⤷ Title: Hacker Holidays Day 7: Following Someone Else’s Footprints to Root
════════════════════════
𐀪 Author: Devyaniitware
════════════════════════
ⴵ Time: Thu, 13 Aug 2026 17:51:21 GMT
════════════════════════
⌗ Tags: #web_security #nodejs #ctf #penetration_testing #cybersecurity
════════════════════════
𐀪 Author: Devyaniitware
════════════════════════
ⴵ Time: Thu, 13 Aug 2026 17:51:21 GMT
════════════════════════
⌗ Tags: #web_security #nodejs #ctf #penetration_testing #cybersecurity
Medium
Hacker Holidays Day 7: Following Someone Else’s Footprints to Root
The setup
⤷ Title: How a Single HTTP Redirect Bypassed SSRF Filters on 4 Programs Over 8 Years
════════════════════════
𐀪 Author: Raj Namdev
════════════════════════
ⴵ Time: Fri, 14 Aug 2026 02:31:01 GMT
════════════════════════
⌗ Tags: #web_security #cybersecurity #ethical_hacking #ssrf #bug_bounty
════════════════════════
𐀪 Author: Raj Namdev
════════════════════════
ⴵ Time: Fri, 14 Aug 2026 02:31:01 GMT
════════════════════════
⌗ Tags: #web_security #cybersecurity #ethical_hacking #ssrf #bug_bounty
Medium
How a Single HTTP Redirect Bypassed SSRF Filters on 4 Programs Over 8 Years
30-Second Version: One SSRF bypass technique — a single HTTP redirect — worked against Infogram (2017), Slack (2018), Bitwarden (2020), and…
⤷ Title: Server-Side Template Injection (SSTI) to Remote Code Execution (RCE): A Visual Guide for Pentesters…
════════════════════════
𐀪 Author: Kondibajogdand
════════════════════════
ⴵ Time: Fri, 14 Aug 2026 05:41:00 GMT
════════════════════════
⌗ Tags: #web_penetration_testing #web_security #ethical_hacking #web_application_security #security
════════════════════════
𐀪 Author: Kondibajogdand
════════════════════════
ⴵ Time: Fri, 14 Aug 2026 05:41:00 GMT
════════════════════════
⌗ Tags: #web_penetration_testing #web_security #ethical_hacking #web_application_security #security
Medium
Server-Side Template Injection (SSTI) to Remote Code Execution (RCE): A Visual Guide for Pentesters and Developers
🎬 The Scene: A “Harmless” Name Field
⤷ Title: I Thought I Understood HTTP — Then I Opened Burp Suite
════════════════════════
𐀪 Author: Taoqui
════════════════════════
ⴵ Time: Fri, 14 Aug 2026 13:59:28 GMT
════════════════════════
⌗ Tags: #https #ethical_hacking #web_security #cybersecurity #burpsuite
════════════════════════
𐀪 Author: Taoqui
════════════════════════
ⴵ Time: Fri, 14 Aug 2026 13:59:28 GMT
════════════════════════
⌗ Tags: #https #ethical_hacking #web_security #cybersecurity #burpsuite
Medium
I Thought I Understood HTTP — Then I Opened Burp Suite
A hands-on journey into HTTP requests, responses, headers, cookies, and web application security.
⤷ Title: PortSwigger File Path Traversal Lab Solution, Simple Case
════════════════════════
𐀪 Author: Arham H.B
════════════════════════
ⴵ Time: Fri, 14 Aug 2026 15:26:43 GMT
════════════════════════
⌗ Tags: #portswigger #portswigger_lab #web_security #cybersecurity #bug_bounty
════════════════════════
𐀪 Author: Arham H.B
════════════════════════
ⴵ Time: Fri, 14 Aug 2026 15:26:43 GMT
════════════════════════
⌗ Tags: #portswigger #portswigger_lab #web_security #cybersecurity #bug_bounty
Medium
PortSwigger File Path Traversal Lab Solution, Simple Case
Web Security Academy by PortSwigger
⤷ Title: Dorks that could get you a good bounty in 2026
════════════════════════
𐀪 Author: Deepanshu Deep
════════════════════════
ⴵ Time: Fri, 14 Aug 2026 17:01:43 GMT
════════════════════════
⌗ Tags: #cybersecurity #bug_bounty #google_dorking #web_security #osint
════════════════════════
𐀪 Author: Deepanshu Deep
════════════════════════
ⴵ Time: Fri, 14 Aug 2026 17:01:43 GMT
════════════════════════
⌗ Tags: #cybersecurity #bug_bounty #google_dorking #web_security #osint
Medium
Dorks that could get you a good bounty in 2026
Google can index far more than publicly intended webpages. During an authorized bug bounty assessment, search operators can help…
⤷ Title: Got My First $$ Bug Bounty
════════════════════════
𐀪 Author: Prajwal
════════════════════════
ⴵ Time: Fri, 14 Aug 2026 16:13:13 GMT
════════════════════════
⌗ Tags: #vulnerability #cybersecurity #bug_bounty #web_security #bug_bounty_tips
════════════════════════
𐀪 Author: Prajwal
════════════════════════
ⴵ Time: Fri, 14 Aug 2026 16:13:13 GMT
════════════════════════
⌗ Tags: #vulnerability #cybersecurity #bug_bounty #web_security #bug_bounty_tips
Medium
Got My First $$ Bug Bounty 🎉
I finally got my first bug bounty.
⤷ Title: Aplikasi Sudah Bisa Login, Berarti Aman? Ini yang Baru Saya Pahami dari Penetration Testing
════════════════════════
𐀪 Author: Adinda mirza devani
════════════════════════
ⴵ Time: Fri, 14 Aug 2026 22:49:08 GMT
════════════════════════
⌗ Tags: #web_security #cybersecurity #penetration_testing #application_security #api_security
════════════════════════
𐀪 Author: Adinda mirza devani
════════════════════════
ⴵ Time: Fri, 14 Aug 2026 22:49:08 GMT
════════════════════════
⌗ Tags: #web_security #cybersecurity #penetration_testing #application_security #api_security
Medium
Aplikasi Sudah Bisa Login, Berarti Aman? Ini yang Baru Saya Pahami dari Penetration Testing
Coba bayangkan sebuah aplikasi yang berjalan mulus. Halaman login terbuka tanpa error, dashboard muncul tepat setelah kita masuk, data yang…
⤷ Title: One Invitation, Three Vulnerabilities: Breaking RBAC Across Two Applications
════════════════════════
𐀪 Author: OWL
════════════════════════
ⴵ Time: Sat, 15 Aug 2026 03:52:02 GMT
════════════════════════
⌗ Tags: #cybersecurity #web_security #bug_bounty #pentesting #broken_access_control
════════════════════════
𐀪 Author: OWL
════════════════════════
ⴵ Time: Sat, 15 Aug 2026 03:52:02 GMT
════════════════════════
⌗ Tags: #cybersecurity #web_security #bug_bounty #pentesting #broken_access_control
Medium
One Invitation, Three Vulnerabilities: Breaking RBAC Across Two Applications
Introduction
⤷ Title: When the Marketing Page Became the Threat Model: Forging “Verified Reviews” on PriceRunner
════════════════════════
𐀪 Author: redhunter01
════════════════════════
ⴵ Time: Sat, 15 Aug 2026 04:22:20 GMT
════════════════════════
⌗ Tags: #api_security #web_application_security #business_logic #web_security #bug_bounty
════════════════════════
𐀪 Author: redhunter01
════════════════════════
ⴵ Time: Sat, 15 Aug 2026 04:22:20 GMT
════════════════════════
⌗ Tags: #api_security #web_application_security #business_logic #web_security #bug_bounty
Medium
When the Marketing Page Became the Threat Model: Forging “Verified Reviews” on PriceRunner
How a simple business-logic flaw turned a company’s own trust promise into a security test.