⤷ Title: Neighbour CTF Walkthrough (TryHackMe)
════════════════════════
𐀪 Author: Vanessa3
════════════════════════
ⴵ Time: Wed, 22 Jul 2026 06:10:53 GMT
════════════════════════
⌗ Tags: #ethical_hacking #tryhackme #idor_vulnerability #web_application_security #ctf
════════════════════════
𐀪 Author: Vanessa3
════════════════════════
ⴵ Time: Wed, 22 Jul 2026 06:10:53 GMT
════════════════════════
⌗ Tags: #ethical_hacking #tryhackme #idor_vulnerability #web_application_security #ctf
Medium
Neighbour CTF Walkthrough (TryHackMe)
Neighbour lab is a beginner-friendly CTF provides a practical introduction to the IDOR (Insecure Direct Object Reference) vulnerability.
⤷ Title: GitHub Just Halved Its Bug Bounty Payouts — Here’s What Actually Changed
════════════════════════
𐀪 Author: Harsh_Exploits
════════════════════════
ⴵ Time: Thu, 23 Jul 2026 05:27:29 GMT
════════════════════════
⌗ Tags: #vulnerability #cybersecurity #bug_bounty_tips #web_application_security #bug_bounty
════════════════════════
𐀪 Author: Harsh_Exploits
════════════════════════
ⴵ Time: Thu, 23 Jul 2026 05:27:29 GMT
════════════════════════
⌗ Tags: #vulnerability #cybersecurity #bug_bounty_tips #web_application_security #bug_bounty
Medium
GitHub Just Halved Its Bug Bounty Payouts — Here’s What Actually Changed
Starting July 27, 2026, public rewards drop by 50–59% across the board, while a new invite-only VIP tier pays up to 3x more for the same…
⤷ Title: Bypassing reCAPTCHA Due to Missing Server-Side Validation
════════════════════════
𐀪 Author: 0X0DOoOM
════════════════════════
ⴵ Time: Thu, 23 Jul 2026 14:07:35 GMT
════════════════════════
⌗ Tags: #hackerone #recaptcha #web_application_security #bug_bounty #misconfiguration
════════════════════════
𐀪 Author: 0X0DOoOM
════════════════════════
ⴵ Time: Thu, 23 Jul 2026 14:07:35 GMT
════════════════════════
⌗ Tags: #hackerone #recaptcha #web_application_security #bug_bounty #misconfiguration
Medium
Bypassing reCAPTCHA Due to Missing Server-Side Validation
اللَهُمَّ صلِّ وسَلِم وبَارِك على سيدنا محمد (ﷺ)
⤷ Title: HTML — disabled buttons Challenge | Web-Client | by Kirhash
════════════════════════
𐀪 Author: Kirtimaan
════════════════════════
ⴵ Time: Fri, 24 Jul 2026 07:29:36 GMT
════════════════════════
⌗ Tags: #cybersecurity #web_application_security #penetration_testing
════════════════════════
𐀪 Author: Kirtimaan
════════════════════════
ⴵ Time: Fri, 24 Jul 2026 07:29:36 GMT
════════════════════════
⌗ Tags: #cybersecurity #web_application_security #penetration_testing
Medium
HTML — disabled buttons Challenge | Web-Client | by Kirhash
Platform : “root-me.org”
⤷ Title: Open Redirect Vulnerabilities: How Whitelist Validation Gets Bypassed
════════════════════════
𐀪 Author: Hasyyb
════════════════════════
ⴵ Time: Sun, 26 Jul 2026 10:13:46 GMT
════════════════════════
⌗ Tags: #web_application_security #application_security #api_penetration_testing #secure_coding
════════════════════════
𐀪 Author: Hasyyb
════════════════════════
ⴵ Time: Sun, 26 Jul 2026 10:13:46 GMT
════════════════════════
⌗ Tags: #web_application_security #application_security #api_penetration_testing #secure_coding
Medium
Open Redirect Vulnerabilities: How Whitelist Validation Gets Bypassed
Open redirect bugs are deceptively simple — and deceptively easy to get wrong. A single string-matching mistake in a “safe domain” check…
⤷ Title: TryHackMe XSS Introduction Walkthrough
════════════════════════
𐀪 Author: Rich
════════════════════════
ⴵ Time: Mon, 27 Jul 2026 20:47:05 GMT
════════════════════════
⌗ Tags: #tryhackme #tryhackme_writeup #cross_site_scripting #tryhackme_walkthrough #web_application_security
════════════════════════
𐀪 Author: Rich
════════════════════════
ⴵ Time: Mon, 27 Jul 2026 20:47:05 GMT
════════════════════════
⌗ Tags: #tryhackme #tryhackme_writeup #cross_site_scripting #tryhackme_walkthrough #web_application_security
Medium
TryHackMe XSS Introduction Walkthrough
TL;DR Walkthrough of the TryHackMe room XSS Introduction.
⤷ Title: Application Security Testing Explained: Types, Benefits, Process & Best Practices
════════════════════════
𐀪 Author: Sam Edward
════════════════════════
ⴵ Time: Thu, 30 Jul 2026 11:32:19 GMT
════════════════════════
⌗ Tags: #real_application_security #web_application_security #application_security
════════════════════════
𐀪 Author: Sam Edward
════════════════════════
ⴵ Time: Thu, 30 Jul 2026 11:32:19 GMT
════════════════════════
⌗ Tags: #real_application_security #web_application_security #application_security
Medium
Application Security Testing Explained: Types, Benefits, Process & Best Practices
As businesses continue to embrace digital transformation, applications have become the backbone of customer interactions, financial…
⤷ Title: What is Ffuf And How we can use it.
════════════════════════
𐀪 Author: PWNXOTUS
════════════════════════
ⴵ Time: Fri, 31 Jul 2026 20:05:22 GMT
════════════════════════
⌗ Tags: #web_application_security #penetration_testing #endpoint_security #reconnaissance #cybersecurity
════════════════════════
𐀪 Author: PWNXOTUS
════════════════════════
ⴵ Time: Fri, 31 Jul 2026 20:05:22 GMT
════════════════════════
⌗ Tags: #web_application_security #penetration_testing #endpoint_security #reconnaissance #cybersecurity
Medium
What is Ffuf And How we can use it.
Here is your comprehensive guide to mastering FFUF.
⤷ Title: How I Found a Critical Race Condition on Kruidvat — A Step-by-Step Bug Bounty Walkthrough
════════════════════════
𐀪 Author: Lelouchzero
════════════════════════
ⴵ Time: Sat, 01 Aug 2026 00:30:47 GMT
════════════════════════
⌗ Tags: #race_condition #web_application_security #ethical_hacking #bug_bounty #critical_vulnerabilities
════════════════════════
𐀪 Author: Lelouchzero
════════════════════════
ⴵ Time: Sat, 01 Aug 2026 00:30:47 GMT
════════════════════════
⌗ Tags: #race_condition #web_application_security #ethical_hacking #bug_bounty #critical_vulnerabilities
Medium
How I Found a Critical Race Condition on Kruidvat — A Step-by-Step Bug Bounty Walkthrough
Introduction
⤷ Title: How I Found and Claimed a Subdomain Takeover on cewe.kruidvat.nl
════════════════════════
𐀪 Author: Lelouchzero
════════════════════════
ⴵ Time: Sat, 01 Aug 2026 00:58:24 GMT
════════════════════════
⌗ Tags: #web_application_security #ethical_hacking #subdomain_takeover #bug_hunting
════════════════════════
𐀪 Author: Lelouchzero
════════════════════════
ⴵ Time: Sat, 01 Aug 2026 00:58:24 GMT
════════════════════════
⌗ Tags: #web_application_security #ethical_hacking #subdomain_takeover #bug_hunting
Medium
How I Found and Claimed a Subdomain Takeover on cewe.kruidvat.nl
Subdomain takeovers are one of those vulnerabilities that sound simple in theory but pay well in practice — and I recently found one on a…
⤷ Title: Burp AT: Bringing Agentic AI Into Web Application Pentesting
════════════════════════
𐀪 Author: Sandeepappsec
════════════════════════
ⴵ Time: Tue, 04 Aug 2026 07:03:23 GMT
════════════════════════
⌗ Tags: #penetration_testing #ai #cybersecurity #web_application_security #ai_security
════════════════════════
𐀪 Author: Sandeepappsec
════════════════════════
ⴵ Time: Tue, 04 Aug 2026 07:03:23 GMT
════════════════════════
⌗ Tags: #penetration_testing #ai #cybersecurity #web_application_security #ai_security
Medium
Burp AT: Bringing Agentic AI Into Web Application Pentesting
Web application penetration testing isn’t always about finding a vulnerability.
⤷ Title: Server-side Template Injection (tryhackme room)
════════════════════════
𐀪 Author: Muhammad Jubair Hossain
════════════════════════
ⴵ Time: Wed, 05 Aug 2026 10:52:38 GMT
════════════════════════
⌗ Tags: #penetration_testing #ssti_exploitation #web_application_security #ssti
════════════════════════
𐀪 Author: Muhammad Jubair Hossain
════════════════════════
ⴵ Time: Wed, 05 Aug 2026 10:52:38 GMT
════════════════════════
⌗ Tags: #penetration_testing #ssti_exploitation #web_application_security #ssti
Medium
Server-side Template Injection (tryhackme room)
Lab Setup
⤷ Title: Hardening against CSV Injection in Umbraco
════════════════════════
𐀪 Author: Adam C
════════════════════════
ⴵ Time: Sun, 09 Aug 2026 16:11:52 GMT
════════════════════════
⌗ Tags: #hacking #umbraco #penetration_testing #csv #web_application_security
════════════════════════
𐀪 Author: Adam C
════════════════════════
ⴵ Time: Sun, 09 Aug 2026 16:11:52 GMT
════════════════════════
⌗ Tags: #hacking #umbraco #penetration_testing #csv #web_application_security
Medium
Hardening against CSV Injection in Umbraco
Hello, long time no blog. It has certainly been a while but I am still doing penetration testing. Some say I am wasting my potential by not…
⤷ Title: 30 Crits in One Week? How Our Team Found 55 Vulnerabilities While Pentesting the U.S. Government
════════════════════════
𐀪 Author: Broken Access Pentests
════════════════════════
ⴵ Time: Tue, 11 Aug 2026 23:29:04 GMT
════════════════════════
⌗ Tags: #cybersecurity #web_application_security #vulnerability_research #penetration_testing #offensive_security
════════════════════════
𐀪 Author: Broken Access Pentests
════════════════════════
ⴵ Time: Tue, 11 Aug 2026 23:29:04 GMT
════════════════════════
⌗ Tags: #cybersecurity #web_application_security #vulnerability_research #penetration_testing #offensive_security
Medium
30 Crits in One Week? How Our Team Found 55 Vulnerabilities While Pentesting the U.S. Government
Seven Days. Fifty-Five Vulnerabilities.
⤷ Title: File Upload leads to Command Injection Vulnerability
════════════════════════
𐀪 Author: Secmonk
════════════════════════
ⴵ Time: Wed, 12 Aug 2026 16:56:47 GMT
════════════════════════
⌗ Tags: #vulnerability #penetration_testing #offsec #oscp #web_application_security
════════════════════════
𐀪 Author: Secmonk
════════════════════════
ⴵ Time: Wed, 12 Aug 2026 16:56:47 GMT
════════════════════════
⌗ Tags: #vulnerability #penetration_testing #offsec #oscp #web_application_security
Medium
File Upload leads to Command Injection Vulnerability
Let's assume you have been provided with an IP address (for ex. 192.168.103.192)