⤷ Title: How a Simple File Download Bug Turned Into an S3 Signing Oracle
════════════════════════
𐀪 Author: redhunter01
════════════════════════
ⴵ Time: Sun, 16 Aug 2026 09:20:40 GMT
════════════════════════
⌗ Tags: #aws #bug_bounty #ethical_hacking #web_security #cybersecurity
════════════════════════
𐀪 Author: redhunter01
════════════════════════
ⴵ Time: Sun, 16 Aug 2026 09:20:40 GMT
════════════════════════
⌗ Tags: #aws #bug_bounty #ethical_hacking #web_security #cybersecurity
Medium
How a Simple File Download Bug Turned Into an S3 Signing Oracle
How I found a bug in a file download feature that could let one tenant access another tenant’s files.
⤷ Title: Fools Mate,Revenge
════════════════════════
𐀪 Author: Blacq
════════════════════════
ⴵ Time: Sun, 16 Aug 2026 13:35:56 GMT
════════════════════════
⌗ Tags: #api_security #web_security #red_team #cybersecurity #api
════════════════════════
𐀪 Author: Blacq
════════════════════════
ⴵ Time: Sun, 16 Aug 2026 13:35:56 GMT
════════════════════════
⌗ Tags: #api_security #web_security #red_team #cybersecurity #api
Medium
Fools Mate,Revenge
Navigate to https://10.49.187.140:3000/
⤷ Title: Web Application Mapping: Complete Guide
════════════════════════
𐀪 Author: Ph
════════════════════════
ⴵ Time: Sun, 16 Aug 2026 14:19:46 GMT
════════════════════════
⌗ Tags: #ethical_hacking #web_development #cybersecurity #web_security #bug_bounty
════════════════════════
𐀪 Author: Ph
════════════════════════
ⴵ Time: Sun, 16 Aug 2026 14:19:46 GMT
════════════════════════
⌗ Tags: #ethical_hacking #web_development #cybersecurity #web_security #bug_bounty
Medium
Application Mapping: Web Security Foundation
Explore web application mapping, manual reconnaissance, automated crawling, hidden paths, and crawler limitations.
⤷ Title: Walking An Application: A Practical DevTools Methodology (TryHackMe Jr Pentester)
════════════════════════
𐀪 Author: AHMED ASHEERY
════════════════════════
ⴵ Time: Sun, 16 Aug 2026 17:40:21 GMT
════════════════════════
⌗ Tags: #cybersecurity #web_app_pentesting #servers #hacking #tryhackme_writeup
════════════════════════
𐀪 Author: AHMED ASHEERY
════════════════════════
ⴵ Time: Sun, 16 Aug 2026 17:40:21 GMT
════════════════════════
⌗ Tags: #cybersecurity #web_app_pentesting #servers #hacking #tryhackme_writeup
Medium
Walking An Application: A Practical DevTools Methodology (TryHackMe Jr Pentester)
A comprehensive methodology for understanding how modern web applications work, analyzing source code, and using browser DevTools as a core…
⤷ Title: 2 Race Condition let me get money free on a 10 Million users Company on a Hackerone program
════════════════════════
𐀪 Author: Sebastian Vargas
════════════════════════
ⴵ Time: Sun, 16 Aug 2026 17:30:42 GMT
════════════════════════
⌗ Tags: #ciberseguridad #web_vulnerabilities #bug_bounty_writeup #race_condition
════════════════════════
𐀪 Author: Sebastian Vargas
════════════════════════
ⴵ Time: Sun, 16 Aug 2026 17:30:42 GMT
════════════════════════
⌗ Tags: #ciberseguridad #web_vulnerabilities #bug_bounty_writeup #race_condition
Medium
2 Race Condition let me get money free on a 10 Million users Company on a Hackerone program
Hello everyone, Today, I want to share two interesting race condition vulnerabilities that I discovered in a vulnerability disclosure…
⤷ Title: Customed Machine WriteUP
════════════════════════
𐀪 Author: HIZO
════════════════════════
ⴵ Time: Sun, 16 Aug 2026 18:10:32 GMT
════════════════════════
⌗ Tags: #penetration_testing #ctf_walkthrough #web_penetration_testing #ctf_writeup #webdav
════════════════════════
𐀪 Author: HIZO
════════════════════════
ⴵ Time: Sun, 16 Aug 2026 18:10:32 GMT
════════════════════════
⌗ Tags: #penetration_testing #ctf_walkthrough #web_penetration_testing #ctf_writeup #webdav
Medium
Customed Machine WriteUP
i met with a really Briliant hacker i know built a machines CTF challenge to host a CTF competetion ,and told me about the machine he built…
⤷ Title: Grand Larceny Auto: Finding the Real Flag Behind the Decoy
════════════════════════
𐀪 Author: ghosteye
════════════════════════
ⴵ Time: Sun, 16 Aug 2026 18:47:28 GMT
════════════════════════
⌗ Tags: #ctf #tryhackme #cybersecurity #web_security #reverse_engineering
════════════════════════
𐀪 Author: ghosteye
════════════════════════
ⴵ Time: Sun, 16 Aug 2026 18:47:28 GMT
════════════════════════
⌗ Tags: #ctf #tryhackme #cybersecurity #web_security #reverse_engineering
Medium
Grand Larceny Auto: Finding the Real Flag Behind the Decoy
https://tryhackme.com/room/grandlarcenyautoii
⤷ Title: The $20,000 Session Cookie
════════════════════════
𐀪 Author: Raj Namdev
════════════════════════
ⴵ Time: Mon, 17 Aug 2026 03:01:03 GMT
════════════════════════
⌗ Tags: #web_security #ethical_hacking #account_takeover #cybersecurity #bug_bounty
════════════════════════
𐀪 Author: Raj Namdev
════════════════════════
ⴵ Time: Mon, 17 Aug 2026 03:01:03 GMT
════════════════════════
⌗ Tags: #web_security #ethical_hacking #account_takeover #cybersecurity #bug_bounty
Medium
The $20,000 Session Cookie
30-Second Version: The most-upvoted account takeover in HackerOne’s entire disclosed-reports dataset contains no exploit, no injection, no…
⤷ Title: How an Integer Overflow Let Me Buy Anything for $0
════════════════════════
𐀪 Author: Rohit dalal
════════════════════════
ⴵ Time: Mon, 17 Aug 2026 04:01:48 GMT
════════════════════════
⌗ Tags: #bussiness_logic #bug_bounty #bypass #integer_overflow #web_application_security
════════════════════════
𐀪 Author: Rohit dalal
════════════════════════
ⴵ Time: Mon, 17 Aug 2026 04:01:48 GMT
════════════════════════
⌗ Tags: #bussiness_logic #bug_bounty #bypass #integer_overflow #web_application_security
Medium
How an Integer Overflow Let Me Buy Anything for $0
During a security assessment on a popular e-commerce platform, I stumbled upon a classic yet frequently overlooked vulnerability, an…
⤷ Title: I Got Tired of Opening Burp to Test One Request. So I Built My Way Out of It — Twice V2.
════════════════════════
𐀪 Author: Alareqi
════════════════════════
ⴵ Time: Mon, 17 Aug 2026 07:53:28 GMT
════════════════════════
⌗ Tags: #cybersecurity #bug_bounty #bug_bounty_hunter #hacking #web_penetration_testing
════════════════════════
𐀪 Author: Alareqi
════════════════════════
ⴵ Time: Mon, 17 Aug 2026 07:53:28 GMT
════════════════════════
⌗ Tags: #cybersecurity #bug_bounty #bug_bounty_hunter #hacking #web_penetration_testing
Medium
I Got Tired of Opening Burp to Test One Request. So I Built My Way Out of It — Twice V2.
There’s a very specific kind of annoyance every bug hunter knows.