⤷ Title: Broken Access Control: Guest User Could Modify Global Project View Settings
════════════════════════
𐀪 Author: Mahmoudelsadany
════════════════════════
ⴵ Time: Sun, 02 Aug 2026 09:16:41 GMT
════════════════════════
⌗ Tags: #bug_bounty #abc #bug_bounty_tips #broken_access_control
════════════════════════
𐀪 Author: Mahmoudelsadany
════════════════════════
ⴵ Time: Sun, 02 Aug 2026 09:16:41 GMT
════════════════════════
⌗ Tags: #bug_bounty #abc #bug_bounty_tips #broken_access_control
Medium
Broken Access Control: Guest User Could Modify Global Project View Settings
One of the most effective ways to find high-impact vulnerabilities is to focus on newly released features. Every new feature introduces new…
⤷ Title: Business Logic Flaws in AI Assistant Feature
════════════════════════
𐀪 Author: Mahmoudelsadany
════════════════════════
ⴵ Time: Sun, 02 Aug 2026 09:11:24 GMT
════════════════════════
⌗ Tags: #business_logic_flaw #bug_bounty
════════════════════════
𐀪 Author: Mahmoudelsadany
════════════════════════
ⴵ Time: Sun, 02 Aug 2026 09:11:24 GMT
════════════════════════
⌗ Tags: #business_logic_flaw #bug_bounty
Medium
Business Logic Flaws in AI Assistant Feature
This was my first bug bounty finding in a self-hosted program, and it taught me one of the most valuable lessons in security testing:
⤷ Title: Sqli-Header-Lab
════════════════════════
𐀪 Author: Youssefelbakrey
════════════════════════
ⴵ Time: Sun, 02 Aug 2026 08:57:15 GMT
════════════════════════
⌗ Tags: #hackerone #writeup #bug_bounty
════════════════════════
𐀪 Author: Youssefelbakrey
════════════════════════
ⴵ Time: Sun, 02 Aug 2026 08:57:15 GMT
════════════════════════
⌗ Tags: #hackerone #writeup #bug_bounty
Medium
Sqli-Header-Lab
While reading through various cybersecurity resources, I came across some interesting ideas that weren’t widely discussed in the community…
⤷ Title: Top 15 Free Cybersecurity Tools Every Security Professional Should Know
════════════════════════
𐀪 Author: Samit Hota
════════════════════════
ⴵ Time: Sun, 02 Aug 2026 08:01:05 GMT
════════════════════════
⌗ Tags: #cybersecurity #threat_hunting #information_security #bug_bounty #free_tools
════════════════════════
𐀪 Author: Samit Hota
════════════════════════
ⴵ Time: Sun, 02 Aug 2026 08:01:05 GMT
════════════════════════
⌗ Tags: #cybersecurity #threat_hunting #information_security #bug_bounty #free_tools
Medium
Top 15 Free Cybersecurity Tools Every Security Professional Should Know
Discover the top 15 free cybersecurity tools in 2026 for penetration testing, threat hunting, digital forensics, malware analysis, cloud…
⤷ Title: ₹2.26 Crore Income Tax Refund Fraud Using a Hacked e-Filing Account
════════════════════════
𐀪 Author: Himanshu Bhatt
════════════════════════
ⴵ Time: Sun, 02 Aug 2026 09:00:24 GMT
════════════════════════
⌗ Tags: #cybersecurity #account #tax_returns #fraud #hacking
════════════════════════
𐀪 Author: Himanshu Bhatt
════════════════════════
ⴵ Time: Sun, 02 Aug 2026 09:00:24 GMT
════════════════════════
⌗ Tags: #cybersecurity #account #tax_returns #fraud #hacking
Medium
₹2.26 Crore Income Tax Refund Fraud Using a Hacked e-Filing Account
Case Overview
⤷ Title: NVD in Practice: A Real Vulnerability, a Real Trend, and a Real Code Flaw
════════════════════════
𐀪 Author: Ismayilovmirresul
════════════════════════
ⴵ Time: Sun, 02 Aug 2026 08:13:05 GMT
════════════════════════
⌗ Tags: #information_security #cve #cybersecurity #infosec #vulnerability_management
════════════════════════
𐀪 Author: Ismayilovmirresul
════════════════════════
ⴵ Time: Sun, 02 Aug 2026 08:13:05 GMT
════════════════════════
⌗ Tags: #information_security #cve #cybersecurity #infosec #vulnerability_management
Medium
NVD in Practice: A Real Vulnerability, a Real Trend, and a Real Code Flaw
Reading about CVE, CWE, and the NVD in the abstract only goes so far. In this post I apply those concepts to three concrete exercises…
⤷ Title: CWE Deep Dive: The Root-Cause Language Behind Every Vulnerability
════════════════════════
𐀪 Author: Mirrasul Ismayilov
════════════════════════
ⴵ Time: Sun, 02 Aug 2026 08:07:42 GMT
════════════════════════
⌗ Tags: #cve #information_security #vulnerability_management #infosec #cybersecurity
════════════════════════
𐀪 Author: Mirrasul Ismayilov
════════════════════════
ⴵ Time: Sun, 02 Aug 2026 08:07:42 GMT
════════════════════════
⌗ Tags: #cve #information_security #vulnerability_management #infosec #cybersecurity
Medium
CWE Deep Dive: The Root-Cause Language Behind Every Vulnerability
If CVE tells us *that* a vulnerability exists in a specific product, CWE tells us *why*. In this post, we unpack the Common Weakness…
⤷ Title: CVE Deep Dive: Purpose, Severity, the CVE List, and Calculating CVSS by Hand
════════════════════════
𐀪 Author: Mirrasul Ismayilov
════════════════════════
ⴵ Time: Sun, 02 Aug 2026 08:06:02 GMT
════════════════════════
⌗ Tags: #cybersecurity #infosec #cve #vulnerability_management #information_security
════════════════════════
𐀪 Author: Mirrasul Ismayilov
════════════════════════
ⴵ Time: Sun, 02 Aug 2026 08:06:02 GMT
════════════════════════
⌗ Tags: #cybersecurity #infosec #cve #vulnerability_management #information_security
Medium
CVE Deep Dive: Purpose, Severity, the CVE List, and Calculating CVSS by Hand
Every week, thousands of new software flaws are found across the products we all depend on. Without a shared, standardized way to name and…
⤷ Title: From Recon to RCE: Inside a Black-Box Penetration Test
════════════════════════
𐀪 Author: Ahmed Atef
════════════════════════
ⴵ Time: Sun, 02 Aug 2026 08:30:09 GMT
════════════════════════
⌗ Tags: #web_security #cybersecurity #penetration_testing #vulnerability_assessment
════════════════════════
𐀪 Author: Ahmed Atef
════════════════════════
ⴵ Time: Sun, 02 Aug 2026 08:30:09 GMT
════════════════════════
⌗ Tags: #web_security #cybersecurity #penetration_testing #vulnerability_assessment
Medium
From Recon to RCE: Inside a Black-Box Penetration Test
Hello everyone! Today, I want to share how I approached a recent penetration test on an e-learning platform.
⤷ Title: Week 5 of My Thunder Cipher Cybersecurity Internship: Exploring SIEM, API Security & Vulnerability…
════════════════════════
𐀪 Author: cyb3rPh03n1x
════════════════════════
ⴵ Time: Sun, 02 Aug 2026 08:02:46 GMT
════════════════════════
⌗ Tags: #penetration_testing #api_security #siem #cybersecurity
════════════════════════
𐀪 Author: cyb3rPh03n1x
════════════════════════
ⴵ Time: Sun, 02 Aug 2026 08:02:46 GMT
════════════════════════
⌗ Tags: #penetration_testing #api_security #siem #cybersecurity
Medium
Week 5 of My Thunder Cipher Cybersecurity Internship: Exploring SIEM, API Security & Vulnerability Assessment
Week 5 marked a significant shift in my internship journey. While the previous weeks focused primarily on networking, Linux fundamentals…
⤷ Title: TryHackMe: The Concierge Knows Too Much (Hacker Holidays 2026 — Day 1)
════════════════════════
𐀪 Author: d4rkwh15k3r5
════════════════════════
ⴵ Time: Sun, 02 Aug 2026 08:44:51 GMT
════════════════════════
⌗ Tags: #tryhackme_walkthrough #artificial_intelligence #prompt_injection_attack #cybersecurity #tryhackme
════════════════════════
𐀪 Author: d4rkwh15k3r5
════════════════════════
ⴵ Time: Sun, 02 Aug 2026 08:44:51 GMT
════════════════════════
⌗ Tags: #tryhackme_walkthrough #artificial_intelligence #prompt_injection_attack #cybersecurity #tryhackme
Medium
TryHackMe: The Concierge Knows Too Much (Hacker Holidays 2026 — Day 1)
A quick walkthrough for Day 1 of TryHackMe’s Hacker Holidays! In this challenge, we take on an AI-focused box to test how easily a…
⤷ Title: TryHackMe | Beach Bar | Walkthrough
════════════════════════
𐀪 Author: Sornphut
════════════════════════
ⴵ Time: Sun, 02 Aug 2026 08:37:02 GMT
════════════════════════
⌗ Tags: #tryhackme #tryhackme_walkthrough #yaml #tryhackme_writeup #python
════════════════════════
𐀪 Author: Sornphut
════════════════════════
ⴵ Time: Sun, 02 Aug 2026 08:37:02 GMT
════════════════════════
⌗ Tags: #tryhackme #tryhackme_walkthrough #yaml #tryhackme_writeup #python
Medium
TryHackMe | Beach Bar | Walkthrough
1.Login via Credential
⤷ Title: Hacking Misconfigured S3 Buckets
════════════════════════
𐀪 Author: Nitin yadav
════════════════════════
ⴵ Time: Sun, 02 Aug 2026 11:31:01 GMT
════════════════════════
⌗ Tags: #aws_s3 #ethcial_hacking #cybersecurity #bug_bounty #aws
════════════════════════
𐀪 Author: Nitin yadav
════════════════════════
ⴵ Time: Sun, 02 Aug 2026 11:31:01 GMT
════════════════════════
⌗ Tags: #aws_s3 #ethcial_hacking #cybersecurity #bug_bounty #aws
Medium
Hacking Misconfigured S3 Buckets
What’s up everyone! Nitin here 👋
⤷ Title: The API That Returned Every Customer’s Private AI Assistant
════════════════════════
𐀪 Author: Ehtesham Ul Haq
════════════════════════
ⴵ Time: Sun, 02 Aug 2026 11:26:02 GMT
════════════════════════
⌗ Tags: #broken_access_control #bug_bounty_writeup #owasp_top_10 #api #bug_bounty
════════════════════════
𐀪 Author: Ehtesham Ul Haq
════════════════════════
ⴵ Time: Sun, 02 Aug 2026 11:26:02 GMT
════════════════════════
⌗ Tags: #broken_access_control #bug_bounty_writeup #owasp_top_10 #api #bug_bounty
Medium
The API That Returned Every Customer’s Private AI Assistant
Free Article Link: Click for free!
⤷ Title: Writing Custom Exploits: From Vulnerability Discovery to Working PoC
════════════════════════
𐀪 Author: ATNO For Cybersecurity | Hacking
════════════════════════
ⴵ Time: Sun, 02 Aug 2026 11:25:48 GMT
════════════════════════
⌗ Tags: #cybersecurity #bug_bounty #custom_exploit #exploit #ethical_hacking
════════════════════════
𐀪 Author: ATNO For Cybersecurity | Hacking
════════════════════════
ⴵ Time: Sun, 02 Aug 2026 11:25:48 GMT
════════════════════════
⌗ Tags: #cybersecurity #bug_bounty #custom_exploit #exploit #ethical_hacking
Medium
🧨 Writing Custom Exploits: From Vulnerability Discovery to Working PoC
A custom exploit is code you write yourself to demonstrate that a vulnerability is actually exploitable.
⤷ Title: npm update and Pray: When the Security Fix Becomes the Security Incident☠️
════════════════════════
𐀪 Author: Sudarshan Patel
════════════════════════
ⴵ Time: Sun, 02 Aug 2026 11:20:30 GMT
════════════════════════
⌗ Tags: #cybersecurity #application_security #cyber_security_awareness #security #hacking
════════════════════════
𐀪 Author: Sudarshan Patel
════════════════════════
ⴵ Time: Sun, 02 Aug 2026 11:20:30 GMT
════════════════════════
⌗ Tags: #cybersecurity #application_security #cyber_security_awareness #security #hacking
⤷ Title: Making time for the inconsequential
════════════════════════
𐀪 Author: JRIngram
════════════════════════
ⴵ Time: Sun, 02 Aug 2026 11:03:00 GMT
════════════════════════
⌗ Tags: #mindfulness #scripting #reading #burnout #hacking
════════════════════════
𐀪 Author: JRIngram
════════════════════════
ⴵ Time: Sun, 02 Aug 2026 11:03:00 GMT
════════════════════════
⌗ Tags: #mindfulness #scripting #reading #burnout #hacking
Medium
Making time for the inconsequential
I sit in a chair of my little bistro set, gazing out from the decking into the garden beyond. The morning cloud giving way to a colourful…
⤷ Title: Compromising Interpreter on HackTheBox — By BitR1FT
════════════════════════
𐀪 Author: BitR1ft
════════════════════════
ⴵ Time: Sun, 02 Aug 2026 11:44:36 GMT
════════════════════════
⌗ Tags: #bitr1ft #infosec #hackthebox #ctf_writeup #cybersecurity
════════════════════════
𐀪 Author: BitR1ft
════════════════════════
ⴵ Time: Sun, 02 Aug 2026 11:44:36 GMT
════════════════════════
⌗ Tags: #bitr1ft #infosec #hackthebox #ctf_writeup #cybersecurity
Medium
Compromising Interpreter on HackTheBox — By BitR1FT
Exploiting Mirth Connect (CVE-2023–43208), plaintext database credentials, and a sneaky Python f-string injection for root.
⤷ Title: Pwning FACTS on HackTheBox — By BitR1FT
════════════════════════
𐀪 Author: BitR1ft
════════════════════════
ⴵ Time: Sun, 02 Aug 2026 11:38:34 GMT
════════════════════════
⌗ Tags: #ctf_writeup #infosec #penetration_testing #bitrift #hackthebox
════════════════════════
𐀪 Author: BitR1ft
════════════════════════
ⴵ Time: Sun, 02 Aug 2026 11:38:34 GMT
════════════════════════
⌗ Tags: #ctf_writeup #infosec #penetration_testing #bitrift #hackthebox
Medium
Pwning FACTS on HackTheBox — By BitR1FT
Exploiting Mass Assignment (CVE-2025–2304), Path Traversal (CVE-2024–46987), and a Facter Sudo Misconfiguration for Full System Compromise.
⤷ Title: Reverse Shell vs Bind Shell: Concepts, Network Flow, and Real-Life Analogies
════════════════════════
𐀪 Author: Azijul Haque
════════════════════════
ⴵ Time: Sun, 02 Aug 2026 10:35:15 GMT
════════════════════════
⌗ Tags: #cybersecurity #penetration_testing #ethical_hacking #networking #linux
════════════════════════
𐀪 Author: Azijul Haque
════════════════════════
ⴵ Time: Sun, 02 Aug 2026 10:35:15 GMT
════════════════════════
⌗ Tags: #cybersecurity #penetration_testing #ethical_hacking #networking #linux
Medium
Reverse Shell vs Bind Shell
A beginner-friendly guide to understanding Bind Shells and Reverse Shells using simple explanations, diagrams, and real-life analogies.
⤷ Title: TryHackMe Beach Bar Walkthrough (Simple Step-by-Step Guide)
════════════════════════
𐀪 Author: Mohammed Ahraskhan kp
════════════════════════
ⴵ Time: Sun, 02 Aug 2026 11:48:57 GMT
════════════════════════
⌗ Tags: #ethical_hacking #kali_linux #beach_bars #cybersecurity #tryhackme
════════════════════════
𐀪 Author: Mohammed Ahraskhan kp
════════════════════════
ⴵ Time: Sun, 02 Aug 2026 11:48:57 GMT
════════════════════════
⌗ Tags: #ethical_hacking #kali_linux #beach_bars #cybersecurity #tryhackme
Medium
TryHackMe Beach Bar Walkthrough (Simple Step-by-Step Guide)
TryHackMe Beach Bar Walkthrough (Simple Step-by-Step Guide)