT
════════════════════════
⌗ Tags: #my_ejpt_experience #exploitation #ejpt_exam_guide #hacking #metasploit
Medium
Host & Network Penetration Testing: Exploitation CTF 2
Hello folks! Today we’ll be discussing about one more CTF challenge of the module Host and Network Penetration Testing and the sub module…
⤷ Title: Monitoring writeup/walkthrough Proving Ground |OSCP prep/lab
════════════════════════
𐀪 Author: CTFwriteups
════════════════════════
ⴵ Time: Sat, 01 Aug 2026 04:01:03 GMT
════════════════════════
⌗ Tags: #provinggrounds #penetration_testing #cybersecurity #oscp #linux
════════════════════════
𐀪 Author: CTFwriteups
════════════════════════
ⴵ Time: Sat, 01 Aug 2026 04:01:03 GMT
════════════════════════
⌗ Tags: #provinggrounds #penetration_testing #cybersecurity #oscp #linux
Medium
Monitoring writeup/walkthrough Proving Ground |OSCP prep/lab
Reconnaissance : first step