⤷ Title: High-Risk Flaws in a-blog cms: CVE-2025-36560 Scores Critical 9.2 on CVSS Scale
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 15 May 2025 08:52:02 +0000
════════════════════════
⌗ Tags: #Vulnerability #a_blog cms #CMS vulnerability #CVE_2025_36560 #CVSS 9.2 #JPCERT #Path Traversal #ssrf #XSS
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 15 May 2025 08:52:02 +0000
════════════════════════
⌗ Tags: #Vulnerability #a_blog cms #CMS vulnerability #CVE_2025_36560 #CVSS 9.2 #JPCERT #Path Traversal #ssrf #XSS
Daily CyberSecurity
High-Risk Flaws in a-blog cms: CVE-2025-36560 Scores Critical 9.2 on CVSS Scale
JPCERT reports critical flaws in a-blog cms, including CVE-2025-36560 (CVSS 9.2). Attackers could hijack sessions and access sensitive data.
⤷ Title: Expression Payloads Meet Mayhem - Ivanti EPMM Unauth RCE Chain (CVE-2025-4427 and CVE-2025-4428)
════════════════════════
𐀪 Author: Sonny
════════════════════════
ⴵ Time: Thu, 15 May 2025 14:51:12 GMT
════════════════════════
⌗ Tags: No_Tags
════════════════════════
𐀪 Author: Sonny
════════════════════════
ⴵ Time: Thu, 15 May 2025 14:51:12 GMT
════════════════════════
⌗ Tags: No_Tags
watchTowr Labs
Expression Payloads Meet Mayhem - Ivanti EPMM Unauth RCE Chain (CVE-2025-4427 and CVE-2025-4428)
Keeping your ears to the ground and eyes wide open for the latest vulnerability news at watchTowr is a given. Despite rummaging through enterprise code looking for 0days on a daily basis, our interest was piqued this week when news of fresh vulnerabilities…
⤷ Title: Augmenting Penetration Testing Methodology with Artificial Intelligence – Part 2: Copilot
════════════════════════
𐀪 Author: BHIS
════════════════════════
ⴵ Time: Wed, 14 May 2025 14:00:00 +0000
════════════════════════
⌗ Tags: #Craig Vincent #How_To #Informational #AI #artifical intelligence #Copilot #penetration testing #Pentesting
════════════════════════
𐀪 Author: BHIS
════════════════════════
ⴵ Time: Wed, 14 May 2025 14:00:00 +0000
════════════════════════
⌗ Tags: #Craig Vincent #How_To #Informational #AI #artifical intelligence #Copilot #penetration testing #Pentesting
Black Hills Information Security, Inc.
Augmenting Penetration Testing Methodology with Artificial Intelligence – Part 2: Copilot - Black Hills Information Security, Inc.
A common use case for LLMs is rapid software development. One of the first ways I used AI in my penetration testing methodology was for payload generation.
⤷ Title: Part-2️♂️Bug Bounty Secrets They Don’t Tell You: Tricks From 100+ Reported Bugs
════════════════════════
𐀪 Author: Abhijeet Kumawat
════════════════════════
ⴵ Time: Fri, 16 May 2025 05:05:52 GMT
════════════════════════
⌗ Tags: #infosec #cybersecurity #hacking #secrets #bug_bounty
════════════════════════
𐀪 Author: Abhijeet Kumawat
════════════════════════
ⴵ Time: Fri, 16 May 2025 05:05:52 GMT
════════════════════════
⌗ Tags: #infosec #cybersecurity #hacking #secrets #bug_bounty
Medium
Part-2🕵️♂️Bug Bounty Secrets They Don’t Tell You: Tricks From 100+ Reported Bugs
✨Free Article Link
⤷ Title: $500 Bounty: Race Condition in Hacker101 CTF Group Join
════════════════════════
𐀪 Author: Monika sharma
════════════════════════
ⴵ Time: Fri, 16 May 2025 05:02:36 GMT
════════════════════════
⌗ Tags: #report #technology #bug_bounty #penetration_testing #hacking
════════════════════════
𐀪 Author: Monika sharma
════════════════════════
ⴵ Time: Fri, 16 May 2025 05:02:36 GMT
════════════════════════
⌗ Tags: #report #technology #bug_bounty #penetration_testing #hacking
Medium
$500 Bounty: Race Condition in Hacker101 CTF Group Join
$500 for discovering a timing flaw in Hacker101’s invite system that let users join the same team multiple times
⤷ Title: Secret to find bugs in five minutes. Juicy reality.
════════════════════════
𐀪 Author: Rabia Riaz
════════════════════════
ⴵ Time: Fri, 16 May 2025 05:02:02 GMT
════════════════════════
⌗ Tags: #easy_bugs #bug_bounty_writeup #bug_bounty_tips #bug_bounty #bug_in_5_minutes
════════════════════════
𐀪 Author: Rabia Riaz
════════════════════════
ⴵ Time: Fri, 16 May 2025 05:02:02 GMT
════════════════════════
⌗ Tags: #easy_bugs #bug_bounty_writeup #bug_bounty_tips #bug_bounty #bug_in_5_minutes
Medium
Secret to find bugs in five minutes. Juicy reality.
Want to find bugs in 5-minutes? Let me help you real quick.
⤷ Title: NoSQL Injection Detection — A hands-on Exploitation Walkthrough
════════════════════════
𐀪 Author: Aditya Bhatt
════════════════════════
ⴵ Time: Fri, 16 May 2025 05:00:16 GMT
════════════════════════
⌗ Tags: #nosql_injection #nosql #sql_injection #cybersecurity #bug_bounty
════════════════════════
𐀪 Author: Aditya Bhatt
════════════════════════
ⴵ Time: Fri, 16 May 2025 05:00:16 GMT
════════════════════════
⌗ Tags: #nosql_injection #nosql #sql_injection #cybersecurity #bug_bounty
Medium
NoSQL Injection Detection — A hands-on Exploitation Walkthrough with Burp 🔍
Unleashing logic-flipping payloads in the neon-lit alleys of NoSQL One Injection at a Time.
⤷ Title: How a Simple Logic Flaw Led to a $3,250 Bounty
════════════════════════
𐀪 Author: Monika sharma
════════════════════════
ⴵ Time: Fri, 16 May 2025 04:59:05 GMT
════════════════════════
⌗ Tags: #report #technology #cybersecurity #bug_bounty #penetration_testing
════════════════════════
𐀪 Author: Monika sharma
════════════════════════
ⴵ Time: Fri, 16 May 2025 04:59:05 GMT
════════════════════════
⌗ Tags: #report #technology #cybersecurity #bug_bounty #penetration_testing
Medium
How a Simple Logic Flaw Led to a $3,250 Bounty
Claiming Unclaimed Restaurants on Zomato via OTP Manipulation
⤷ Title: From 0 to $$$: Finding Rate Limit Bypasses Like a Pro
════════════════════════
𐀪 Author: BugBounty University
════════════════════════
ⴵ Time: Fri, 16 May 2025 04:58:05 GMT
════════════════════════
⌗ Tags: #bug_bounty_tips #infosec #penetration_testing #cybersecurity #bug_bounty
════════════════════════
𐀪 Author: BugBounty University
════════════════════════
ⴵ Time: Fri, 16 May 2025 04:58:05 GMT
════════════════════════
⌗ Tags: #bug_bounty_tips #infosec #penetration_testing #cybersecurity #bug_bounty
Medium
From 0 to $$$: Finding Rate Limit Bypasses Like a Pro
A beginner-friendly guide to finding rate limit bugs with real techniques, testing steps, and real-world impact.
⤷ Title: Top Tools That Helped Me Earn $500 in 30 Days
════════════════════════
𐀪 Author: It4chis3c
════════════════════════
ⴵ Time: Fri, 16 May 2025 04:57:24 GMT
════════════════════════
⌗ Tags: #bug_bounty #recon #secrets #hacking #information_security
════════════════════════
𐀪 Author: It4chis3c
════════════════════════
ⴵ Time: Fri, 16 May 2025 04:57:24 GMT
════════════════════════
⌗ Tags: #bug_bounty #recon #secrets #hacking #information_security
Medium
Top Tools That Helped Me Earn $500 in 30 Days
How I used these tools & commands to find bugs fast
⤷ Title: Blog Title: Not Your File: How Misconfigured MIME Types Let Me Upload Evil Scripts
════════════════════════
𐀪 Author: Iski
════════════════════════
ⴵ Time: Thu, 15 May 2025 05:01:29 GMT
════════════════════════
⌗ Tags: #hacking #infosec #money #bug_bounty #cybersecurity
════════════════════════
𐀪 Author: Iski
════════════════════════
ⴵ Time: Thu, 15 May 2025 05:01:29 GMT
════════════════════════
⌗ Tags: #hacking #infosec #money #bug_bounty #cybersecurity
Medium
📝 Blog Title: Not Your File: How Misconfigured MIME Types Let Me Upload Evil Scripts 📁😈
Hey there!😁
⤷ Title: ☕Best Tool for Analyzing Java Files (90% of Hackers Don’t Know This)
════════════════════════
𐀪 Author: Abhijeet Kumawat
════════════════════════
ⴵ Time: Thu, 15 May 2025 05:00:35 GMT
════════════════════════
⌗ Tags: #java #bug_bounty #infosec #hacking #cybersecurity
════════════════════════
𐀪 Author: Abhijeet Kumawat
════════════════════════
ⴵ Time: Thu, 15 May 2025 05:00:35 GMT
════════════════════════
⌗ Tags: #java #bug_bounty #infosec #hacking #cybersecurity
Medium
☕Best Tool for Analyzing Java Files (90% of Hackers Don’t Know This)
Free Article Link
⤷ Title: Hacking With No Tools: How to Break Web Apps Using Just Your Browser ️♂️
════════════════════════
𐀪 Author: Vipul Sonule
════════════════════════
ⴵ Time: Thu, 15 May 2025 04:55:56 GMT
════════════════════════
⌗ Tags: #infosec #hacking #cybersecurity #bug_bounty #tech
════════════════════════
𐀪 Author: Vipul Sonule
════════════════════════
ⴵ Time: Thu, 15 May 2025 04:55:56 GMT
════════════════════════
⌗ Tags: #infosec #hacking #cybersecurity #bug_bounty #tech
Medium
Hacking With No Tools: How to Break Web Apps Using Just Your Browser 🕵️♂️
Hacking With No Tools: How to Break Web Apps Using Just Your Browser 🕵️♂️
⤷ Title: Race Condition Seru: Ngebobol Limit Cuma Modal Request Paralel
════════════════════════
𐀪 Author: FufuFafa
════════════════════════
ⴵ Time: Fri, 16 May 2025 08:59:24 GMT
════════════════════════
⌗ Tags: #cybersecurity #bug_bounty_tips #hacking #bug_bounty_writeup #bug_bounty
════════════════════════
𐀪 Author: FufuFafa
════════════════════════
ⴵ Time: Fri, 16 May 2025 08:59:24 GMT
════════════════════════
⌗ Tags: #cybersecurity #bug_bounty_tips #hacking #bug_bounty_writeup #bug_bounty
Medium
🚀 Race Condition Seru: Ngebobol Limit Cuma Modal Request Paralel
> Cerita gue nemu bug yang ngizinin user bikin resource lebih dari limit yang harusnya dibatesin — dan ya, semua ini cuma karena backend…
⤷ Title: Caching Trouble: The Public Cache That Leaked Private User Data
════════════════════════
𐀪 Author: Iski
════════════════════════
ⴵ Time: Fri, 16 May 2025 07:09:21 GMT
════════════════════════
⌗ Tags: #cybersecurity #bug_bounty #infosec #hacking #money
════════════════════════
𐀪 Author: Iski
════════════════════════
ⴵ Time: Fri, 16 May 2025 07:09:21 GMT
════════════════════════
⌗ Tags: #cybersecurity #bug_bounty #infosec #hacking #money
Medium
Caching Trouble: The Public Cache That Leaked Private User Data 🧠📬
Hey there!😁
⤷ Title: Bug Bounty Burnout: When Serious Bugs Get Dismissed
════════════════════════
𐀪 Author: Vivek PS
════════════════════════
ⴵ Time: Fri, 16 May 2025 06:55:13 GMT
════════════════════════
⌗ Tags: #hacking #web_development #bug_bounty #programming #burnout
════════════════════════
𐀪 Author: Vivek PS
════════════════════════
ⴵ Time: Fri, 16 May 2025 06:55:13 GMT
════════════════════════
⌗ Tags: #hacking #web_development #bug_bounty #programming #burnout
Medium
Bug Bounty Burnout: When Serious Bugs Get Dismissed
Ignored, Dismissed, Silenced: A Security Researcher’s Experience
⤷ Title: Port- 139,445 SMB Exploitation (Series:1/ [article:2])
════════════════════════
𐀪 Author: Mr Horbio
════════════════════════
ⴵ Time: Fri, 16 May 2025 06:51:04 GMT
════════════════════════
⌗ Tags: #ethical_hacking #hacking #bug_bounty #penetration_testing #cybersecurity
════════════════════════
𐀪 Author: Mr Horbio
════════════════════════
ⴵ Time: Fri, 16 May 2025 06:51:04 GMT
════════════════════════
⌗ Tags: #ethical_hacking #hacking #bug_bounty #penetration_testing #cybersecurity
Medium
Port- 139,445 SMB Exploitation (Series:1/ [article:2])
This is the article number 2 of Network security . In this article we will learn about SMB exploitation and footholds.
⤷ Title: $750 Bounty: From X-Forwarded-Host to Stored DOM XSS
════════════════════════
𐀪 Author: Monika sharma
════════════════════════
ⴵ Time: Fri, 16 May 2025 06:38:27 GMT
════════════════════════
⌗ Tags: #penetration_testing #bug_bounty #hacking #cybersecurity #technology
════════════════════════
𐀪 Author: Monika sharma
════════════════════════
ⴵ Time: Fri, 16 May 2025 06:38:27 GMT
════════════════════════
⌗ Tags: #penetration_testing #bug_bounty #hacking #cybersecurity #technology
Medium
$750 Bounty: From X-Forwarded-Host to Stored DOM XSS
How a single trusted HTTP header enabled cross-user JavaScript injection across a government data portal.
⤷ Title: ️♂️ From Recon to Report: How I Approach Every Bug Bounty Target
════════════════════════
𐀪 Author: Vipul Sonule
════════════════════════
ⴵ Time: Fri, 16 May 2025 06:30:30 GMT
════════════════════════
⌗ Tags: #osint #bug_bounty #cybersecurity #hacking #tech
════════════════════════
𐀪 Author: Vipul Sonule
════════════════════════
ⴵ Time: Fri, 16 May 2025 06:30:30 GMT
════════════════════════
⌗ Tags: #osint #bug_bounty #cybersecurity #hacking #tech
Medium
🕵️♂️ From Recon to Report: How I Approach Every Bug Bounty Target
🕵️♂️ From Recon to Report: How I Approach Every Bug Bounty Target
⤷ Title: How to escalate a SQL injection if there is a strict WAF?
════════════════════════
𐀪 Author: Deepak
════════════════════════
ⴵ Time: Fri, 16 May 2025 06:10:12 GMT
════════════════════════
⌗ Tags: #bug_bounty #waf_bypass #hacking #sql_injection #sql
════════════════════════
𐀪 Author: Deepak
════════════════════════
ⴵ Time: Fri, 16 May 2025 06:10:12 GMT
════════════════════════
⌗ Tags: #bug_bounty #waf_bypass #hacking #sql_injection #sql
Medium
How to escalate a SQL injection if there is a strict WAF?
So while testing a website with my buddy https://x.com/akincibor1, we found an API endpoint like:
⤷ Title: Cryptography 101
════════════════════════
𐀪 Author: Pranieth Chandrasekara
════════════════════════
ⴵ Time: Fri, 16 May 2025 08:24:32 GMT
════════════════════════
⌗ Tags: #ssl_certificate #encryption #hashing #cryptography #application_security
════════════════════════
𐀪 Author: Pranieth Chandrasekara
════════════════════════
ⴵ Time: Fri, 16 May 2025 08:24:32 GMT
════════════════════════
⌗ Tags: #ssl_certificate #encryption #hashing #cryptography #application_security
Medium
Cryptography 101
Whether you’re securing data in transit, verifying identities, or safeguarding passwords, cryptography is the backbone of modern…