⤷ Title: Beating a Filter That Only Checks Once: Traversal Sequences Stripped Non-Recursively
════════════════════════
𐀪 Author: Kaustubh Asthana
════════════════════════
ⴵ Time: Sat, 19 Sep 2026 21:27:29 GMT
════════════════════════
⌗ Tags: #portswigger #burpsuite #cybersecurity #web_penetration_testing #penetration_testing
════════════════════════
𐀪 Author: Kaustubh Asthana
════════════════════════
ⴵ Time: Sat, 19 Sep 2026 21:27:29 GMT
════════════════════════
⌗ Tags: #portswigger #burpsuite #cybersecurity #web_penetration_testing #penetration_testing
Medium
Beating a Filter That Only Checks Once: Traversal Sequences Stripped Non-Recursively
Lab ten in my Web Security Academy series, and the third path traversal lab in a row, each one built on top of the last
⤷ Title: When Blocking the Obvious Payload Isn’t Enough: Absolute Path Bypass
════════════════════════
𐀪 Author: Kaustubh Asthana
════════════════════════
ⴵ Time: Sat, 19 Sep 2026 20:04:42 GMT
════════════════════════
⌗ Tags: #penetration_testing #web_penetration_testing #cybersecurity #burpsuite #portswigger
════════════════════════
𐀪 Author: Kaustubh Asthana
════════════════════════
ⴵ Time: Sat, 19 Sep 2026 20:04:42 GMT
════════════════════════
⌗ Tags: #penetration_testing #web_penetration_testing #cybersecurity #burpsuite #portswigger
Medium
When Blocking the Obvious Payload Isn’t Enough: Absolute Path Bypass
Lab nine in my Web Security Academy series — a small twist on the last lab that changes everything
⤷ Title: JADEPUFFER Is the First Autonomous AI Ransomware. ENCFORGE Makes It Worse.
════════════════════════
𐀪 Author: Aeon Flex, Elriel Assoc. 2133 [NEON MAXIMA]
════════════════════════
ⴵ Time: Sat, 19 Sep 2026 21:03:59 GMT
════════════════════════
⌗ Tags: #cybersecurity #ai_agent #ai_security #malware_analysis #ethical_hacking
════════════════════════
𐀪 Author: Aeon Flex, Elriel Assoc. 2133 [NEON MAXIMA]
════════════════════════
ⴵ Time: Sat, 19 Sep 2026 21:03:59 GMT
════════════════════════
⌗ Tags: #cybersecurity #ai_agent #ai_security #malware_analysis #ethical_hacking
Medium
JADEPUFFER Is the First Autonomous AI Ransomware. ENCFORGE Makes It Worse.
Inside the Malware That Doesn’t Wait for Instructions
⤷ Title: My First Bug Bounty Finding Was Critical: Exploiting a Weak JWT Secret for Account Takeover
════════════════════════
𐀪 Author: yOnly
════════════════════════
ⴵ Time: Sat, 19 Sep 2026 23:16:39 GMT
════════════════════════
⌗ Tags: #cybersecurity #jwt #ethical_hacking #bug_bounty #web_security
════════════════════════
𐀪 Author: yOnly
════════════════════════
ⴵ Time: Sat, 19 Sep 2026 23:16:39 GMT
════════════════════════
⌗ Tags: #cybersecurity #jwt #ethical_hacking #bug_bounty #web_security
Medium
My First Bug Bounty Finding Was Critical: Exploiting a Weak JWT Secret for Account Takeover
This was my first real bug bounty finding, and somehow, it turned into a Critical vulnerability with a $1,500 bounty.
⤷ Title: From “Elite Vicarious Phosphorescent
Industry; The Latest Malt-Weather Taxes” (2026)
════════════════════════
𐀪 Author: Joshua Nilles
════════════════════════
ⴵ Time: Sat, 19 Sep 2026 23:13:53 GMT
════════════════════════
⌗ Tags: #hacking #language #comedy #college #poetry
Industry; The Latest Malt-Weather Taxes” (2026)
════════════════════════
𐀪 Author: Joshua Nilles
════════════════════════
ⴵ Time: Sat, 19 Sep 2026 23:13:53 GMT
════════════════════════
⌗ Tags: #hacking #language #comedy #college #poetry
Medium
From “Elite Vicarious Phosphorescent Industry; The Latest Malt-Weather Taxes” (2026)
Search for Orange/Carrot Beverages if you think Bush didn’t do 9/11 because of jokes on him. “It’s not a Turmeric. It’s just a secret…
⤷ Title: How does a SAST scanner decide which line of code to flag?
════════════════════════
𐀪 Author: Codeunderfire
════════════════════════
ⴵ Time: Sun, 20 Sep 2026 00:19:53 GMT
════════════════════════
⌗ Tags: #software_engineering #devsecops #static_analysis #secure_coding #application_security
════════════════════════
𐀪 Author: Codeunderfire
════════════════════════
ⴵ Time: Sun, 20 Sep 2026 00:19:53 GMT
════════════════════════
⌗ Tags: #software_engineering #devsecops #static_analysis #secure_coding #application_security
Medium
How does a SAST scanner decide which line of code to flag?
A SAST scanner parses source code into a syntax tree, follows how values move through it, and flags the exact line where a tainted input…
⤷ Title: What is edge security and why do attackers target edge devices first?
════════════════════════
𐀪 Author: Edge Watch
════════════════════════
ⴵ Time: Sun, 20 Sep 2026 00:36:03 GMT
════════════════════════
⌗ Tags: #infosec #zero_trust #vulnerability #network_security #cybersecurity
════════════════════════
𐀪 Author: Edge Watch
════════════════════════
ⴵ Time: Sun, 20 Sep 2026 00:36:03 GMT
════════════════════════
⌗ Tags: #infosec #zero_trust #vulnerability #network_security #cybersecurity
Medium
What is edge security and why do attackers target edge devices first?
Edge security is the protection of the appliances that bridge your managed network and the internet: VPN gateways, firewalls, routers, and…
⤷ Title: What Is a Cloud Attack Path and How Do Attackers Exploit It?
════════════════════════
𐀪 Author: Cloud Under Fire
════════════════════════
ⴵ Time: Sun, 20 Sep 2026 00:21:28 GMT
════════════════════════
⌗ Tags: #cybersecurity #devsecops #cloud_security #aws #penetration_testing
════════════════════════
𐀪 Author: Cloud Under Fire
════════════════════════
ⴵ Time: Sun, 20 Sep 2026 00:21:28 GMT
════════════════════════
⌗ Tags: #cybersecurity #devsecops #cloud_security #aws #penetration_testing
Medium
What Is a Cloud Attack Path and How Do Attackers Exploit It?
A cloud attack path is a connected chain of small misconfigurations an attacker walks from a public entry point to your data. In Amazon Web…
⤷ Title: TryHackMe BloodHound Walkthrough
════════════════════════
𐀪 Author: Rich
════════════════════════
ⴵ Time: Sun, 20 Sep 2026 00:26:49 GMT
════════════════════════
⌗ Tags: #tryhackme_writeup #tryhackme_walkthrough #tryhackme #active_directory_security #active_directory
════════════════════════
𐀪 Author: Rich
════════════════════════
ⴵ Time: Sun, 20 Sep 2026 00:26:49 GMT
════════════════════════
⌗ Tags: #tryhackme_writeup #tryhackme_walkthrough #tryhackme #active_directory_security #active_directory
Medium
TryHackMe BloodHound Walkthrough
TL;DR Walkthrough of the BloodHound TryHackMe network room.
⤷ Title: What is API security and how do attackers actually break APIs?
════════════════════════
𐀪 Author: Apiunderattack
════════════════════════
ⴵ Time: Sun, 20 Sep 2026 00:20:02 GMT
════════════════════════
⌗ Tags: #devsecops #software_engineering #web_development #cybersecurity #api_security
════════════════════════
𐀪 Author: Apiunderattack
════════════════════════
ⴵ Time: Sun, 20 Sep 2026 00:20:02 GMT
════════════════════════
⌗ Tags: #devsecops #software_engineering #web_development #cybersecurity #api_security
Medium
What is API security and how do attackers actually break APIs?
API security is the practice of making every route clear four checks before it answers: is the endpoint known, who is calling, may that…
⤷ Title: Your Trace Baggage Is an Outbound Data Channel
════════════════════════
𐀪 Author: Arjun Garg
════════════════════════
ⴵ Time: Sun, 20 Sep 2026 03:36:13 GMT
════════════════════════
⌗ Tags: #distributed_systems #devops #application_security #opentelemetry #observability
════════════════════════
𐀪 Author: Arjun Garg
════════════════════════
ⴵ Time: Sun, 20 Sep 2026 03:36:13 GMT
════════════════════════
⌗ Tags: #distributed_systems #devops #application_security #opentelemetry #observability
Medium
Your Trace Baggage Is an Outbound Data Channel
OpenTelemetry baggage is useful precisely because it travels. That is also what makes it a trust-boundary problem.
⤷ Title: “Networking” in Cybersecurity: Forget TCP/IP, Start Kissing Ass
════════════════════════
𐀪 Author: Yua Mikanana
════════════════════════
ⴵ Time: Sun, 20 Sep 2026 03:27:30 GMT
════════════════════════
⌗ Tags: #cybersecurity #technology #hacking #ethical_hacking #penetration_testing
════════════════════════
𐀪 Author: Yua Mikanana
════════════════════════
ⴵ Time: Sun, 20 Sep 2026 03:27:30 GMT
════════════════════════
⌗ Tags: #cybersecurity #technology #hacking #ethical_hacking #penetration_testing
Medium
“Networking” in Cybersecurity: Forget TCP/IP, Start Kissing Ass
If you’re deep in penetration testing or red teaming, you’ve probably spent years mastering networks.
⤷ Title: Full walkthrough: TryHack me room |Tcpdump: The Basics
════════════════════════
𐀪 Author: Gabriella Kwok
════════════════════════
ⴵ Time: Sun, 20 Sep 2026 02:57:21 GMT
════════════════════════
⌗ Tags: #room_walkthrough #tryhackme_writeup #blog #hacking
════════════════════════
𐀪 Author: Gabriella Kwok
════════════════════════
ⴵ Time: Sun, 20 Sep 2026 02:57:21 GMT
════════════════════════
⌗ Tags: #room_walkthrough #tryhackme_writeup #blog #hacking
Medium
Full walkthrough: TryHack me room |Tcpdump: The Basics
Before you read: there are some spoilers here- try to understand everything before actually typing in the answer!
⤷ Title: Lentement sur l’IA, mais déjà une explosion de failles
════════════════════════
𐀪 Author: L'ABESTIT
════════════════════════
ⴵ Time: Sun, 20 Sep 2026 02:33:47 GMT
════════════════════════
⌗ Tags: #hacking #chatbots #cybersécurité #cybersecurity #artificial_intelligence
════════════════════════
𐀪 Author: L'ABESTIT
════════════════════════
ⴵ Time: Sun, 20 Sep 2026 02:33:47 GMT
════════════════════════
⌗ Tags: #hacking #chatbots #cybersécurité #cybersecurity #artificial_intelligence
Medium
Lentement sur l’IA, mais déjà une explosion de failles
Lentement sur l’IA, mais déjà une explosion de failles Une industrie partagée entre prudence et accélération L’intelligence artificielle vit aujourd’hui un moment charnière. D’un …
⤷ Title: Transferring Files with Code — A Practitioner’s Reference
════════════════════════
𐀪 Author: Gabriel D. Vincent
════════════════════════
ⴵ Time: Sun, 20 Sep 2026 03:06:01 GMT
════════════════════════
⌗ Tags: #windows #infosec #cybersecurity #pentesting
════════════════════════
𐀪 Author: Gabriel D. Vincent
════════════════════════
ⴵ Time: Sun, 20 Sep 2026 03:06:01 GMT
════════════════════════
⌗ Tags: #windows #infosec #cybersecurity #pentesting
Medium
Transferring Files with Code — A Practitioner’s Reference
When standard transfer tools (wget, curl, nc) are unavailable or blocked, programming languages already installed on the target can fill…
⤷ Title: Why does Identity and Access Management fail even when MFA is on?
════════════════════════
𐀪 Author: Who Goes There
════════════════════════
ⴵ Time: Sun, 20 Sep 2026 02:19:27 GMT
════════════════════════
⌗ Tags: #identity_management #infosec #active_directory #zero_trust #cybersecurity
════════════════════════
𐀪 Author: Who Goes There
════════════════════════
ⴵ Time: Sun, 20 Sep 2026 02:19:27 GMT
════════════════════════
⌗ Tags: #identity_management #infosec #active_directory #zero_trust #cybersecurity
Medium
Why does Identity and Access Management fail even when MFA is on?
MFA hardens only one of the four controls that make up Identity and Access Management: authentication. Authorization, lifecycle and…
⤷ Title: Cyborg — TryHackMe Walktrough
════════════════════════
𐀪 Author: Stephvannes Samuel Kevin
════════════════════════
ⴵ Time: Sun, 20 Sep 2026 03:52:45 GMT
════════════════════════
⌗ Tags: #ctf_writeup #privilege_escalation #penetration_testing #cybersecurity #tryhackme
════════════════════════
𐀪 Author: Stephvannes Samuel Kevin
════════════════════════
ⴵ Time: Sun, 20 Sep 2026 03:52:45 GMT
════════════════════════
⌗ Tags: #ctf_writeup #privilege_escalation #penetration_testing #cybersecurity #tryhackme
Medium
Cyborg — TryHackMe Walktrough
This is how, I got root in Cyborg.
⤷ Title: Low logic — Hardware HTB challenge — Writeup
════════════════════════
𐀪 Author: 0xGyro
════════════════════════
ⴵ Time: Sun, 20 Sep 2026 03:09:29 GMT
════════════════════════
⌗ Tags: #hackthebox_writeup #hardware_hacking #cybersecurity #hackthebox #electronics
════════════════════════
𐀪 Author: 0xGyro
════════════════════════
ⴵ Time: Sun, 20 Sep 2026 03:09:29 GMT
════════════════════════
⌗ Tags: #hackthebox_writeup #hardware_hacking #cybersecurity #hackthebox #electronics
Medium
Low logic — Hardware HTB challenge — Writeup
Low Logic is one of HTB’s easy hardware challenges, and it lives up to the name. You get a photo of a chip and a CSV file, and that’s it…
⤷ Title: "403 Forbidden Bypass: How to Find Critical Security Bugs (2026 Guide)"
════════════════════════
𐀪 Author: Pushkar Padhye
════════════════════════
ⴵ Time: Sun, 20 Sep 2026 05:58:03 GMT
════════════════════════
⌗ Tags: #ai #ethical_hacking #cybersecurity #bug_bounty #web_security
════════════════════════
𐀪 Author: Pushkar Padhye
════════════════════════
ⴵ Time: Sun, 20 Sep 2026 05:58:03 GMT
════════════════════════
⌗ Tags: #ai #ethical_hacking #cybersecurity #bug_bounty #web_security
Medium
The 403 That Wasn’t a Dead End
"Master 403 Bypasses, HTTP/2 exploits, & TLS fingerprinting to turn rejections into bug bounty paydays."
⤷ Title: How Three Indian Security Researchers Hacked OpenAI Using Claude?
════════════════════════
𐀪 Author: Shashwat
════════════════════════
ⴵ Time: Sun, 20 Sep 2026 04:44:14 GMT
════════════════════════
⌗ Tags: #hacking #openai #programming #artificial_intelligence #cybersecurity
════════════════════════
𐀪 Author: Shashwat
════════════════════════
ⴵ Time: Sun, 20 Sep 2026 04:44:14 GMT
════════════════════════
⌗ Tags: #hacking #openai #programming #artificial_intelligence #cybersecurity
Medium
How Three Indian Security Researchers Hacked OpenAI Using Claude?
The ironic twist in AI security when Anthropic’s flagship model was used to breach ChatGPT’s creator.
⤷ Title: Gemini Hacked Three Real Companies, and Self-Halting Is Not a Safety Plan
════════════════════════
𐀪 Author: Dig Trace
════════════════════════
ⴵ Time: Sun, 20 Sep 2026 04:09:54 GMT
════════════════════════
⌗ Tags: #google_gemini #hacking #google #ai
════════════════════════
𐀪 Author: Dig Trace
════════════════════════
ⴵ Time: Sun, 20 Sep 2026 04:09:54 GMT
════════════════════════
⌗ Tags: #google_gemini #hacking #google #ai
Medium
Gemini Hacked Three Real Companies, and Self-Halting Is Not a Safety Plan
In May, Google aimed Gemini at a fictional company during a cybersecurity exercise. The model went looking, found three real companies…