⤷ Title: picoCTF Web Exploitation — SSTI1
════════════════════════
𐀪 Author: Suman sutradhar
════════════════════════
ⴵ Time: Sun, 16 Aug 2026 04:35:05 GMT
════════════════════════
⌗ Tags: #cybersecurity #ssti1 #picoctf #bug_bounty
════════════════════════
𐀪 Author: Suman sutradhar
════════════════════════
ⴵ Time: Sun, 16 Aug 2026 04:35:05 GMT
════════════════════════
⌗ Tags: #cybersecurity #ssti1 #picoctf #bug_bounty
Medium
picoCTF Web Exploitation — SSTI1
Introduction
⤷ Title: 25 Ways to Escalate Privileges via Misconfigured Sudo Rights (Lab Walkthrough)
════════════════════════
𐀪 Author: Kalash Kundaliya
════════════════════════
ⴵ Time: Sun, 16 Aug 2026 04:31:03 GMT
════════════════════════
⌗ Tags: #cybersecurity #penetration_testing #linux #ethical_hacking #privilege_escalation
════════════════════════
𐀪 Author: Kalash Kundaliya
════════════════════════
ⴵ Time: Sun, 16 Aug 2026 04:31:03 GMT
════════════════════════
⌗ Tags: #cybersecurity #penetration_testing #linux #ethical_hacking #privilege_escalation
Medium
25 Ways to Escalate Privileges via Misconfigured Sudo Rights (Lab Walkthrough)
Introduction
⤷ Title: FreePBX CVE-2025–57819: From Unauthenticated SQL Injection to Remote Code Execution
════════════════════════
𐀪 Author: Raj Kumar M
════════════════════════
ⴵ Time: Sun, 16 Aug 2026 04:55:39 GMT
════════════════════════
⌗ Tags: #rce #freepbx #cve2026 #pentesting #sql_injection
════════════════════════
𐀪 Author: Raj Kumar M
════════════════════════
ⴵ Time: Sun, 16 Aug 2026 04:55:39 GMT
════════════════════════
⌗ Tags: #rce #freepbx #cve2026 #pentesting #sql_injection
Medium
FreePBX CVE-2025–57819: From Unauthenticated SQL Injection to Remote Code Execution
A vulnerability in a PBX system is more than just a web application security issue.
⤷ Title: DVWA Vulnerability: SQL Injection (Blind)
════════════════════════
𐀪 Author: Kamal S
════════════════════════
ⴵ Time: Sun, 16 Aug 2026 06:30:33 GMT
════════════════════════
⌗ Tags: #ethical_hacking #blind_sql_injection #dvwa #owasp #bug_bounty
════════════════════════
𐀪 Author: Kamal S
════════════════════════
ⴵ Time: Sun, 16 Aug 2026 06:30:33 GMT
════════════════════════
⌗ Tags: #ethical_hacking #blind_sql_injection #dvwa #owasp #bug_bounty
Medium
DVWA Vulnerability: SQL Injection (Blind)
SQL Injection is one of the classic web application security vulnerability, and Blind SQL Injection takes the same underlying weakness a…
⤷ Title: Bypassing MFA: 10 Real Techniques Used in 2026 (with Step-by-Step Examples)
════════════════════════
𐀪 Author: Very Lazy Tech
════════════════════════
ⴵ Time: Sun, 16 Aug 2026 06:18:09 GMT
════════════════════════
⌗ Tags: #cybersecurity #bug_bounty #hacking #mfa #penetration_testing
════════════════════════
𐀪 Author: Very Lazy Tech
════════════════════════
ⴵ Time: Sun, 16 Aug 2026 06:18:09 GMT
════════════════════════
⌗ Tags: #cybersecurity #bug_bounty #hacking #mfa #penetration_testing
Medium
Bypassing MFA: 10 Real Techniques Used in 2026 (with Step-by-Step Examples)
You patched, you planned, you rolled out MFA — and attackers still waltz in. Sound familiar? Despite billions invested, nearly 40% of…
⤷ Title: HTTP Terminator Hits Reddit. Confirmation Never Shows Up
════════════════════════
𐀪 Author: Mehboob Merchant
════════════════════════
ⴵ Time: Sun, 16 Aug 2026 05:53:40 GMT
════════════════════════
⌗ Tags: #artificial_intelligence #cybersecurity #cyber_security_awareness #ai #hacking
════════════════════════
𐀪 Author: Mehboob Merchant
════════════════════════
ⴵ Time: Sun, 16 Aug 2026 05:53:40 GMT
════════════════════════
⌗ Tags: #artificial_intelligence #cybersecurity #cyber_security_awareness #ai #hacking
Medium
HTTP Terminator Hits Reddit. Confirmation Never Shows Up
On August 13, 2026, a Reddit handle named albinowax hit submit on r/netsec and left a name on the page: HTTP Terminator.
⤷ Title: Building a Free SOC at Home: My Wazuh & ELK Stack Setup
════════════════════════
𐀪 Author: Ashutosh Yadav
════════════════════════
ⴵ Time: Sun, 16 Aug 2026 06:37:20 GMT
════════════════════════
⌗ Tags: #siem #cybersecurity #wazuh #homelab #infosec
════════════════════════
𐀪 Author: Ashutosh Yadav
════════════════════════
ⴵ Time: Sun, 16 Aug 2026 06:37:20 GMT
════════════════════════
⌗ Tags: #siem #cybersecurity #wazuh #homelab #infosec
Medium
Building a Free SOC at Home: My Wazuh & ELK Stack Setup
Why I stopped flying blind and built an enterprise-grade SIEM in my home lab for zero dollars.
⤷ Title: I Wired Burp Suite Into Claude Code, and Now I Actually Look Forward to Enumeration
════════════════════════
𐀪 Author: Ravikiranjosyula
════════════════════════
ⴵ Time: Sun, 16 Aug 2026 06:48:10 GMT
════════════════════════
⌗ Tags: #burpsuite #red_teaming #mcp_server #penetration_testing #cybersecurity
════════════════════════
𐀪 Author: Ravikiranjosyula
════════════════════════
ⴵ Time: Sun, 16 Aug 2026 06:48:10 GMT
════════════════════════
⌗ Tags: #burpsuite #red_teaming #mcp_server #penetration_testing #cybersecurity
Medium
I Wired Burp Suite Into Claude Code, and Now I Actually Look Forward to Enumeration
For the longest time, my pentest workflow looked like this: click through Burp’s proxy history, squint at request headers, copy a…
⤷ Title: Session Management: Understanding and Exploiting Insecure Sessions THM
════════════════════════
𐀪 Author: Dharavathnagaraju
════════════════════════
ⴵ Time: Sun, 16 Aug 2026 06:37:18 GMT
════════════════════════
⌗ Tags: #security #session_management #tryhackme_writeup #penetration_testing #web_application_security
════════════════════════
𐀪 Author: Dharavathnagaraju
════════════════════════
ⴵ Time: Sun, 16 Aug 2026 06:37:18 GMT
════════════════════════
⌗ Tags: #security #session_management #tryhackme_writeup #penetration_testing #web_application_security
Medium
Session Management: Understanding and Exploiting Insecure Sessions THM
Learn about session management, cookies, tokens, and common attacks against insecure session implementations, including session…
⤷ Title: AD Enumeration & Attacks — Skills Assessment Part I
════════════════════════
𐀪 Author: Psychopath-Traveler
════════════════════════
ⴵ Time: Sun, 16 Aug 2026 06:04:37 GMT
════════════════════════
⌗ Tags: #ethical_hacking #active_directory_attack #penetration_testing #cybersecurity #ctf_walkthrough
════════════════════════
𐀪 Author: Psychopath-Traveler
════════════════════════
ⴵ Time: Sun, 16 Aug 2026 06:04:37 GMT
════════════════════════
⌗ Tags: #ethical_hacking #active_directory_attack #penetration_testing #cybersecurity #ctf_walkthrough
Medium
AD Enumeration & Attacks — Skills Assessment Part I
A team member started an External Penetration Test and was moved to another urgent project before they could finish. The team member was…
⤷ Title: From Full-Stack Development to Cybersecurity: Why I’m Building in Public
════════════════════════
𐀪 Author: Jadhavidhi
════════════════════════
ⴵ Time: Sun, 16 Aug 2026 07:06:39 GMT
════════════════════════
⌗ Tags: #web_development #cybersecurity #python #ethical_hacking #technology
════════════════════════
𐀪 Author: Jadhavidhi
════════════════════════
ⴵ Time: Sun, 16 Aug 2026 07:06:39 GMT
════════════════════════
⌗ Tags: #web_development #cybersecurity #python #ethical_hacking #technology
Medium
From Full-Stack Development to Cybersecurity: Why I’m Building in Public
There was a time when I thought learning to code was the destination.
⤷ Title: Best institute for cyber security course in delhi with placement assistance
════════════════════════
𐀪 Author: cybersecuritycourse
════════════════════════
ⴵ Time: Sun, 16 Aug 2026 07:03:31 GMT
════════════════════════
⌗ Tags: #cyber_security_awareness #ai #cybersecurity #ethical_hacking #education
════════════════════════
𐀪 Author: cybersecuritycourse
════════════════════════
ⴵ Time: Sun, 16 Aug 2026 07:03:31 GMT
════════════════════════
⌗ Tags: #cyber_security_awareness #ai #cybersecurity #ethical_hacking #education
Medium
Best institute for cyber security course in delhi with placement assistance
Best Cyber Security Institute in Delhi with placement assistance, practical training, certifications, career guidance, and industry-focused…
⤷ Title: A Deep Dive into Active Directory Privilege Escalation — Full Hands-On Walkthrough
════════════════════════
𐀪 Author: Gopal Mohan
════════════════════════
ⴵ Time: Sun, 16 Aug 2026 06:22:09 GMT
════════════════════════
⌗ Tags: #asrep_roasting #ctf #ethical_hacking #cybersecurity #active_directory
════════════════════════
𐀪 Author: Gopal Mohan
════════════════════════
ⴵ Time: Sun, 16 Aug 2026 06:22:09 GMT
════════════════════════
⌗ Tags: #asrep_roasting #ctf #ethical_hacking #cybersecurity #active_directory
Medium
A Deep Dive into Active Directory Privilege Escalation — Full Hands-On Walkthrough
A complete, concept-first walkthrough of a Windows Domain Controller penetration test — from anonymous enumeration to Domain Admin — with…
⤷ Title: Confirmed Should Mean Executed
════════════════════════
𐀪 Author: ahmad kabiri
════════════════════════
ⴵ Time: Sun, 16 Aug 2026 09:54:01 GMT
════════════════════════
⌗ Tags: #security #penetration_testing #cybersecurity #bug_bounty
════════════════════════
𐀪 Author: ahmad kabiri
════════════════════════
ⴵ Time: Sun, 16 Aug 2026 09:54:01 GMT
════════════════════════
⌗ Tags: #security #penetration_testing #cybersecurity #bug_bounty
Medium
Confirmed Should Mean Executed
What I learned building a tool that refuses to say “possible RCE”
⤷ Title: How a Simple File Download Bug Turned Into an S3 Signing Oracle
════════════════════════
𐀪 Author: redhunter01
════════════════════════
ⴵ Time: Sun, 16 Aug 2026 09:20:40 GMT
════════════════════════
⌗ Tags: #aws #bug_bounty #ethical_hacking #web_security #cybersecurity
════════════════════════
𐀪 Author: redhunter01
════════════════════════
ⴵ Time: Sun, 16 Aug 2026 09:20:40 GMT
════════════════════════
⌗ Tags: #aws #bug_bounty #ethical_hacking #web_security #cybersecurity
Medium
How a Simple File Download Bug Turned Into an S3 Signing Oracle
How I found a bug in a file download feature that could let one tenant access another tenant’s files.
⤷ Title: How to Exploit JWT Authentication & Authorization Bypasses
════════════════════════
𐀪 Author: Haroon Shahid
════════════════════════
ⴵ Time: Sun, 16 Aug 2026 09:10:21 GMT
════════════════════════
⌗ Tags: #jwt_token #cybersecurity #bug_bounty #jwt_authentication #jwt_exploitation
════════════════════════
𐀪 Author: Haroon Shahid
════════════════════════
ⴵ Time: Sun, 16 Aug 2026 09:10:21 GMT
════════════════════════
⌗ Tags: #jwt_token #cybersecurity #bug_bounty #jwt_authentication #jwt_exploitation
Medium
How to Exploit JWT Authentication & Authorization Bypasses
Introduction
⤷ Title: When Client-Side Encryption Becomes a Security Blanket
════════════════════════
𐀪 Author: hackerdevil
════════════════════════
ⴵ Time: Sun, 16 Aug 2026 07:57:19 GMT
════════════════════════
⌗ Tags: #infosec #bug_bounty #information_security #penetration_testing #cybersecurity
════════════════════════
𐀪 Author: hackerdevil
════════════════════════
ⴵ Time: Sun, 16 Aug 2026 07:57:19 GMT
════════════════════════
⌗ Tags: #infosec #bug_bounty #information_security #penetration_testing #cybersecurity
Medium
When Client-Side Encryption Becomes a Security Blanket
Five critical bugs, one overconfident app, and a reminder that encryption is not a personality.
⤷ Title: Wireshark Filters Every Beginner Should Know
════════════════════════
𐀪 Author: Hafsamc
════════════════════════
ⴵ Time: Sun, 16 Aug 2026 09:38:55 GMT
════════════════════════
⌗ Tags: #cybersecurity #hacking #wireshark #tech #os
════════════════════════
𐀪 Author: Hafsamc
════════════════════════
ⴵ Time: Sun, 16 Aug 2026 09:38:55 GMT
════════════════════════
⌗ Tags: #cybersecurity #hacking #wireshark #tech #os
Medium
Wireshark Filters Every Beginner Should Know
When you open Wireshark during a incident response investigation or network troubleshooting session, you’re greeted by a chaotic wall of…
⤷ Title: Clever New Phishing Attack: Malware Infection via Fake CAPTCHA
════════════════════════
𐀪 Author: Anton Minin Baranovskii
════════════════════════
ⴵ Time: Sun, 16 Aug 2026 08:25:58 GMT
════════════════════════
⌗ Tags: #social_engineering #cybersecurity #phishing #malware #infosec
════════════════════════
𐀪 Author: Anton Minin Baranovskii
════════════════════════
ⴵ Time: Sun, 16 Aug 2026 08:25:58 GMT
════════════════════════
⌗ Tags: #social_engineering #cybersecurity #phishing #malware #infosec
Medium
Clever New Phishing Attack: Malware Infection via Fake CAPTCHA
I recently stumbled upon a new phishing technique and almost fell for it 😁
⤷ Title: The Key That Cannot Be Stolen
════════════════════════
𐀪 Author: Andras Szabolcsi
════════════════════════
ⴵ Time: Sun, 16 Aug 2026 08:01:02 GMT
════════════════════════
⌗ Tags: #key_management #cybersecurity #cryptography #fintech #infosec
════════════════════════
𐀪 Author: Andras Szabolcsi
════════════════════════
ⴵ Time: Sun, 16 Aug 2026 08:01:02 GMT
════════════════════════
⌗ Tags: #key_management #cybersecurity #cryptography #fintech #infosec
Medium
The Key That Cannot Be Stolen
What if the key everyone is guarding simply didn’t exist?
⤷ Title: A kulcs, amit nem lehet ellopni
════════════════════════
𐀪 Author: Andras Szabolcsi
════════════════════════
ⴵ Time: Sun, 16 Aug 2026 08:01:02 GMT
════════════════════════
⌗ Tags: #cryptography #fintech #key_management #infosec #cybersecurity
════════════════════════
𐀪 Author: Andras Szabolcsi
════════════════════════
ⴵ Time: Sun, 16 Aug 2026 08:01:02 GMT
════════════════════════
⌗ Tags: #cryptography #fintech #key_management #infosec #cybersecurity
Medium
A kulcs, amit nem lehet ellopni
Mi lenne, ha az a kulcs, amit mindenki véd, egyszerűen nem létezne?