⤷ Title: C# API CRUD Done Wrong, Then Done Right: A Complete Bad-Practices-vs-Best-Practices Walkthrough
════════════════════════
𐀪 Author: Manohari Jayachandran
════════════════════════
ⴵ Time: Sat, 29 Aug 2026 14:58:28 GMT
════════════════════════
⌗ Tags: #crud_api #sql_injection #debugging_csharp #code_review
════════════════════════
𐀪 Author: Manohari Jayachandran
════════════════════════
ⴵ Time: Sat, 29 Aug 2026 14:58:28 GMT
════════════════════════
⌗ Tags: #crud_api #sql_injection #debugging_csharp #code_review
Medium
C# API CRUD Done Wrong, Then Done Right: A Complete Bad-Practices-vs-Best-Practices Walkthrough
Most bad-code examples in tutorials are contrived — obviously wrong in a way real code never actually looks. This post takes a different…
⤷ Title: Parameterized Queries - The Simple Way to Prevent SQL Injection
════════════════════════
𐀪 Author: Ayantik Sarkar
════════════════════════
ⴵ Time: Sat, 29 Aug 2026 04:44:26 GMT
════════════════════════
⌗ Tags: #database #postgresql #sql #sql_injection #security
════════════════════════
𐀪 Author: Ayantik Sarkar
════════════════════════
ⴵ Time: Sat, 29 Aug 2026 04:44:26 GMT
════════════════════════
⌗ Tags: #database #postgresql #sql #sql_injection #security
Medium
Parameterized Queries - The Simple Way to Prevent SQL Injection
If you’ve worked with backend development, you’ve probably written SQL queries like:
⤷ Title: Building ShopSphere Part 5: Going Public, Staying Secure, Staying Aware (Route 53, CloudFront, WAF…
════════════════════════
𐀪 Author: Asutosh Nayak
════════════════════════
ⴵ Time: Fri, 28 Aug 2026 17:26:04 GMT
════════════════════════
⌗ Tags: #ddos_attack #dns #aws #cdn #sql_injection
════════════════════════
𐀪 Author: Asutosh Nayak
════════════════════════
ⴵ Time: Fri, 28 Aug 2026 17:26:04 GMT
════════════════════════
⌗ Tags: #ddos_attack #dns #aws #cdn #sql_injection
Medium
Building ShopSphere Part 5: Going Public, Staying Secure, Staying Aware (Route 53, CloudFront, WAF, and Monitoring)
Picking Up Where We Left Off
⤷ Title: One Researcher Earned $811,000 Hunting Bugs for Google
════════════════════════
𐀪 Author: Muhamed Fazal PS
════════════════════════
ⴵ Time: Tue, 01 Sep 2026 08:10:36 GMT
════════════════════════
⌗ Tags: #bug_bounty_hunter #hackerone #bug_bounty #bug_bounty_tips #bug_bounty_writeup
════════════════════════
𐀪 Author: Muhamed Fazal PS
════════════════════════
ⴵ Time: Tue, 01 Sep 2026 08:10:36 GMT
════════════════════════
⌗ Tags: #bug_bounty_hunter #hackerone #bug_bounty #bug_bounty_tips #bug_bounty_writeup
Medium
One Researcher Earned $811,000 Hunting Bugs for Google
if you are not a premium member then you can read this article for free here
⤷ Title: 1 Dangerous Hour: Delayed Role Revocation Bug in JWT Based Systems
════════════════════════
𐀪 Author: Revalda Haryadaffa Prabaswara
════════════════════════
ⴵ Time: Mon, 31 Aug 2026 15:41:10 GMT
════════════════════════
⌗ Tags: #cybersecurity #bug_bounty_writeup
════════════════════════
𐀪 Author: Revalda Haryadaffa Prabaswara
════════════════════════
ⴵ Time: Mon, 31 Aug 2026 15:41:10 GMT
════════════════════════
⌗ Tags: #cybersecurity #bug_bounty_writeup
Medium
1 Dangerous Hour: Delayed Role Revocation Bug in JWT Based Systems
DISCLAIMER: This write-up is shared strictly for educational and informational purposes only.
⤷ Title: How a Simple GraphQL Scope Bypass Led to an Account Takeover ($4,500 Bounty)
════════════════════════
𐀪 Author: T4nv1
════════════════════════
ⴵ Time: Mon, 31 Aug 2026 13:41:01 GMT
════════════════════════
⌗ Tags: #cybersecurity #security #bug_bounty #hacking #bug_bounty_writeup
════════════════════════
𐀪 Author: T4nv1
════════════════════════
ⴵ Time: Mon, 31 Aug 2026 13:41:01 GMT
════════════════════════
⌗ Tags: #cybersecurity #security #bug_bounty #hacking #bug_bounty_writeup
Medium
How a Simple GraphQL Scope Bypass Led to an Account Takeover ($4,500 Bounty)
Discover how analyzing GraphQL schema mutations and nested query parameters revealed a critical access control failure on a major target.
⤷ Title: I Called Myself “Admin” and the Site Let Me
════════════════════════
𐀪 Author: Hunter0x0
════════════════════════
ⴵ Time: Mon, 31 Aug 2026 07:13:00 GMT
════════════════════════
⌗ Tags: #bug_bounty_writeup #bug_bounty_tips
════════════════════════
𐀪 Author: Hunter0x0
════════════════════════
ⴵ Time: Mon, 31 Aug 2026 07:13:00 GMT
════════════════════════
⌗ Tags: #bug_bounty_writeup #bug_bounty_tips
Medium
I Called Myself “Admin” and the Site Let Me
I was hunting on a platform and signed up for a test account. Everything normal email, password, then pick a username.
⤷ Title: How to Start Bug Bounty Hunting in 2026: A Complete Beginner’s Guide
════════════════════════
𐀪 Author: ATNO For Cybersecurity | Hacking
════════════════════════
ⴵ Time: Sun, 30 Aug 2026 23:41:01 GMT
════════════════════════
⌗ Tags: #bug_bounty #ethical_hacking #cybersecurity #bug_bounty_writeup
════════════════════════
𐀪 Author: ATNO For Cybersecurity | Hacking
════════════════════════
ⴵ Time: Sun, 30 Aug 2026 23:41:01 GMT
════════════════════════
⌗ Tags: #bug_bounty #ethical_hacking #cybersecurity #bug_bounty_writeup
Medium
How to Start Bug Bounty Hunting in 2026: A Complete Beginner’s Guide 🐛💰
What Bug Bounty Hunting Actually Is 🎯
⤷ Title: ₹4,000 for a 2-Minute Google Search: Publicly Exposed Invoice Leaking Customer PII
════════════════════════
𐀪 Author: WhoAdnan
════════════════════════
ⴵ Time: Sun, 30 Aug 2026 06:41:32 GMT
════════════════════════
⌗ Tags: #bug_bounty_writeup #bug_bounty_hunter #bug_bounty_tips #bug_bounty
════════════════════════
𐀪 Author: WhoAdnan
════════════════════════
ⴵ Time: Sun, 30 Aug 2026 06:41:32 GMT
════════════════════════
⌗ Tags: #bug_bounty_writeup #bug_bounty_hunter #bug_bounty_tips #bug_bounty
Medium
💸 ₹4,000 for a 2-Minute Google Search: Publicly Exposed Invoice Leaking Customer PII
Introduction
⤷ Title: alg:none and Friends — A JWT Hacking Field Guide
════════════════════════
𐀪 Author: Nitin yadav
════════════════════════
ⴵ Time: Sat, 29 Aug 2026 11:31:01 GMT
════════════════════════
⌗ Tags: #cybersecurity #bug_bounty_tips #bug_bounty_writeup #infosec #bug_bounty
════════════════════════
𐀪 Author: Nitin yadav
════════════════════════
ⴵ Time: Sat, 29 Aug 2026 11:31:01 GMT
════════════════════════
⌗ Tags: #cybersecurity #bug_bounty_tips #bug_bounty_writeup #infosec #bug_bounty
Medium
alg:none and Friends — A JWT Hacking Field Guide
What’s up everyone! Nitin here 👋
⤷ Title: The Subdomain Recon Chain: subfinder → httpx → dnsx
════════════════════════
𐀪 Author: Muneebahmedkhan
════════════════════════
ⴵ Time: Sun, 30 Aug 2026 15:25:58 GMT
════════════════════════
⌗ Tags: #tutorial #recon #bug_bounty #cybersecurity #infosec
════════════════════════
𐀪 Author: Muneebahmedkhan
════════════════════════
ⴵ Time: Sun, 30 Aug 2026 15:25:58 GMT
════════════════════════
⌗ Tags: #tutorial #recon #bug_bounty #cybersecurity #infosec
Medium
The Subdomain Recon Chain: subfinder → httpx → dnsx
Turn a root domain into a short list of live hosts worth testing. subfinder finds candidate hosts, httpx keeps the ones answering on HTTP…
⤷ Title: Managing Scan Results in Metasploit
════════════════════════
𐀪 Author: Ryan Ryan
════════════════════════
ⴵ Time: Fri, 21 Aug 2026 10:55:32 GMT
════════════════════════
⌗ Tags: #pentesting #penetration_testing #recon #red_team #metasploit
════════════════════════
𐀪 Author: Ryan Ryan
════════════════════════
ⴵ Time: Fri, 21 Aug 2026 10:55:32 GMT
════════════════════════
⌗ Tags: #pentesting #penetration_testing #recon #red_team #metasploit
Medium
Managing Scan Results in Metasploit
In this post, let’s go through managing scan results using Metasploit’s database. Covering everything from setup, workspaces, importing…
⤷ Title: The Interceptor That Fetched Anything: 1-Click Native Takeover in a Capacitor App
════════════════════════
𐀪 Author: Hussein Ayoub
════════════════════════
ⴵ Time: Mon, 31 Aug 2026 07:24:50 GMT
════════════════════════
⌗ Tags: #bug_bounty #bugbounty_writeup #android #security
════════════════════════
𐀪 Author: Hussein Ayoub
════════════════════════
ⴵ Time: Mon, 31 Aug 2026 07:24:50 GMT
════════════════════════
⌗ Tags: #bug_bounty #bugbounty_writeup #android #security
Medium
The Interceptor That Fetched Anything: 1-Click Native Takeover in a Capacitor App
On hybrid apps, the bugs usually live in the gap between two features that are both fine by themselves: a WebView serving the app’s own…
⤷ Title: Web Cache Poisoning: One Response, Every Victim
════════════════════════
𐀪 Author: Nitin yadav
════════════════════════
ⴵ Time: Wed, 26 Aug 2026 11:31:01 GMT
════════════════════════
⌗ Tags: #cybersecurity #bugbounty_writeup #bug_bounty #hacking #infosec
════════════════════════
𐀪 Author: Nitin yadav
════════════════════════
ⴵ Time: Wed, 26 Aug 2026 11:31:01 GMT
════════════════════════
⌗ Tags: #cybersecurity #bugbounty_writeup #bug_bounty #hacking #infosec
Medium
Web Cache Poisoning: One Response, Every Victim
What’s up everyone! Nitin here 👋
⤷ Title: Finding Sensitive Backend Information Through GraphQL Errors
════════════════════════
𐀪 Author: Ananya Rathod
════════════════════════
ⴵ Time: Tue, 25 Aug 2026 19:22:57 GMT
════════════════════════
⌗ Tags: #bug_bounty_tips #bug_bounty #graphql #bugbounty_writeup #bug_bounty_writeup
════════════════════════
𐀪 Author: Ananya Rathod
════════════════════════
ⴵ Time: Tue, 25 Aug 2026 19:22:57 GMT
════════════════════════
⌗ Tags: #bug_bounty_tips #bug_bounty #graphql #bugbounty_writeup #bug_bounty_writeup
Medium
Finding Sensitive Backend Information Through GraphQL Errors
While testing a web application, I was looking at its GraphQL endpoint and started checking how it handled invalid queries.
⤷ Title: Power Cookie — picoCTF Writeup
════════════════════════
𐀪 Author: mayhack
════════════════════════
ⴵ Time: Mon, 24 Aug 2026 14:21:54 GMT
════════════════════════
⌗ Tags: #hacking #cybersecurity #bugbounty_writeup #ctf_writeup
════════════════════════
𐀪 Author: mayhack
════════════════════════
ⴵ Time: Mon, 24 Aug 2026 14:21:54 GMT
════════════════════════
⌗ Tags: #hacking #cybersecurity #bugbounty_writeup #ctf_writeup
Medium
Power Cookie — picoCTF Writeup
Challenge Description
⤷ Title: You Can’t Become a Great Bug Bounty Hunter Without Understanding Networking
════════════════════════
𐀪 Author: SAYEM-EH
════════════════════════
ⴵ Time: Sun, 23 Aug 2026 15:08:26 GMT
════════════════════════
⌗ Tags: #penetration_testing #cybersecurity #bugbounty_writeup #bug_hunting #networking
════════════════════════
𐀪 Author: SAYEM-EH
════════════════════════
ⴵ Time: Sun, 23 Aug 2026 15:08:26 GMT
════════════════════════
⌗ Tags: #penetration_testing #cybersecurity #bugbounty_writeup #bug_hunting #networking
Medium
You Can’t Become a Great Bug Bounty Hunter Without Understanding Networking
Introduction
⤷ Title: API Security: The Vulnerabilities Most Developers Miss
════════════════════════
𐀪 Author: Rakesh Joshi
════════════════════════
ⴵ Time: Fri, 21 Aug 2026 17:46:04 GMT
════════════════════════
⌗ Tags: #api_development #bugbounty_writeup #cybersecurity
════════════════════════
𐀪 Author: Rakesh Joshi
════════════════════════
ⴵ Time: Fri, 21 Aug 2026 17:46:04 GMT
════════════════════════
⌗ Tags: #api_development #bugbounty_writeup #cybersecurity
Medium
API Security: The Vulnerabilities Most Developers Miss
APIs have become the backbone of modern applications. Mobile apps, single-page applications, SaaS platforms, payment systems, cloud…
⤷ Title: Termux + NetHunter on Android: Complete Guide + $7,500 SQLi Bug Bounty Story
════════════════════════
𐀪 Author: Bearded Viking
════════════════════════
ⴵ Time: Sun, 30 Aug 2026 23:59:53 GMT
════════════════════════
⌗ Tags: #ethical_hacking #cybersecurity #web_penetration_testing #hacking #bug_bounty_tips
════════════════════════
𐀪 Author: Bearded Viking
════════════════════════
ⴵ Time: Sun, 30 Aug 2026 23:59:53 GMT
════════════════════════
⌗ Tags: #ethical_hacking #cybersecurity #web_penetration_testing #hacking #bug_bounty_tips
Medium
Termux + NetHunter on Android: Complete Guide + $7,500 SQLi Bug Bounty Story
Termux… What?
⤷ Title: How an Unsanitized EXIF Metadata Parser Led to Command Injection and a $10,000 Bounty
════════════════════════
𐀪 Author: T4nv1
════════════════════════
ⴵ Time: Sun, 30 Aug 2026 13:36:01 GMT
════════════════════════
⌗ Tags: #bug_bounty_tips #bug_bounty #cybersecurity #security #hacking
════════════════════════
𐀪 Author: T4nv1
════════════════════════
ⴵ Time: Sun, 30 Aug 2026 13:36:01 GMT
════════════════════════
⌗ Tags: #bug_bounty_tips #bug_bounty #cybersecurity #security #hacking
Medium
How an Unsanitized EXIF Metadata Parser Led to Command Injection and a $10,000 Bounty
When building media-heavy web applications, developers frequently rely on background image processing utilities (such as ImageMagick…
⤷ Title: 15 Hidden Nmap Techniques Every Hacker Should Know
════════════════════════
𐀪 Author: Bugitrix
════════════════════════
ⴵ Time: Sun, 30 Aug 2026 02:56:24 GMT
════════════════════════
⌗ Tags: #cybersecurity #bug_bounty #tools #nmap #bug_bounty_tips
════════════════════════
𐀪 Author: Bugitrix
════════════════════════
ⴵ Time: Sun, 30 Aug 2026 02:56:24 GMT
════════════════════════
⌗ Tags: #cybersecurity #bug_bounty #tools #nmap #bug_bounty_tips
Medium
15 Hidden Nmap Techniques Every Hacker Should Know
Nmap Isn’t Just a Scanner — It’s a Mindset