⤷ Title: When an Owner Can Kick Out Another Owner: A Real-World Authorization Flaw
════════════════════════
𐀪 Author: yasser
════════════════════════
ⴵ Time: Tue, 18 Aug 2026 16:23:23 GMT
════════════════════════
⌗ Tags: #bug_bounty_tips #bug_bounty #cyber_security_awareness #cybersecurity #cybersécurité
════════════════════════
𐀪 Author: yasser
════════════════════════
ⴵ Time: Tue, 18 Aug 2026 16:23:23 GMT
════════════════════════
⌗ Tags: #bug_bounty_tips #bug_bounty #cyber_security_awareness #cybersecurity #cybersécurité
Medium
When an Owner Can Kick Out Another Owner: A Real-World Authorization Flaw
While testing target.com, I came across an interesting business-logic issue in the company management functionality.
⤷ Title: 1. Reflected XSS into HTML context with nothing encoded
════════════════════════
𐀪 Author: Babayeva Sevinj
════════════════════════
ⴵ Time: Tue, 18 Aug 2026 19:31:21 GMT
════════════════════════
⌗ Tags: #hacking #pentesting #portswigger #cybersecurity
════════════════════════
𐀪 Author: Babayeva Sevinj
════════════════════════
ⴵ Time: Tue, 18 Aug 2026 19:31:21 GMT
════════════════════════
⌗ Tags: #hacking #pentesting #portswigger #cybersecurity
Medium
1. Reflected XSS into HTML context with nothing encoded
This is a reflected XSS where unsanitized input is injected into the HTML and executed by the browser. The script runs only when a victim…
⤷ Title: Cybersecurity Movies: Genre Classics
════════════════════════
𐀪 Author: Anton Minin Baranovskii
════════════════════════
ⴵ Time: Tue, 18 Aug 2026 18:42:29 GMT
════════════════════════
⌗ Tags: #movies #pop_culture #tech #cybersecurity #hacking
════════════════════════
𐀪 Author: Anton Minin Baranovskii
════════════════════════
ⴵ Time: Tue, 18 Aug 2026 18:42:29 GMT
════════════════════════
⌗ Tags: #movies #pop_culture #tech #cybersecurity #hacking
Medium
Cybersecurity Movies: Genre Classics
The films that set the language the industry still uses when it talks to the public about hacking.
⤷ Title: 1. Excessive trust in client-side controls
════════════════════════
𐀪 Author: Babayeva Sevinj
════════════════════════
ⴵ Time: Tue, 18 Aug 2026 18:41:29 GMT
════════════════════════
⌗ Tags: #portswigger #hacking #pentesting #cybersecurity
════════════════════════
𐀪 Author: Babayeva Sevinj
════════════════════════
ⴵ Time: Tue, 18 Aug 2026 18:41:29 GMT
════════════════════════
⌗ Tags: #portswigger #hacking #pentesting #cybersecurity
Medium
1. Excessive trust in client-side controls
We are supposed to buy the Lightweight l33t leather jacket and as per the lab name, I think this has to do with bypassing client side…
⤷ Title: Linux Capture The Flag Bandit Level 17
════════════════════════
𐀪 Author: Red
════════════════════════
ⴵ Time: Tue, 18 Aug 2026 17:27:48 GMT
════════════════════════
⌗ Tags: #hacking #ctf #infosec #cybersecurity #linux
════════════════════════
𐀪 Author: Red
════════════════════════
ⴵ Time: Tue, 18 Aug 2026 17:27:48 GMT
════════════════════════
⌗ Tags: #hacking #ctf #infosec #cybersecurity #linux
Medium
Linux Capture The Flag Bandit Level 17
Comparing Files with Diff
⤷ Title: Cuando el malware llega desde una plataforma confiable: las lecciones del caso Steam
════════════════════════
𐀪 Author: TU INSIGNIA
════════════════════════
ⴵ Time: Tue, 18 Aug 2026 16:22:45 GMT
════════════════════════
⌗ Tags: #agentic_ai #hacking #ai_agent #ethical_hacking #ai
════════════════════════
𐀪 Author: TU INSIGNIA
════════════════════════
ⴵ Time: Tue, 18 Aug 2026 16:22:45 GMT
════════════════════════
⌗ Tags: #agentic_ai #hacking #ai_agent #ethical_hacking #ai
Medium
Cuando el malware llega desde una plataforma confiable: las lecciones del caso Steam
Descargar software desde una plataforma reconocida suele percibirse como una decisión segura. La aplicación aparece en un catálogo formal…
⤷ Title: Why your tabletop exercise isn’t working
════════════════════════
𐀪 Author: h@shtalk
════════════════════════
ⴵ Time: Tue, 18 Aug 2026 18:26:01 GMT
════════════════════════
⌗ Tags: #cybersecurity #infosec #tabletop_exercise #incident_response #ai
════════════════════════
𐀪 Author: h@shtalk
════════════════════════
ⴵ Time: Tue, 18 Aug 2026 18:26:01 GMT
════════════════════════
⌗ Tags: #cybersecurity #infosec #tabletop_exercise #incident_response #ai
Medium
Why your tabletop exercise isn’t working
Most tabletop exercises are theater — a scripted walk through a scenario everyone knew the answers to, ending with a slide that says “we’re…
⤷ Title: How GhostDesk Spyware Hijacks Chrome to Steal Passwords, Cookies, and Crypto
════════════════════════
𐀪 Author: Xpert4Cyber
════════════════════════
ⴵ Time: Tue, 18 Aug 2026 17:34:13 GMT
════════════════════════
⌗ Tags: #infosec #cybersecurity #threatintel #malware #data_privacy
════════════════════════
𐀪 Author: Xpert4Cyber
════════════════════════
ⴵ Time: Tue, 18 Aug 2026 17:34:13 GMT
════════════════════════
⌗ Tags: #infosec #cybersecurity #threatintel #malware #data_privacy
Medium
How GhostDesk Spyware Hijacks Chrome to Steal Passwords, Cookies, and Crypto
🚨 GhostDesk: The Spyware Hiding Inside Fake CCleaner Installers
⤷ Title: VulnHub DC-1 Walkthrough
════════════════════════
𐀪 Author: Zernouhaymen
════════════════════════
ⴵ Time: Tue, 18 Aug 2026 16:28:29 GMT
════════════════════════
⌗ Tags: #vulnhub #penetration_testing #infosec #ethical_hacking #cybersecurity
════════════════════════
𐀪 Author: Zernouhaymen
════════════════════════
ⴵ Time: Tue, 18 Aug 2026 16:28:29 GMT
════════════════════════
⌗ Tags: #vulnhub #penetration_testing #infosec #ethical_hacking #cybersecurity
Medium
VulnHub DC-1 Walkthrough
1. Introduction
⤷ Title: Building a Safe Virtual Cybersecurity Lab with Kali Linux and Metasploitable 2
════════════════════════
𐀪 Author: GOBI VENKATESH
════════════════════════
ⴵ Time: Tue, 18 Aug 2026 17:46:39 GMT
════════════════════════
⌗ Tags: #cybersecurity #virtualization #ethical_hacking #kali_linux #penetration_testing
════════════════════════
𐀪 Author: GOBI VENKATESH
════════════════════════
ⴵ Time: Tue, 18 Aug 2026 17:46:39 GMT
════════════════════════
⌗ Tags: #cybersecurity #virtualization #ethical_hacking #kali_linux #penetration_testing
Medium
Building a Safe Virtual Cybersecurity Lab with Kali Linux and Metasploitable 2
A practical guide to building an isolated cybersecurity lab using VirtualBox, Kali Linux, Metasploitable 2, Nmap, and Host-Only networking.
⤷ Title: Corporate Machine — Full Penetration Testing Walkthrough
════════════════════════
𐀪 Author: Daniel Isaac E
════════════════════════
ⴵ Time: Tue, 18 Aug 2026 17:24:17 GMT
════════════════════════
⌗ Tags: #privilege_escalation #penetration_testing #cybersecurity #ethical_hacking #linux
════════════════════════
𐀪 Author: Daniel Isaac E
════════════════════════
ⴵ Time: Tue, 18 Aug 2026 17:24:17 GMT
════════════════════════
⌗ Tags: #privilege_escalation #penetration_testing #cybersecurity #ethical_hacking #linux
Medium
Corporate Machine — Full Penetration Testing Walkthrough
Introduction
⤷ Title: TryHackMe Easy Peasy — Commands, Output and How I Found Every Answer
════════════════════════
𐀪 Author: Saeeshvele
════════════════════════
ⴵ Time: Tue, 18 Aug 2026 16:50:01 GMT
════════════════════════
⌗ Tags: #linux #penetration_testing #ctf #cybersecurity #tryhackme
════════════════════════
𐀪 Author: Saeeshvele
════════════════════════
ⴵ Time: Tue, 18 Aug 2026 16:50:01 GMT
════════════════════════
⌗ Tags: #linux #penetration_testing #ctf #cybersecurity #tryhackme
Medium
TryHackMe Easy Peasy — Commands, Output and How I Found Every Answer
A Practical Walkthrough from Nmap Enumeration to Linux Privilege Escalation
⤷ Title: TryHackMe Easy Peasy — How I Went from Nmap to Root
════════════════════════
𐀪 Author: Sumant Giri
════════════════════════
ⴵ Time: Tue, 18 Aug 2026 18:16:43 GMT
════════════════════════
⌗ Tags: #tryhackme #cybersurity #linux
════════════════════════
𐀪 Author: Sumant Giri
════════════════════════
ⴵ Time: Tue, 18 Aug 2026 18:16:43 GMT
════════════════════════
⌗ Tags: #tryhackme #cybersurity #linux
Medium
TryHackMe Easy Peasy — How I Went from Nmap to Root
TryHackMe Easy Peasy — Commands, Output and How I Found Every Answer
⤷ Title: Pyramid Of Pain
════════════════════════
𐀪 Author: Vishnu Vardhan
════════════════════════
ⴵ Time: Tue, 18 Aug 2026 17:17:05 GMT
════════════════════════
⌗ Tags: #cybersecurity #tryhackme #soc_analyst #tryhackme_walkthrough
════════════════════════
𐀪 Author: Vishnu Vardhan
════════════════════════
ⴵ Time: Tue, 18 Aug 2026 17:17:05 GMT
════════════════════════
⌗ Tags: #cybersecurity #tryhackme #soc_analyst #tryhackme_walkthrough
Medium
Pyramid Of Pain
Learn what the Pyramid of Pain is and how it ranks indicators by how painful they are for an adversary to change.
⤷ Title: TryHackMe Easy Peasy — From Enumeration to Root
════════════════════════
𐀪 Author: Rishijoshi
════════════════════════
ⴵ Time: Tue, 18 Aug 2026 17:13:44 GMT
════════════════════════
⌗ Tags: #tryhackme #cybersecurity
════════════════════════
𐀪 Author: Rishijoshi
════════════════════════
ⴵ Time: Tue, 18 Aug 2026 17:13:44 GMT
════════════════════════
⌗ Tags: #tryhackme #cybersecurity
Medium
TryHackMe Easy Peasy — From Enumeration to Root
Introduction
⤷ Title: PortSwigger Lab: Password reset broken logic
════════════════════════
𐀪 Author: sa0k0
════════════════════════
ⴵ Time: Tue, 18 Aug 2026 21:38:43 GMT
════════════════════════
⌗ Tags: #authentication #bug_bounty #web_security #portswigger
════════════════════════
𐀪 Author: sa0k0
════════════════════════
ⴵ Time: Tue, 18 Aug 2026 21:38:43 GMT
════════════════════════
⌗ Tags: #authentication #bug_bounty #web_security #portswigger
Medium
PortSwigger Lab: Password reset broken logic
Lab Information
⤷ Title: How I Ran a Company’s Own Internal Workflows With a Free Account
════════════════════════
𐀪 Author: 0x-elfateh
════════════════════════
ⴵ Time: Tue, 18 Aug 2026 21:14:59 GMT
════════════════════════
⌗ Tags: #bug_bounty #bug_hunting #cybersecurity #infosec
════════════════════════
𐀪 Author: 0x-elfateh
════════════════════════
ⴵ Time: Tue, 18 Aug 2026 21:14:59 GMT
════════════════════════
⌗ Tags: #bug_bounty #bug_hunting #cybersecurity #infosec
Medium
How I Ran a Company’s Own Internal Workflows With a Free Account 👀
Bounty Case Files #02 | How a Broken Function-Level Authorization vulnerability allowed a free-tier user to enumerate and execute internal…
⤷ Title: Blinding EDRs to Thread Creation via BYOVD
════════════════════════
𐀪 Author: S12 - 0x12Dark Development
════════════════════════
ⴵ Time: Tue, 18 Aug 2026 20:54:16 GMT
════════════════════════
⌗ Tags: #infosec #hacking #pentesting #malware #cybersecurity
════════════════════════
𐀪 Author: S12 - 0x12Dark Development
════════════════════════
ⴵ Time: Tue, 18 Aug 2026 20:54:16 GMT
════════════════════════
⌗ Tags: #infosec #hacking #pentesting #malware #cybersecurity
Medium
Blinding EDRs to Thread Creation via BYOVD
Welcome to this new Medium post, in this one we will see how to enumerate and unlink thread creation callbacks registered through…
⤷ Title: Getting a Shell Out of the Cloud: Reverse Shells, Tunnels & Exfil
════════════════════════
𐀪 Author: zeyneppcelikk
════════════════════════
ⴵ Time: Tue, 18 Aug 2026 21:21:56 GMT
════════════════════════
⌗ Tags: #reverse_shell #penetration_testing #cloud_security #gcp #red_team
════════════════════════
𐀪 Author: zeyneppcelikk
════════════════════════
ⴵ Time: Tue, 18 Aug 2026 21:21:56 GMT
════════════════════════
⌗ Tags: #reverse_shell #penetration_testing #cloud_security #gcp #red_team
Medium
Getting a Shell Out of the Cloud: Reverse Shells, Tunnels & Exfil
Attacking Google Cloud — Part 2 / 7
⤷ Title: Weaponizing AutoGPT’s Email Block for Error-Based Internal SSRF and Banner Grabbing
════════════════════════
𐀪 Author: Pavan Nallamothu
════════════════════════
ⴵ Time: Tue, 18 Aug 2026 21:30:17 GMT
════════════════════════
⌗ Tags: #ethical_hacking #cybersecurity #auto_gpt #ssrf #cve
════════════════════════
𐀪 Author: Pavan Nallamothu
════════════════════════
ⴵ Time: Tue, 18 Aug 2026 21:30:17 GMT
════════════════════════
⌗ Tags: #ethical_hacking #cybersecurity #auto_gpt #ssrf #cve
Medium
Weaponizing AutoGPT’s Email Block for Error-Based Internal SSRF and Banner Grabbing
You type `smtp_server: 10.0.0.5` into a text field.
⤷ Title: Case Study: Navigating the Responsible Disclosure Dilemma
════════════════════════
𐀪 Author: Jafarlimahir
════════════════════════
ⴵ Time: Tue, 18 Aug 2026 20:41:37 GMT
════════════════════════
⌗ Tags: #cybersecurity #information_security #disclosure #ethical_hacking
════════════════════════
𐀪 Author: Jafarlimahir
════════════════════════
ⴵ Time: Tue, 18 Aug 2026 20:41:37 GMT
════════════════════════
⌗ Tags: #cybersecurity #information_security #disclosure #ethical_hacking
Medium
Case Study: Navigating the Responsible Disclosure Dilemma
Executive Summary