⤷ Title: Roundcube Patches RCE and SSRF Flaws in 1.6.18 and 1.7.3
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Sat, 15 Aug 2026 09:38:53 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Email Security #IMAP Command Injection #LDAP injection #Remote Code Execution #Roundcube #ssrf #Stored XSS #webmail
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Sat, 15 Aug 2026 09:38:53 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Email Security #IMAP Command Injection #LDAP injection #Remote Code Execution #Roundcube #ssrf #Stored XSS #webmail
Daily CyberSecurity
Roundcube Patches RCE and SSRF Flaws in 1.6.18 and 1.7.3
Roundcube shipped two security updates this week. Also, versions 1.6.18 and 1.7.3 close eleven separate bugs. The worst Roundcube webmail RCE flaw sits in a spam-training plugin. Why It Matters We…
⤷ Title: SpaceXAI Launches Grok 4.6 AI Model
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Sat, 15 Aug 2026 02:26:45 +0000
════════════════════════
⌗ Tags: #Technology #AI model #artificial intelligence #Grok 4.6 #SpaceXAI
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Sat, 15 Aug 2026 02:26:45 +0000
════════════════════════
⌗ Tags: #Technology #AI model #artificial intelligence #Grok 4.6 #SpaceXAI
Daily CyberSecurity
SpaceXAI Launches Grok 4.6 AI Model
SpaceXAI recently unveiled the Grok 4.6 AI model series. This advanced lineage specifically enhances the model’s capacity for long-horizon tasks. It also targets software engineering and int…
⤷ Title: Sol in the shade: benchmarking Opus 4.6 and GPT-5.6 Sol for finding zero-days
════════════════════════
𐀪 Author: 0xdead4f
════════════════════════
ⴵ Time: Sat, 15 Aug 2026 09:32:04 GMT
════════════════════════
⌗ Tags: #artificial_intelligence #bug_bounty #cybersecurity #security_research #ai
════════════════════════
𐀪 Author: 0xdead4f
════════════════════════
ⴵ Time: Sat, 15 Aug 2026 09:32:04 GMT
════════════════════════
⌗ Tags: #artificial_intelligence #bug_bounty #cybersecurity #security_research #ai
Medium
Sol in the shade: benchmarking Opus 4.6 and GPT-5.6 Sol for finding zero-days
I pointed Opus 4.6 and GPT-5.6 Sol at a big, hardened open source project and told them to hunt for zero-days. Opus 4.6 out-counted GPT-5.6…
⤷ Title: Purple Teaming without the budget for a Red Team
════════════════════════
𐀪 Author: h@shtalk
════════════════════════
ⴵ Time: Sat, 15 Aug 2026 09:16:01 GMT
════════════════════════
⌗ Tags: #cybersecurity #purple_team #infosec #offensive_security #red_team
════════════════════════
𐀪 Author: h@shtalk
════════════════════════
ⴵ Time: Sat, 15 Aug 2026 09:16:01 GMT
════════════════════════
⌗ Tags: #cybersecurity #purple_team #infosec #offensive_security #red_team
Medium
Purple Teaming without the budget for a Red Team
You don’t need an expensive external engagement to test your defenses. You need a specific mindset and a few free tools.
⤷ Title: TryHackMe Walkthrough: Inside a Computer System
════════════════════════
𐀪 Author: Ashutosh Yadav
════════════════════════
ⴵ Time: Sat, 15 Aug 2026 09:31:01 GMT
════════════════════════
⌗ Tags: #cybersecurity #security_operation_center #tryhackme_walkthrough #tryhackme
════════════════════════
𐀪 Author: Ashutosh Yadav
════════════════════════
ⴵ Time: Sat, 15 Aug 2026 09:31:01 GMT
════════════════════════
⌗ Tags: #cybersecurity #security_operation_center #tryhackme_walkthrough #tryhackme
Medium
TryHackMe Walkthrough: Inside a Computer System
Whether you are an aspiring penetration tester, a budding SOC analyst, or simply a technology enthusiast, a solid foundation in computer…
⤷ Title: Check-Then-Act: The Timing Bug Hiding in Every Money Endpoint
════════════════════════
𐀪 Author: Nitin yadav
════════════════════════
ⴵ Time: Sat, 15 Aug 2026 11:31:01 GMT
════════════════════════
⌗ Tags: #ethical_hacking #cybersecurity #hacking #bug_bounty #infosec
════════════════════════
𐀪 Author: Nitin yadav
════════════════════════
ⴵ Time: Sat, 15 Aug 2026 11:31:01 GMT
════════════════════════
⌗ Tags: #ethical_hacking #cybersecurity #hacking #bug_bounty #infosec
Medium
Check-Then-Act: The Timing Bug Hiding in Every Money Endpoint
What’s up everyone! Nitin here 👋
⤷ Title: From Zero to 100+ Reports: My Bug Bounty Journey So Far
════════════════════════
𐀪 Author: s0ham
════════════════════════
ⴵ Time: Sat, 15 Aug 2026 10:24:35 GMT
════════════════════════
⌗ Tags: #infosec #carrer #hacking #bug_bounty #cybersecurity
════════════════════════
𐀪 Author: s0ham
════════════════════════
ⴵ Time: Sat, 15 Aug 2026 10:24:35 GMT
════════════════════════
⌗ Tags: #infosec #carrer #hacking #bug_bounty #cybersecurity
Medium
From Zero to 100+ Reports: My Bug Bounty Journey So Far
I started bug bounty hunting two years ago knowing absolutely nothing. No formal training, no course just YouTube. I didn’t grind through…
⤷ Title: Your Company Deployed an AI Chatbot.
════════════════════════
𐀪 Author: Okan Yıldız
════════════════════════
ⴵ Time: Sat, 15 Aug 2026 10:29:23 GMT
════════════════════════
⌗ Tags: #cybersecurity #ai_security #ai #security #application_security
════════════════════════
𐀪 Author: Okan Yıldız
════════════════════════
ⴵ Time: Sat, 15 Aug 2026 10:29:23 GMT
════════════════════════
⌗ Tags: #cybersecurity #ai_security #ai #security #application_security
Medium
Your Company Deployed an AI Chatbot. Nobody Tested Whether It Could Be Weaponized. Here’s the Playbook.
Okan YILDIZ Global Cybersecurity Leader | Innovating for Secure Digital Futures | Trusted Advisor in Cyber Resilience | Aug 2026
⤷ Title: Hydra — When It Looks Easy But It’s Not
════════════════════════
𐀪 Author: Michele Grimaldi
════════════════════════
ⴵ Time: Sat, 15 Aug 2026 11:45:53 GMT
════════════════════════
⌗ Tags: #cybersecurity #ctf #ethical_hacking #penetration_tester
════════════════════════
𐀪 Author: Michele Grimaldi
════════════════════════
ⴵ Time: Sat, 15 Aug 2026 11:45:53 GMT
════════════════════════
⌗ Tags: #cybersecurity #ctf #ethical_hacking #penetration_tester
Medium
Hydra — When It Looks Easy But It’s Not
Use Hydra to brute-force credentials on a web form
⤷ Title: SQL injection — Filter bypass
════════════════════════
𐀪 Author: Ali Amed
════════════════════════
ⴵ Time: Sat, 15 Aug 2026 11:10:46 GMT
════════════════════════
⌗ Tags: #filters #ctf #root_me #sql_injection
════════════════════════
𐀪 Author: Ali Amed
════════════════════════
ⴵ Time: Sat, 15 Aug 2026 11:10:46 GMT
════════════════════════
⌗ Tags: #filters #ctf #root_me #sql_injection
Medium
SQL injection — Filter bypass
Login pageSQL injection — Filter bypass
⤷ Title: A Fast Recon Workflow for Spotting XSS Candidates
════════════════════════
𐀪 Author: MD Fahad Hosen
════════════════════════
ⴵ Time: Sat, 15 Aug 2026 11:35:16 GMT
════════════════════════
⌗ Tags: #bug_bounty_tips #cross_site_scripting
════════════════════════
𐀪 Author: MD Fahad Hosen
════════════════════════
ⴵ Time: Sat, 15 Aug 2026 11:35:16 GMT
════════════════════════
⌗ Tags: #bug_bounty_tips #cross_site_scripting
Medium
A Fast Recon Workflow for Spotting XSS Candidates
A practical pipeline for narrowing thousands of URLs down to the handful worth manually testing for Cross-Site Scripting.
⤷ Title: Apache Struts Patches Five Flaws Including Unauthenticated DoS Bugs
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Sat, 15 Aug 2026 13:35:05 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Apache Struts #CVE_2026_73631 #CVE_2026_73632 #CVE_2026_73633 #CVE_2026_73634 #CVE_2026_73635 #Denial of Service #Java Web Security #JSON Plugin #Struts 2
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Sat, 15 Aug 2026 13:35:05 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Apache Struts #CVE_2026_73631 #CVE_2026_73632 #CVE_2026_73633 #CVE_2026_73634 #CVE_2026_73635 #Denial of Service #Java Web Security #JSON Plugin #Struts 2
Daily CyberSecurity
Apache Struts Patches Five Flaws Including Unauthenticated DoS Bugs
Apache patched five bugs in Struts 2 this week. Three of them count as Apache Struts DoS flaws that a remote user can trigger. The other two leak data through a shared state bug in the JSON plugin…
⤷ Title: Web Encoding for Beginners: URL, HTML, Unicode, Base64 & Hex
════════════════════════
𐀪 Author: Ph
════════════════════════
ⴵ Time: Sat, 15 Aug 2026 13:45:45 GMT
════════════════════════
⌗ Tags: #hacking #web_development #bug_bounty #hacker #cybersecurity
════════════════════════
𐀪 Author: Ph
════════════════════════
ⴵ Time: Sat, 15 Aug 2026 13:45:45 GMT
════════════════════════
⌗ Tags: #hacking #web_development #bug_bounty #hacker #cybersecurity
Medium
Encoding in Web Applications
Learn web encoding with practical examples of URL, HTML, Unicode, UTF-8,Base64, Hex, and serialization for web security
⤷ Title: Microsoft Bounty Hunt: From Contacts to Invoices via Guest User Misconfigurations
════════════════════════
𐀪 Author: Mustafa Mohamed (d3sca)
════════════════════════
ⴵ Time: Sat, 15 Aug 2026 13:16:04 GMT
════════════════════════
⌗ Tags: #bug_bounty #react #infosec #salesforce #cybersecurity
════════════════════════
𐀪 Author: Mustafa Mohamed (d3sca)
════════════════════════
ⴵ Time: Sat, 15 Aug 2026 13:16:04 GMT
════════════════════════
⌗ Tags: #bug_bounty #react #infosec #salesforce #cybersecurity
Medium
Microsoft Bounty Hunt: From Contacts to Invoices via Guest User Misconfigurations
Introduction
⤷ Title: Critical Exposure Of Algolia Key That Led to Production, Staging, and Draft Data
════════════════════════
𐀪 Author: Adham Mohamed
════════════════════════
ⴵ Time: Sat, 15 Aug 2026 13:09:43 GMT
════════════════════════
⌗ Tags: #bug_bounty_writeup #bug_bounty
════════════════════════
𐀪 Author: Adham Mohamed
════════════════════════
ⴵ Time: Sat, 15 Aug 2026 13:09:43 GMT
════════════════════════
⌗ Tags: #bug_bounty_writeup #bug_bounty
Medium
Critical Exposure Of Algolia Key That Led to Production, Staging, and Draft Data
While testing a public bug bounty program, I came across an interesting file:
⤷ Title: OAuth 2.0 Vulnerability Hunting: A Pentester’s Field Guide
════════════════════════
𐀪 Author: Dev
════════════════════════
ⴵ Time: Sat, 15 Aug 2026 12:57:41 GMT
════════════════════════
⌗ Tags: #oauth #cybersecurity #application_security #penetration_testing #bug_bounty
════════════════════════
𐀪 Author: Dev
════════════════════════
ⴵ Time: Sat, 15 Aug 2026 12:57:41 GMT
════════════════════════
⌗ Tags: #oauth #cybersecurity #application_security #penetration_testing #bug_bounty
Medium
OAuth 2.0 Vulnerability Hunting: A Pentester’s Field Guide
OAuth 2.0 is everywhere — “Login with Google,” “Login with Microsoft,” third-party API integrations. It’s an authorization framework, not…
⤷ Title: Pwning HaveIBeenPwned: Part 1
════════════════════════
𐀪 Author: Emerson
════════════════════════
ⴵ Time: Sat, 15 Aug 2026 13:37:04 GMT
════════════════════════
⌗ Tags: #password_security #hacking #penetration_testing #password_cracking #passwords
════════════════════════
𐀪 Author: Emerson
════════════════════════
ⴵ Time: Sat, 15 Aug 2026 13:37:04 GMT
════════════════════════
⌗ Tags: #password_security #hacking #penetration_testing #password_cracking #passwords
Medium
Pwning HaveIBeenPwned: Part 1
Lets deep dive into the HaveIBeenPwned Dataset! (Obligatory: JP taught me most things I know about password cracking ♥️ )
⤷ Title: Grand Larceny Auto (THM) Tryhackme Walkthrough
════════════════════════
𐀪 Author: Lawvye
════════════════════════
ⴵ Time: Sat, 15 Aug 2026 13:07:01 GMT
════════════════════════
⌗ Tags: #tryhackme #capture_the_flag #reverse_engineering #cybersecurity #hacking
════════════════════════
𐀪 Author: Lawvye
════════════════════════
ⴵ Time: Sat, 15 Aug 2026 13:07:01 GMT
════════════════════════
⌗ Tags: #tryhackme #capture_the_flag #reverse_engineering #cybersecurity #hacking
Medium
Grand Larceny Auto (THM) Tryhackme Walkthrough
Description : Reverse-engineer a small 3D crime game to break into a vault the developers made unreachable.
⤷ Title: Ek Fake Call, Aur Sab Kuch Chala Jaata Hai — Cyber Security Ke 5 Naye Khatare (Aug 2026)
════════════════════════
𐀪 Author: WhiteRose
════════════════════════
ⴵ Time: Sat, 15 Aug 2026 12:18:44 GMT
════════════════════════
⌗ Tags: #cybersecurity #hacking #technology
════════════════════════
𐀪 Author: WhiteRose
════════════════════════
ⴵ Time: Sat, 15 Aug 2026 12:18:44 GMT
════════════════════════
⌗ Tags: #cybersecurity #hacking #technology
Medium
Ek Fake Call, Aur Sab Kuch Chala Jaata Hai — Cyber Security Ke 5 Naye Khatare (Aug 2026)
Aajkal cyber security sirf IT wale logo ka topic nahi raha — har koi jo phone ya laptop use karta hai, uske liye zaroori hai. Aug 2026 mein…
⤷ Title: Reverse Engineering ValleyRAT: From Initial Access to C2
════════════════════════
𐀪 Author: CHANDRA KANT BAURI
════════════════════════
ⴵ Time: Sat, 15 Aug 2026 12:54:15 GMT
════════════════════════
⌗ Tags: #cybersecurity #infosec #malware_analysis #reverse_engineering #malware
════════════════════════
𐀪 Author: CHANDRA KANT BAURI
════════════════════════
ⴵ Time: Sat, 15 Aug 2026 12:54:15 GMT
════════════════════════
⌗ Tags: #cybersecurity #infosec #malware_analysis #reverse_engineering #malware
Medium
Reverse Engineering ValleyRAT: From Initial Access to C2
MalOps.io Challenge Write-up Tracing persistence, encrypted payloads, shellcode execution, security bypasses, and C2 infrastructure
⤷ Title: The X Algorithm Is Now Open Source: What I Learned from Reading the Code
════════════════════════
𐀪 Author: I Roro Dev
════════════════════════
ⴵ Time: Sat, 15 Aug 2026 12:26:54 GMT
════════════════════════
⌗ Tags: #social_media #programming #xs
════════════════════════
𐀪 Author: I Roro Dev
════════════════════════
ⴵ Time: Sat, 15 Aug 2026 12:26:54 GMT
════════════════════════
⌗ Tags: #social_media #programming #xs
Medium
The X Algorithm Is Now Open Source: What I Learned from Reading the Code
I cloned the X recommendation-algorithm repository and used an agent to inspect the source file by file, trying to understand how For You…