⤷ Title: How a Single HTTP Redirect Bypassed SSRF Filters on 4 Programs Over 8 Years
════════════════════════
𐀪 Author: Raj Namdev
════════════════════════
ⴵ Time: Fri, 14 Aug 2026 02:31:01 GMT
════════════════════════
⌗ Tags: #web_security #cybersecurity #ethical_hacking #ssrf #bug_bounty
════════════════════════
𐀪 Author: Raj Namdev
════════════════════════
ⴵ Time: Fri, 14 Aug 2026 02:31:01 GMT
════════════════════════
⌗ Tags: #web_security #cybersecurity #ethical_hacking #ssrf #bug_bounty
Medium
How a Single HTTP Redirect Bypassed SSRF Filters on 4 Programs Over 8 Years
30-Second Version: One SSRF bypass technique — a single HTTP redirect — worked against Infogram (2017), Slack (2018), Bitwarden (2020), and…
⤷ Title: Top 5 PHP Frameworks for Web Development in 2025
════════════════════════
𐀪 Author: Sahil Khurana
════════════════════════
ⴵ Time: Fri, 14 Aug 2026 05:18:03 GMT
════════════════════════
⌗ Tags: #web_development #backend_development #scalable_solutions #application_security #php_frameworks
════════════════════════
𐀪 Author: Sahil Khurana
════════════════════════
ⴵ Time: Fri, 14 Aug 2026 05:18:03 GMT
════════════════════════
⌗ Tags: #web_development #backend_development #scalable_solutions #application_security #php_frameworks
Medium
Top 5 PHP Frameworks for Web Development in 2025
Originally published on the Innostax Engineering Blog
⤷ Title: Server-Side Template Injection (SSTI) to Remote Code Execution (RCE): A Visual Guide for Pentesters…
════════════════════════
𐀪 Author: Kondibajogdand
════════════════════════
ⴵ Time: Fri, 14 Aug 2026 05:41:00 GMT
════════════════════════
⌗ Tags: #web_penetration_testing #web_security #ethical_hacking #web_application_security #security
════════════════════════
𐀪 Author: Kondibajogdand
════════════════════════
ⴵ Time: Fri, 14 Aug 2026 05:41:00 GMT
════════════════════════
⌗ Tags: #web_penetration_testing #web_security #ethical_hacking #web_application_security #security
Medium
Server-Side Template Injection (SSTI) to Remote Code Execution (RCE): A Visual Guide for Pentesters and Developers
🎬 The Scene: A “Harmless” Name Field
⤷ Title: THE DOOR Penetration Testing | SQLi → Authentication Bypass → Command Injection
════════════════════════
𐀪 Author: Pentester Club
════════════════════════
ⴵ Time: Fri, 14 Aug 2026 09:33:21 GMT
════════════════════════
⌗ Tags: #hacking #web_development #cybersecurity #artificial_intelligence #bug_bounty
════════════════════════
𐀪 Author: Pentester Club
════════════════════════
ⴵ Time: Fri, 14 Aug 2026 09:33:21 GMT
════════════════════════
⌗ Tags: #hacking #web_development #cybersecurity #artificial_intelligence #bug_bounty
Medium
🔥 THE DOOR Penetration Testing | SQLi → Authentication Bypass → Command Injection
Web application vulnerabilities rarely exist in isolation.
⤷ Title: {{7*7}} = 49: A Bug Hunter’s Guide to Server-Side Template Injection
════════════════════════
𐀪 Author: Fuzzyy Duck
════════════════════════
ⴵ Time: Fri, 14 Aug 2026 11:26:56 GMT
════════════════════════
⌗ Tags: #bug_bounty #bug_bounty_tips #cybersecurity #web_development #bug_bounty_writeup
════════════════════════
𐀪 Author: Fuzzyy Duck
════════════════════════
ⴵ Time: Fri, 14 Aug 2026 11:26:56 GMT
════════════════════════
⌗ Tags: #bug_bounty #bug_bounty_tips #cybersecurity #web_development #bug_bounty_writeup
Medium
{{7*7}} = 49: A Bug Hunter’s Guide to Server-Side Template Injection
How “Hello, {name}” turns into remote code execution.
⤷ Title: VULNBANK API SECURITY ASSESSMENT
════════════════════════
𐀪 Author: Lh1l0v3
════════════════════════
ⴵ Time: Fri, 14 Aug 2026 11:11:01 GMT
════════════════════════
⌗ Tags: #cybersecurity #application_security #software_engineering #software_development #web_development
════════════════════════
𐀪 Author: Lh1l0v3
════════════════════════
ⴵ Time: Fri, 14 Aug 2026 11:11:01 GMT
════════════════════════
⌗ Tags: #cybersecurity #application_security #software_engineering #software_development #web_development
Medium
VULNBANK API SECURITY ASSESSMENT
PART 4 — When Internal Endpoints Become Part of the Public API Surface
⤷ Title: From a Single WAF Bypass to 58,000+ Exposed Media Objects
════════════════════════
𐀪 Author: Tarek ElDemerdash
════════════════════════
ⴵ Time: Fri, 14 Aug 2026 12:51:56 GMT
════════════════════════
⌗ Tags: #cybersecurity #bug_bounty #web_application_security #penetration_testing #information_security
════════════════════════
𐀪 Author: Tarek ElDemerdash
════════════════════════
ⴵ Time: Fri, 14 Aug 2026 12:51:56 GMT
════════════════════════
⌗ Tags: #cybersecurity #bug_bounty #web_application_security #penetration_testing #information_security
Medium
From a Single WAF Bypass to 58,000+ Exposed Media Objects
A bug bounty case study in chaining overlooked misconfigurations into a full attack surface
⤷ Title: My First Valid Bug: A Broken Object Level Authorization (BOLA) in Customer API
════════════════════════
𐀪 Author: Abobakrmohamed
════════════════════════
ⴵ Time: Fri, 14 Aug 2026 12:20:17 GMT
════════════════════════
⌗ Tags: #bug_bounty #bug_hunter #web_app_pentesting #hacking #find_your_first_bug
════════════════════════
𐀪 Author: Abobakrmohamed
════════════════════════
ⴵ Time: Fri, 14 Aug 2026 12:20:17 GMT
════════════════════════
⌗ Tags: #bug_bounty #bug_hunter #web_app_pentesting #hacking #find_your_first_bug
Medium
My First Valid Bug: A Broken Object Level Authorization (BOLA) in Customer API
After months of grinding through labs, courses, and public program testing without a confirmed finding, I finally landed my first valid bug…
⤷ Title: Créer un Point d’Accès Wi-Fi WPA2 Professionnel avec dnsmasq, hostapd, iptables, PMF et PMFC
════════════════════════
𐀪 Author: ATTE-THM
════════════════════════
ⴵ Time: Fri, 14 Aug 2026 13:39:29 GMT
════════════════════════
⌗ Tags: #hacking #dhcp #linux #networking #web_development
════════════════════════
𐀪 Author: ATTE-THM
════════════════════════
ⴵ Time: Fri, 14 Aug 2026 13:39:29 GMT
════════════════════════
⌗ Tags: #hacking #dhcp #linux #networking #web_development
⤷ Title: I Thought I Understood HTTP — Then I Opened Burp Suite
════════════════════════
𐀪 Author: Taoqui
════════════════════════
ⴵ Time: Fri, 14 Aug 2026 13:59:28 GMT
════════════════════════
⌗ Tags: #https #ethical_hacking #web_security #cybersecurity #burpsuite
════════════════════════
𐀪 Author: Taoqui
════════════════════════
ⴵ Time: Fri, 14 Aug 2026 13:59:28 GMT
════════════════════════
⌗ Tags: #https #ethical_hacking #web_security #cybersecurity #burpsuite
Medium
I Thought I Understood HTTP — Then I Opened Burp Suite
A hands-on journey into HTTP requests, responses, headers, cookies, and web application security.