⤷ Title: Exploiting AI agents to perform destructive actions
════════════════════════
𐀪 Author: MR SHAN
════════════════════════
ⴵ Time: Thu, 10 Sep 2026 09:22:11 GMT
════════════════════════
⌗ Tags: #web_security #ai_security #llm_security #bug_bounty #cybersecurity
════════════════════════
𐀪 Author: MR SHAN
════════════════════════
ⴵ Time: Thu, 10 Sep 2026 09:22:11 GMT
════════════════════════
⌗ Tags: #web_security #ai_security #llm_security #bug_bounty #cybersecurity
Medium
Exploiting AI agents to perform destructive actions
What Is an AI-Powered Scanner?
⤷ Title: $4,200 Bug Bounty: Escalating Blind SSRF to Internal Cloud Metadata & Credential Exfiltration
════════════════════════
𐀪 Author: T4nv1
════════════════════════
ⴵ Time: Thu, 10 Sep 2026 08:16:00 GMT
════════════════════════
⌗ Tags: #pentesting #hacking #cybersecurity #security #bug_bounty
════════════════════════
𐀪 Author: T4nv1
════════════════════════
ⴵ Time: Thu, 10 Sep 2026 08:16:00 GMT
════════════════════════
⌗ Tags: #pentesting #hacking #cybersecurity #security #bug_bounty
Medium
$4,200 Bug Bounty: Escalating Blind SSRF to Internal Cloud Metadata & Credential Exfiltration
Server-Side Request Forgery (SSRF) occurs when a backend server fetches a remote resource without validating the user-supplied URL. While…
⤷ Title: Why Your Vulnerability Backlog Never Shrinks: Discovery Outruns Remediation at 74 Days
════════════════════════
𐀪 Author: Shift Left Show
════════════════════════
ⴵ Time: Thu, 10 Sep 2026 09:26:01 GMT
════════════════════════
⌗ Tags: #vulnerability_management #aspm #appsec #application_security #devsecops
════════════════════════
𐀪 Author: Shift Left Show
════════════════════════
ⴵ Time: Thu, 10 Sep 2026 09:26:01 GMT
════════════════════════
⌗ Tags: #vulnerability_management #aspm #appsec #application_security #devsecops
Medium
Why Your Vulnerability Backlog Never Shrinks: Discovery Outruns Remediation at 74 Days
Because your backlog is a queue, and the arrival rate beats the service rate. Edgescan puts average application remediation at 74.3 days…
⤷ Title: “Integer Overflow and Denial of Service Vulnerabilities in Microsoft Word 2010–2016 OOXML Parser
════════════════════════
𐀪 Author: Ryan William
════════════════════════
ⴵ Time: Thu, 10 Sep 2026 09:26:29 GMT
════════════════════════
⌗ Tags: #integer_overflow #hacking #vulnerability #microsoft #cybersecurity
════════════════════════
𐀪 Author: Ryan William
════════════════════════
ⴵ Time: Thu, 10 Sep 2026 09:26:29 GMT
════════════════════════
⌗ Tags: #integer_overflow #hacking #vulnerability #microsoft #cybersecurity
Medium
“Integer Overflow and Denial of Service Vulnerabilities in Microsoft Word 2010–2016 OOXML Parser
Executive Summary
⤷ Title: Echoes of Stuxnet: How a 16-Year-Old Hacking Trick is Finding New Life
════════════════════════
𐀪 Author: Whengomarket
════════════════════════
ⴵ Time: Thu, 10 Sep 2026 09:23:30 GMT
════════════════════════
⌗ Tags: #threat_intelligence #infosec #cybersecurity #hacking
════════════════════════
𐀪 Author: Whengomarket
════════════════════════
ⴵ Time: Thu, 10 Sep 2026 09:23:30 GMT
════════════════════════
⌗ Tags: #threat_intelligence #infosec #cybersecurity #hacking
Medium
Echoes of Stuxnet: How a 16-Year-Old Hacking Trick is Finding New Life
Understanding the “Hidden Pocket” Windows Vulnerability without a Computer Science Degree
⤷ Title: What HackTheBox Academy’s "Getting Started" Module Actually Teaches You
════════════════════════
𐀪 Author: Kafeero Mirembe Mercy
════════════════════════
ⴵ Time: Thu, 10 Sep 2026 08:40:09 GMT
════════════════════════
⌗ Tags: #programming #hacking #technology #hackthebox #artificial_intelligence
════════════════════════
𐀪 Author: Kafeero Mirembe Mercy
════════════════════════
ⴵ Time: Thu, 10 Sep 2026 08:40:09 GMT
════════════════════════
⌗ Tags: #programming #hacking #technology #hackthebox #artificial_intelligence
Medium
What HackTheBox Academy’s "Getting Started" Module Actually Teaches You
lady with a tab and servers
⤷ Title: Learn Nmap: Live Host Discovery
════════════════════════
𐀪 Author: Farolina Rahmatunnisa
════════════════════════
ⴵ Time: Thu, 10 Sep 2026 09:02:51 GMT
════════════════════════
⌗ Tags: #penetration_testing #nmap #red_team #cybersecurity #reconnaissance
════════════════════════
𐀪 Author: Farolina Rahmatunnisa
════════════════════════
ⴵ Time: Thu, 10 Sep 2026 09:02:51 GMT
════════════════════════
⌗ Tags: #penetration_testing #nmap #red_team #cybersecurity #reconnaissance
Medium
Learn Nmap: Live Host Discovery 🎯
In the journey of learning cybersecurity (and hopefully initiating my career as a Penetration Tester), one of the tools I am learning is…
⤷ Title: If you find yourself in this DATA BREACH LIST, Change your Credentials NOW!!
════════════════════════
𐀪 Author: Sachin Verlekar
════════════════════════
ⴵ Time: Thu, 10 Sep 2026 09:14:29 GMT
════════════════════════
⌗ Tags: #ethical_hacking #data_breach #cybersecurity #osint #threat_intelligence
════════════════════════
𐀪 Author: Sachin Verlekar
════════════════════════
ⴵ Time: Thu, 10 Sep 2026 09:14:29 GMT
════════════════════════
⌗ Tags: #ethical_hacking #data_breach #cybersecurity #osint #threat_intelligence
Medium
If you find yourself in this DATA BREACH LIST, Change your Credentials NOW!!
Six months away from writing, and this is what pulled me back.
⤷ Title: My First Steps Into HackTheBox: What "Getting Started" Actually Prepared Me For
════════════════════════
𐀪 Author: Kafeero Mirembe Mercy
════════════════════════
ⴵ Time: Thu, 10 Sep 2026 08:46:21 GMT
════════════════════════
⌗ Tags: #programming #technology #cybersecurity #software_development #ethical_hacking
════════════════════════
𐀪 Author: Kafeero Mirembe Mercy
════════════════════════
ⴵ Time: Thu, 10 Sep 2026 08:46:21 GMT
════════════════════════
⌗ Tags: #programming #technology #cybersecurity #software_development #ethical_hacking
Medium
My First Steps Into HackTheBox: What "Getting Started" Actually Prepared Me For
servers
⤷ Title: CISA Flags Exploited Cisco, Citrix, Fortinet Flaws, Sets Sept. 12 Federal Patch Deadline
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Thu, 10 Sep 2026 16:06:46 +0530
════════════════════════
⌗ Tags: No_Tags
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Thu, 10 Sep 2026 16:06:46 +0530
════════════════════════
⌗ Tags: No_Tags
⤷ Title: OnePlus Session Takeover Vulnerability Exposes Android Data
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Thu, 10 Sep 2026 10:30:57 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Android security #OnePlus #Session Takeover #Vulnerability
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Thu, 10 Sep 2026 10:30:57 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Android security #OnePlus #Session Takeover #Vulnerability
Daily CyberSecurity
OnePlus Session Takeover Vulnerability Exposes Android Data
Preinstalled smartphone applications frequently operate with high system privileges. Security researchers recently uncovered a severe OnePlus session takeover vulnerability. This flaw directly imp…
⤷ Title: HTTP Request Smuggling via Content-Length and Transfer-Encoding Desync (CL-TE) - I am not a…
════════════════════════
𐀪 Author: Jerry Shah (Jerry)
════════════════════════
ⴵ Time: Thu, 10 Sep 2026 11:31:01 GMT
════════════════════════
⌗ Tags: #bug_bounty #pentesting #vulnerability #cybersecurity #infosec
════════════════════════
𐀪 Author: Jerry Shah (Jerry)
════════════════════════
ⴵ Time: Thu, 10 Sep 2026 11:31:01 GMT
════════════════════════
⌗ Tags: #bug_bounty #pentesting #vulnerability #cybersecurity #infosec
Medium
HTTP Request Smuggling via Content-Length and Transfer-Encoding Desync (CL-TE) - I am not a Smuggler
Summary
⤷ Title: postMessage XSS: The Listener Nobody Audits
════════════════════════
𐀪 Author: Nitin yadav
════════════════════════
ⴵ Time: Thu, 10 Sep 2026 11:31:01 GMT
════════════════════════
⌗ Tags: #xss_attack #bug_bounty_writeup #bug_bounty #cybersecurity #infosec
════════════════════════
𐀪 Author: Nitin yadav
════════════════════════
ⴵ Time: Thu, 10 Sep 2026 11:31:01 GMT
════════════════════════
⌗ Tags: #xss_attack #bug_bounty_writeup #bug_bounty #cybersecurity #infosec
Medium
postMessage XSS: The Listener Nobody Audits
The victim visits your page. Your page frames the target and tells it what to render. Nothing malicious ever reaches their server.
⤷ Title: Why Retail Applications Struggle During Peak Demand Even After Moving to the Cloud
════════════════════════
𐀪 Author: aezion
════════════════════════
ⴵ Time: Thu, 10 Sep 2026 11:28:39 GMT
════════════════════════
⌗ Tags: #retail #application_development #cloud_security #google_cloud_platform #application_security
════════════════════════
𐀪 Author: aezion
════════════════════════
ⴵ Time: Thu, 10 Sep 2026 11:28:39 GMT
════════════════════════
⌗ Tags: #retail #application_development #cloud_security #google_cloud_platform #application_security
Medium
Why Retail Applications Struggle During Peak Demand Even After Moving to the Cloud
A retailer can move its applications to the cloud, set up auto-scaling, and still have a bad day when a major sale goes live.
⤷ Title: Application Security Posture Management: A Smarter Way to Manage Application Risk
════════════════════════
𐀪 Author: Piyush Bhuyan
════════════════════════
ⴵ Time: Thu, 10 Sep 2026 10:56:47 GMT
════════════════════════
⌗ Tags: #application_security_test #real_application_security #web_application_security #application_security
════════════════════════
𐀪 Author: Piyush Bhuyan
════════════════════════
ⴵ Time: Thu, 10 Sep 2026 10:56:47 GMT
════════════════════════
⌗ Tags: #application_security_test #real_application_security #web_application_security #application_security
Medium
Application Security Posture Management: A Smarter Way to Manage Application Risk
Modern applications are built quickly and updated frequently. Developers use cloud services, open-source libraries, APIs, containers, and…
⤷ Title: My First ATM Pentest (And What I Found)
════════════════════════
𐀪 Author: 0xc4t
════════════════════════
ⴵ Time: Thu, 10 Sep 2026 11:11:49 GMT
════════════════════════
⌗ Tags: #hacking #pentesting #ethical_hacking #adversary_emulation
════════════════════════
𐀪 Author: 0xc4t
════════════════════════
ⴵ Time: Thu, 10 Sep 2026 11:11:49 GMT
════════════════════════
⌗ Tags: #hacking #pentesting #ethical_hacking #adversary_emulation
Medium
My First ATM Pentest (And What I Found)
yo bro! honestly, i’ve been meaning to write this one up for a while. throughout my career, i’ve only done an atm pentest project exactly…
⤷ Title: Writeup for CyLab/picoCTF challenge “Magikarp Ground Mission”
════════════════════════
𐀪 Author: Walter Moar
════════════════════════
ⴵ Time: Thu, 10 Sep 2026 11:01:01 GMT
════════════════════════
⌗ Tags: #ctf #ctf_writeup #cylab #hacking #cybersecurity
════════════════════════
𐀪 Author: Walter Moar
════════════════════════
ⴵ Time: Thu, 10 Sep 2026 11:01:01 GMT
════════════════════════
⌗ Tags: #ctf #ctf_writeup #cylab #hacking #cybersecurity
Medium
Writeup for CyLab/picoCTF challenge “Magikarp Ground Mission”
Learn how CyLab’s “Magikarp Ground Mission” challenge teaches Linux navigation, using cd, ls, and cat across multiple directories to…
⤷ Title: CVE-2026–69194: Cross-Site Scripting in FileRise
════════════════════════
𐀪 Author: Md Fahim Al Shihab
════════════════════════
ⴵ Time: Thu, 10 Sep 2026 10:24:10 GMT
════════════════════════
⌗ Tags: #xss_vulnerability #xss_attack #xss_bypass #hacking #cybersecurity
════════════════════════
𐀪 Author: Md Fahim Al Shihab
════════════════════════
ⴵ Time: Thu, 10 Sep 2026 10:24:10 GMT
════════════════════════
⌗ Tags: #xss_vulnerability #xss_attack #xss_bypass #hacking #cybersecurity
Medium
CVE-2026–69194: Cross-Site Scripting in FileRise
I’m pleased to share another result from my vulnerability research: a Cross-Site Scripting (XSS) vulnerability I discovered in FileRise has…
⤷ Title: Top Roblox Executors in 2026: The Best Keyless Hack Reviewed
════════════════════════
𐀪 Author: Fabian Kress
════════════════════════
ⴵ Time: Thu, 10 Sep 2026 10:12:50 GMT
════════════════════════
⌗ Tags: #gamehacking #cheating #roblox #hacking #gaming
════════════════════════
𐀪 Author: Fabian Kress
════════════════════════
ⴵ Time: Thu, 10 Sep 2026 10:12:50 GMT
════════════════════════
⌗ Tags: #gamehacking #cheating #roblox #hacking #gaming
Medium
Top Roblox Executors in 2026: The Best Keyless Hack Reviewed
The topic of evaluating premium software for Roblox remains one of the most discussed in the community. I recently came across the executor…
⤷ Title: Prompt Injection in LLM Applications: A Practical Security Testing Approach
════════════════════════
𐀪 Author: Gaurav Shiudkar
════════════════════════
ⴵ Time: Thu, 10 Sep 2026 11:41:51 GMT
════════════════════════
⌗ Tags: #llm_security #prompt_injection #aiml #llm #penetration_testing
════════════════════════
𐀪 Author: Gaurav Shiudkar
════════════════════════
ⴵ Time: Thu, 10 Sep 2026 11:41:51 GMT
════════════════════════
⌗ Tags: #llm_security #prompt_injection #aiml #llm #penetration_testing
Medium
Prompt Injection in LLM Applications: A Practical Security Testing Approach
# Prompt Injection in LLM Applications: A Practical Security Testing Approach
⤷ Title: VirtuProbe Studio: from a proxy plugin to a test automation workbench
════════════════════════
𐀪 Author: Jakub
════════════════════════
ⴵ Time: Thu, 10 Sep 2026 10:36:23 GMT
════════════════════════
⌗ Tags: #test_automation #devops #software_testing #api_development #penetration_testing
════════════════════════
𐀪 Author: Jakub
════════════════════════
ⴵ Time: Thu, 10 Sep 2026 10:36:23 GMT
════════════════════════
⌗ Tags: #test_automation #devops #software_testing #api_development #penetration_testing
Medium
VirtuProbe Studio: from a proxy plugin to a test automation workbench
VirtuProbe began as a plugin for Burp Suite Pro.