⤷ Title: Moonwell MAMO Exploit: $8.7M Drained via Price Manipulation
════════════════════════
𐀪 Author: Nam Phong
════════════════════════
ⴵ Time: Tue, 01 Sep 2026 08:19:59 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Base Network #DeFi Exploit #MAMO #Moonwell #Oracle Manipulation
════════════════════════
𐀪 Author: Nam Phong
════════════════════════
ⴵ Time: Tue, 01 Sep 2026 08:19:59 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Base Network #DeFi Exploit #MAMO #Moonwell #Oracle Manipulation
Information Security News
Moonwell MAMO Exploit: $8.7M Drained via Price Manipulation
An attacker turned the comparatively small market for the MAMO token into a source of multimillion-dollar loans. Within a few hours, the assailant inflated the value of collateral in Moonwell, bor…
⤷ Title: TerminalFix: Fake CAPTCHA Opens a Reverse Tunnel Into Networks
════════════════════════
𐀪 Author: Nam Phong
════════════════════════
ⴵ Time: Tue, 01 Sep 2026 06:19:56 +0000
════════════════════════
⌗ Tags: #Malware #ClickFix #DLL Sideloading #Fake CAPTCHA #Reverse Tunnel #TerminalFix
════════════════════════
𐀪 Author: Nam Phong
════════════════════════
ⴵ Time: Tue, 01 Sep 2026 06:19:56 +0000
════════════════════════
⌗ Tags: #Malware #ClickFix #DLL Sideloading #Fake CAPTCHA #Reverse Tunnel #TerminalFix
Information Security News
TerminalFix: Fake CAPTCHA Opens a Reverse Tunnel Into Networks
A familiar humanity check has suddenly become a gateway into the corporate network. Microsoft has disclosed a campaign named TerminalFix, in which compromised websites display a counterfeit Cloudf…
⤷ Title: 12TB Steam Archive Surfaces Online
════════════════════════
𐀪 Author: Nam Phong
════════════════════════
ⴵ Time: Tue, 01 Sep 2026 03:19:35 +0000
════════════════════════
⌗ Tags: #Data Leak #Game Development #Half_Life #Steam #Valve #Video Game History
════════════════════════
𐀪 Author: Nam Phong
════════════════════════
ⴵ Time: Tue, 01 Sep 2026 03:19:35 +0000
════════════════════════
⌗ Tags: #Data Leak #Game Development #Half_Life #Steam #Valve #Video Game History
Information Security News
12TB Steam Archive Surfaces Online
An enormous fragment of early Steam history suddenly became accessible for public scrutiny over a decade later. A colossal archive, spanning roughly 12 to 13 terabytes, is currently circulating ra…
⤷ Title: DOJ Revises QTFY Claim: Agencies Were Targets, Not Victims
════════════════════════
𐀪 Author: Nam Phong
════════════════════════
ⴵ Time: Mon, 31 Aug 2026 15:08:43 +0000
════════════════════════
⌗ Tags: #Cyber Security #Chinese Hackers #Cyber Espionage #DOJ #QTFY #State_Sponsored Hacking
════════════════════════
𐀪 Author: Nam Phong
════════════════════════
ⴵ Time: Mon, 31 Aug 2026 15:08:43 +0000
════════════════════════
⌗ Tags: #Cyber Security #Chinese Hackers #Cyber Espionage #DOJ #QTFY #State_Sponsored Hacking
Information Security News
DOJ Revises QTFY Claim: Agencies Were Targets, Not Victims
The US Department of Justice has had to amend a resounding statement about the Chinese hacking group QTFY. After the first release, the impression formed that the attackers had successfully penetr…
⤷ Title: Miraak Framework Turns PostgreSQL Into a Covert C2 Channel
════════════════════════
𐀪 Author: Nam Phong
════════════════════════
ⴵ Time: Mon, 31 Aug 2026 14:08:41 +0000
════════════════════════
⌗ Tags: #Malware #Blackpoint Cyber #Cobalt Strike BOF #Miraak #post_exploitation #PostgreSQL C2
════════════════════════
𐀪 Author: Nam Phong
════════════════════════
ⴵ Time: Mon, 31 Aug 2026 14:08:41 +0000
════════════════════════
⌗ Tags: #Malware #Blackpoint Cyber #Cobalt Strike BOF #Miraak #post_exploitation #PostgreSQL C2
Information Security News
Miraak Framework Turns PostgreSQL Into a Covert C2 Channel
Malicious tools strive to blend into ordinary network traffic, but the new Miraak framework has gone further and transformed a cloud PostgreSQL database into a full-fledged channel for controlling…
⤷ Title: Hachette Australia Cyberattack Disrupts Book Supply for Weeks
════════════════════════
𐀪 Author: Nam Phong
════════════════════════
ⴵ Time: Mon, 31 Aug 2026 13:00:56 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Alliance Distribution Services #Australia #cyberattack #Hachette #Supply Chain
════════════════════════
𐀪 Author: Nam Phong
════════════════════════
ⴵ Time: Mon, 31 Aug 2026 13:00:56 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Alliance Distribution Services #Australia #cyberattack #Hachette #Supply Chain
Information Security News
Hachette Australia Cyberattack Disrupts Book Supply for Weeks
A cyberattack on one of Australia’s largest book distributors has been disrupting deliveries across the country for roughly six weeks. After intruders breached the systems of Alliance Distri…
⤷ Title: Critical Gitea RCE Vulnerability Under Attack
════════════════════════
𐀪 Author: Nam Phong
════════════════════════
ⴵ Time: Mon, 31 Aug 2026 12:00:58 +0000
════════════════════════
⌗ Tags: #Vulnerability #CVE_2026_60004 #cybersecurity #Gitea #Infosec #RCE vulnerability
════════════════════════
𐀪 Author: Nam Phong
════════════════════════
ⴵ Time: Mon, 31 Aug 2026 12:00:58 +0000
════════════════════════
⌗ Tags: #Vulnerability #CVE_2026_60004 #cybersecurity #Gitea #Infosec #RCE vulnerability
Information Security News
Critical Gitea RCE Vulnerability Under Attack
Open registration on developer platforms generally streamlines onboarding processes. However, concerning Gitea, this convenience inadvertently transformed a critical vulnerability into an easily a…
⤷ Title: ServiceNow AI Platform Patches Three Critical 10.0 CVSS Vulnerabilities
════════════════════════
𐀪 Author: Nam Phong
════════════════════════
ⴵ Time: Mon, 31 Aug 2026 09:08:45 +0000
════════════════════════
⌗ Tags: #Vulnerability #cybersecurity #enterprise security #Infosec #ServiceNow #vulnerability
════════════════════════
𐀪 Author: Nam Phong
════════════════════════
ⴵ Time: Mon, 31 Aug 2026 09:08:45 +0000
════════════════════════
⌗ Tags: #Vulnerability #cybersecurity #enterprise security #Infosec #ServiceNow #vulnerability
Information Security News
ServiceNow AI Platform Patches Three Critical 10.0 CVSS Vulnerabilities
ServiceNow recently addressed three maximum-severity vulnerabilities residing within its AI Platform. Astonishingly, each individual flaw received a perfect 10.0 rating on the CVSS 4.0 scale. Furt…
⤷ Title: I Made Claude Believe I Was an Anthropic-Verified
Researcher.
════════════════════════
𐀪 Author: X1NON
════════════════════════
ⴵ Time: Sun, 30 Aug 2026 14:11:55 GMT
════════════════════════
⌗ Tags: #ai_red_team #claude #bug_bounty #cybersecurity #ai
Researcher.
════════════════════════
𐀪 Author: X1NON
════════════════════════
ⴵ Time: Sun, 30 Aug 2026 14:11:55 GMT
════════════════════════
⌗ Tags: #ai_red_team #claude #bug_bounty #cybersecurity #ai
Medium
I Made Claude Believe I Was an Anthropic-Verified Researcher. It Built Me Attack Tools. Anthropic Ghosted Me for 57 Days.
A technical breakdown of a working Claude Sonnet 4.6 jailbreak, responsible disclosure, and 57 days of silence.
⤷ Title: When a Single Text File Breaks a Trust Boundary (Bug Bounty writeup)
════════════════════════
𐀪 Author: julichaan
════════════════════════
ⴵ Time: Sun, 30 Aug 2026 14:08:06 GMT
════════════════════════
⌗ Tags: #path_traversal #vulnerability_research #bug_bounty #application_security #cybersecurity
════════════════════════
𐀪 Author: julichaan
════════════════════════
ⴵ Time: Sun, 30 Aug 2026 14:08:06 GMT
════════════════════════
⌗ Tags: #path_traversal #vulnerability_research #bug_bounty #application_security #cybersecurity
Medium
When a Single Text File Breaks a Trust Boundary (Bug Bounty writeup)
When a Single Text File Breaks a Trust Boundary (Bug Bounty writeup) During a recent security review, I encountered an interesting vulnerability in an open-source tool that, at first glance, appeared …
⤷ Title: How I Got My Highest Payout
════════════════════════
𐀪 Author: Adhamkhairy
════════════════════════
ⴵ Time: Sat, 29 Aug 2026 06:08:41 GMT
════════════════════════
⌗ Tags: #pentesting #security #bug_bounty #hackerone #cybersecurity
════════════════════════
𐀪 Author: Adhamkhairy
════════════════════════
ⴵ Time: Sat, 29 Aug 2026 06:08:41 GMT
════════════════════════
⌗ Tags: #pentesting #security #bug_bounty #hackerone #cybersecurity
Medium
How I Got My Highest Payout
The target was an application portal. You register, you fill out a genuinely ENORMOUS form, and at the end it generates a PDF of everything…
⤷ Title: Got My First $$ Bug Bounty
════════════════════════
𐀪 Author: Prajwal
════════════════════════
ⴵ Time: Wed, 26 Aug 2026 05:04:05 GMT
════════════════════════
⌗ Tags: #vulnerability #cybersecurity #bug_bounty #web_security #bug_bounty_tips
════════════════════════
𐀪 Author: Prajwal
════════════════════════
ⴵ Time: Wed, 26 Aug 2026 05:04:05 GMT
════════════════════════
⌗ Tags: #vulnerability #cybersecurity #bug_bounty #web_security #bug_bounty_tips
Medium
Got My First $$ Bug Bounty 🎉
I finally got my first bug bounty.
⤷ Title: The WAF Blocked My XSS — So I Rotated What It Was Reading
════════════════════════
𐀪 Author: Nitin yadav
════════════════════════
ⴵ Time: Wed, 26 Aug 2026 04:56:25 GMT
════════════════════════
⌗ Tags: #cybersecurity #xs #hacking #bug_bounty #infosec
════════════════════════
𐀪 Author: Nitin yadav
════════════════════════
ⴵ Time: Wed, 26 Aug 2026 04:56:25 GMT
════════════════════════
⌗ Tags: #cybersecurity #xs #hacking #bug_bounty #infosec
Medium
The WAF Blocked My XSS — So I Rotated What It Was Reading
What’s up everyone! Nitin here 👋
⤷ Title: Bypassing AI Scanner Defenses to Exfiltrate Sensitive Information — PortSwigger Web Security…
════════════════════════
𐀪 Author: Mukilan Baskaran
════════════════════════
ⴵ Time: Wed, 26 Aug 2026 04:55:45 GMT
════════════════════════
⌗ Tags: #infosec #cybersecurity #bug_bounty #llm #ai
════════════════════════
𐀪 Author: Mukilan Baskaran
════════════════════════
ⴵ Time: Wed, 26 Aug 2026 04:55:45 GMT
════════════════════════
⌗ Tags: #infosec #cybersecurity #bug_bounty #llm #ai
Medium
🤖 Bypassing AI Scanner Defenses to Exfiltrate Sensitive Information — PortSwigger Web Security Academy
AI-powered security scanners are becoming increasingly common. They can authenticate to applications, browse sensitive areas, inspect…
⤷ Title: How a Single HTTP Redirect Bypassed SSRF Filters on 4 Programs Over 8 Years
════════════════════════
𐀪 Author: Raj Namdev
════════════════════════
ⴵ Time: Wed, 26 Aug 2026 04:52:48 GMT
════════════════════════
⌗ Tags: #web_security #cybersecurity #ethical_hacking #ssrf #bug_bounty
════════════════════════
𐀪 Author: Raj Namdev
════════════════════════
ⴵ Time: Wed, 26 Aug 2026 04:52:48 GMT
════════════════════════
⌗ Tags: #web_security #cybersecurity #ethical_hacking #ssrf #bug_bounty
Medium
How a Single HTTP Redirect Bypassed SSRF Filters on 4 Programs Over 8 Years
30-Second Version: One SSRF bypass technique — a single HTTP redirect — worked against Infogram (2017), Slack (2018), Bitwarden (2020), and…
⤷ Title: How I Found a GraphQL Endpoint Leaking Millions
════════════════════════
𐀪 Author: Prateekpulastya
════════════════════════
ⴵ Time: Wed, 26 Aug 2026 04:46:51 GMT
════════════════════════
⌗ Tags: #data_leak_prevention #graphql #bug_bounty #vulnerability_management #bug_bounty_writeup
════════════════════════
𐀪 Author: Prateekpulastya
════════════════════════
ⴵ Time: Wed, 26 Aug 2026 04:46:51 GMT
════════════════════════
⌗ Tags: #data_leak_prevention #graphql #bug_bounty #vulnerability_management #bug_bounty_writeup
Medium
How I Found a GraphQL Endpoint Leaking Millions
User Records Without Authentication
⤷ Title: How I Chained Three Bugs to XSS an Intigriti CTF — IDOR + DOM Clobbering + DOMPurify 3.0.9 Bypass
════════════════════════
𐀪 Author: Prateekpulastya
════════════════════════
ⴵ Time: Wed, 26 Aug 2026 04:42:06 GMT
════════════════════════
⌗ Tags: #bug_bounty #intigriti #ctf_writeup #capture_the_flag
════════════════════════
𐀪 Author: Prateekpulastya
════════════════════════
ⴵ Time: Wed, 26 Aug 2026 04:42:06 GMT
════════════════════════
⌗ Tags: #bug_bounty #intigriti #ctf_writeup #capture_the_flag
Medium
How I Chained Three Bugs to XSS an Intigriti CTF — IDOR + DOM Clobbering + DOMPurify 3.0.9 Bypass
Intigriti May 2026 XSS Challenge — full write-up
⤷ Title: Reconnaissance unleashed: Meet CrowdRecon
════════════════════════
𐀪 Author: Radu Voloaga
════════════════════════
ⴵ Time: Tue, 01 Sep 2026 00:00:00 GMT
════════════════════════
⌗ Tags: #News
════════════════════════
𐀪 Author: Radu Voloaga
════════════════════════
ⴵ Time: Tue, 01 Sep 2026 00:00:00 GMT
════════════════════════
⌗ Tags: #News
Intigriti
Reconnaissance unleashed: Meet CrowdRecon
CrowdRecon is a new Intigriti product that makes high-quality reconnaissance, shared by our researcher community, visible, useful, and rewardable.
⤷ Title: Intigriti Bug Bytes #239 - August 2026 🚀
════════════════════════
𐀪 Author: Ayoub
════════════════════════
ⴵ Time: Fri, 28 Aug 2026 00:00:00 GMT
════════════════════════
⌗ Tags: #Bug Bytes
════════════════════════
𐀪 Author: Ayoub
════════════════════════
ⴵ Time: Fri, 28 Aug 2026 00:00:00 GMT
════════════════════════
⌗ Tags: #Bug Bytes
Intigriti
Intigriti Bug Bytes #239 - August 2026 🚀
Hi hackers, Welcome to the latest edition of Bug Bytes! In this month's issue, we are featuring: Intigriti as the new provider for Adobe's Bug Bounty Program CSS injection as an attack vector inside y...
⤷ Title: When fear no longer holds you back. Interview with Ryan Bonner (Roll4CombatUS)
════════════════════════
𐀪 Author: Eleanor Barlow
════════════════════════
ⴵ Time: Mon, 24 Aug 2026 00:00:00 GMT
════════════════════════
⌗ Tags: #Business Insights
════════════════════════
𐀪 Author: Eleanor Barlow
════════════════════════
ⴵ Time: Mon, 24 Aug 2026 00:00:00 GMT
════════════════════════
⌗ Tags: #Business Insights
Intigriti
When fear no longer holds you back. Interview with Ryan Bonner (Roll4CombatUS)
Ryan Bonner, also known as Roll4CombatUS, is a respected Bug Bounty hunter, consultant, speaker, and Intigriti Hacker Ambassador based in the United States.
⤷ Title: When fear no longer holds you back. Interview with Ryan Bonner (Roll4CombatUS)
════════════════════════
𐀪 Author: Eleanor Barlow
════════════════════════
ⴵ Time: Mon, 24 Aug 2026 00:00:00 GMT
════════════════════════
⌗ Tags: #Hacker Spotlight
════════════════════════
𐀪 Author: Eleanor Barlow
════════════════════════
ⴵ Time: Mon, 24 Aug 2026 00:00:00 GMT
════════════════════════
⌗ Tags: #Hacker Spotlight
Intigriti
When fear no longer holds you back. Interview with Ryan Bonner (Roll4CombatUS)
Ryan Bonner, also known as Roll4CombatUS, is a respected Bug Bounty hunter, consultant, speaker, and Intigriti Hacker Ambassador based in the United States.