⤷ Title: Arbitrary File Upload via “External Files” feature allows client-side Remote Code Execution (RCE)
════════════════════════
𐀪 Author: venomnis
════════════════════════
ⴵ Time: Wed, 15 Apr 2026 12:13:35 GMT
════════════════════════
⌗ Tags: #cybersecurity #security_testing #ethical_hacking #bug_bounty #writeup
════════════════════════
𐀪 Author: venomnis
════════════════════════
ⴵ Time: Wed, 15 Apr 2026 12:13:35 GMT
════════════════════════
⌗ Tags: #cybersecurity #security_testing #ethical_hacking #bug_bounty #writeup
Medium
Arbitrary File Upload via “External Files” feature allows client-side Remote Code Execution (RCE)
Turning client-side-only upload validation into an RCE path
⤷ Title: MCP Security Testing | Using Burp Suite
════════════════════════
𐀪 Author: Rahul Singh Chauhan
════════════════════════
ⴵ Time: Mon, 20 Apr 2026 09:11:54 GMT
════════════════════════
⌗ Tags: #hackerone #mcps #security_testing #cybersecurity #penetration_testing
════════════════════════
𐀪 Author: Rahul Singh Chauhan
════════════════════════
ⴵ Time: Mon, 20 Apr 2026 09:11:54 GMT
════════════════════════
⌗ Tags: #hackerone #mcps #security_testing #cybersecurity #penetration_testing
Medium
MCP Security Testing | Using Burp Suite
Hey everyone, in this article we’re going to understand what MCP — Model Context Protocol — is, and how we can test it using Burp Suite.
⤷ Title: ️ OWASP ZAP Deep Dive: The DevSecOps Guide to Automated Web Security Testing
════════════════════════
𐀪 Author: TechwidSush
════════════════════════
ⴵ Time: Mon, 25 May 2026 09:20:31 GMT
════════════════════════
⌗ Tags: #application_security #security_testing #tech_deep_dive #automation #owaspzap
════════════════════════
𐀪 Author: TechwidSush
════════════════════════
ⴵ Time: Mon, 25 May 2026 09:20:31 GMT
════════════════════════
⌗ Tags: #application_security #security_testing #tech_deep_dive #automation #owaspzap
Medium
🛡️ OWASP ZAP Deep Dive: The DevSecOps Guide to Automated Web Security Testing
🚀 Introduction
⤷ Title: What is Re-Testing?
════════════════════════
𐀪 Author: Little_Sun4lower
════════════════════════
ⴵ Time: Wed, 27 May 2026 07:09:24 GMT
════════════════════════
⌗ Tags: #penetration_testing #security_testing #application_security #ethical_hacking #cybersecurity
════════════════════════
𐀪 Author: Little_Sun4lower
════════════════════════
ⴵ Time: Wed, 27 May 2026 07:09:24 GMT
════════════════════════
⌗ Tags: #penetration_testing #security_testing #application_security #ethical_hacking #cybersecurity
Medium
What is Re-Testing?
A penetration test is completed.
The report is delivered.
The client implements the fixes.
The report is delivered.
The client implements the fixes.
⤷ Title: What Happens During a Penetration Test — A Step by Step Breakdown
════════════════════════
𐀪 Author: Dureshahwar
════════════════════════
ⴵ Time: Sun, 31 May 2026 21:44:53 GMT
════════════════════════
⌗ Tags: #penetration_testing #cybersecurity #security_testing #infosec
════════════════════════
𐀪 Author: Dureshahwar
════════════════════════
ⴵ Time: Sun, 31 May 2026 21:44:53 GMT
════════════════════════
⌗ Tags: #penetration_testing #cybersecurity #security_testing #infosec
Medium
What Happens During a Penetration Test — A Step by Step Breakdown
A penetration test is not about breaking things. It is about finding out what could break before someone else does.
⤷ Title: What Actually Happens During a Penetration Test From Someone Who Does Them
════════════════════════
𐀪 Author: mrwhite18
════════════════════════
ⴵ Time: Wed, 03 Jun 2026 07:46:00 GMT
════════════════════════
⌗ Tags: #web_application_security #vapt #ethical_hacking #security_testing #penetration_testing
════════════════════════
𐀪 Author: mrwhite18
════════════════════════
ⴵ Time: Wed, 03 Jun 2026 07:46:00 GMT
════════════════════════
⌗ Tags: #web_application_security #vapt #ethical_hacking #security_testing #penetration_testing
Medium
What Actually Happens During a Penetration Test From Someone Who Does Them
Most people hear “penetration test” and picture a guy in a hoodie furiously typing in a dark room while green text scrolls down his screen.
⤷ Title: Ghostcat-PWN: When an Old Tomcat Vulnerability Opens the org doors
════════════════════════
𐀪 Author: Deepanshu khanna
════════════════════════
ⴵ Time: Wed, 03 Jun 2026 13:59:23 GMT
════════════════════════
⌗ Tags: #cve_2020_1938 #apache_tomcat #red_team #penetration_testing #security_testing
════════════════════════
𐀪 Author: Deepanshu khanna
════════════════════════
ⴵ Time: Wed, 03 Jun 2026 13:59:23 GMT
════════════════════════
⌗ Tags: #cve_2020_1938 #apache_tomcat #red_team #penetration_testing #security_testing
Medium
Ghostcat-PWN: When an Old Tomcat Vulnerability Opens the org doors
From exposed AJP connectors to reliable post-exploitation workflows: the story behind Ghostcat-PWN and our experience with CVE-2020–1938
⤷ Title: “How to Set Up an Android Application Security Testing Lab Fast!!”(for kali linux)
════════════════════════
𐀪 Author: Muhammad Murtaza
════════════════════════
ⴵ Time: Sun, 21 Jun 2026 19:00:35 GMT
════════════════════════
⌗ Tags: #mobile_app_security #security_testing #android_pentesting #bug_bounty #vulnerability_assessment
════════════════════════
𐀪 Author: Muhammad Murtaza
════════════════════════
ⴵ Time: Sun, 21 Jun 2026 19:00:35 GMT
════════════════════════
⌗ Tags: #mobile_app_security #security_testing #android_pentesting #bug_bounty #vulnerability_assessment
Medium
“How to Set Up an Android Application Security Testing Lab Fast!!”(for kali linux)
by Muhammad Murtaza(Penetration Tester/Cybersecurity expert)
⤷ Title: bWAPP — iFrame Injection
════════════════════════
𐀪 Author: Kamal S
════════════════════════
ⴵ Time: Sun, 12 Jul 2026 17:49:40 GMT
════════════════════════
⌗ Tags: #owasp #security_testing #bug_bounty #iframe_injection #bwapp
════════════════════════
𐀪 Author: Kamal S
════════════════════════
ⴵ Time: Sun, 12 Jul 2026 17:49:40 GMT
════════════════════════
⌗ Tags: #owasp #security_testing #bug_bounty #iframe_injection #bwapp
Medium
bWAPP — iFrame Injection
Web applications often display content from external sources to improve functionality or user experience. One common way to do this is by…
⤷ Title: Is Penetration Testing Still Relevant
════════════════════════
𐀪 Author: Sachin
════════════════════════
ⴵ Time: Thu, 23 Jul 2026 15:13:46 GMT
════════════════════════
⌗ Tags: #security_testing #penetration_testing #cybersecurity #cyber_physical_systems
════════════════════════
𐀪 Author: Sachin
════════════════════════
ⴵ Time: Thu, 23 Jul 2026 15:13:46 GMT
════════════════════════
⌗ Tags: #security_testing #penetration_testing #cybersecurity #cyber_physical_systems
Medium
Is Penetration Testing Still Relevant
What happens when your security testing is a snapshot but your systems never stop moving
⤷ Title: Why Enterprise Application Security Testing Must Move Beyond Vulnerability Scanning
════════════════════════
𐀪 Author: Taylor Brooks
════════════════════════
ⴵ Time: Fri, 14 Aug 2026 05:42:55 GMT
════════════════════════
⌗ Tags: #security_testing #application_security
════════════════════════
𐀪 Author: Taylor Brooks
════════════════════════
ⴵ Time: Fri, 14 Aug 2026 05:42:55 GMT
════════════════════════
⌗ Tags: #security_testing #application_security
Medium
Why Enterprise Application Security Testing Must Move Beyond Vulnerability Scanning
Enterprise applications now sit at the center of finance, operations, customer experience, workforce management, and digital commerce…