⤷ Title: Rails Active Storage Flaw CVE-2026-66066 Enables Remote Code Execution
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Thu, 30 Jul 2026 03:01:13 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Active Storage #Arbitrary File Read #CVE_2026_66066 #libvips #Remote Code Execution #ruby on rails
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Thu, 30 Jul 2026 03:01:13 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Active Storage #Arbitrary File Read #CVE_2026_66066 #libvips #Remote Code Execution #ruby on rails
Daily CyberSecurity
Rails Active Storage Flaw CVE-2026-66066 Enables Remote Code Execution
TL;DR Ruby on Rails has patched a critical Rails Active Storage flaw. Tracked as CVE-2026-66066 and rated 9.5 CVSS, it lets an unauthenticated attacker read arbitrary files from the server. Stolen…
⤷ Title: Kerberos Delegation:The Complete Guide to Impersonation, Unconstrained, Constrained, and RBCD
════════════════════════
𐀪 Author: Ashraf Mohammed
════════════════════════
ⴵ Time: Thu, 30 Jul 2026 08:11:26 GMT
════════════════════════
⌗ Tags: #pentesting #infosec #cybersecurity #active_directory #kerberos
════════════════════════
𐀪 Author: Ashraf Mohammed
════════════════════════
ⴵ Time: Thu, 30 Jul 2026 08:11:26 GMT
════════════════════════
⌗ Tags: #pentesting #infosec #cybersecurity #active_directory #kerberos
Medium
Kerberos Delegation:The Complete Guide to Impersonation, Unconstrained, Constrained, and RBCD
Understanding how services act on behalf of users — theory, configuration, real-world scenarios, and how attackers abuse each type
⤷ Title: BloodHound Part 1 — What It Is and Why It Changes Everything
════════════════════════
𐀪 Author: ghostyjoe
════════════════════════
ⴵ Time: Fri, 31 Jul 2026 17:17:59 GMT
════════════════════════
⌗ Tags: #hacking #bug_bounty #cybersecurity #linux #active_directory
════════════════════════
𐀪 Author: ghostyjoe
════════════════════════
ⴵ Time: Fri, 31 Jul 2026 17:17:59 GMT
════════════════════════
⌗ Tags: #hacking #bug_bounty #cybersecurity #linux #active_directory
Medium
🧠 BloodHound Part 1 — What It Is and Why It Changes Everything
Stop Running Tools Blindly — Start Seeing Attack Paths Inside Active Directory
⤷ Title: CVE-2026-66066: Rails Active Storage RCE Exploit Code Now Public
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Sat, 01 Aug 2026 10:17:36 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Active Storage #Arbitrary File Read #CVE_2026_66066 #KindaRails2Shell #libvips #metasploit #Remote Code Execution #ruby on rails
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Sat, 01 Aug 2026 10:17:36 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Active Storage #Arbitrary File Read #CVE_2026_66066 #KindaRails2Shell #libvips #metasploit #Remote Code Execution #ruby on rails
Daily CyberSecurity
CVE-2026-66066: Rails Active Storage RCE Exploit Code Now Public
TL;DR: A critical Rails Active Storage RCE flaw, CVE-2026-66066 (CVSS 9.5), lets an unauthenticated attacker read server files and potentially run code through crafted image uploads. A public Meta…
⤷ Title: Practical Network Penetration Tester Rayyan Afridi (Ray)
════════════════════════
𐀪 Author: Rayyan Afridi
════════════════════════
ⴵ Time: Sun, 02 Aug 2026 16:04:49 GMT
════════════════════════
⌗ Tags: #inspiration #cybersecurity #ethical_hacking #self_improvement #active_directory
════════════════════════
𐀪 Author: Rayyan Afridi
════════════════════════
ⴵ Time: Sun, 02 Aug 2026 16:04:49 GMT
════════════════════════
⌗ Tags: #inspiration #cybersecurity #ethical_hacking #self_improvement #active_directory
Medium
Practical Network Penetration Tester Rayyan Afridi (Ray)
On January 29, 2026, I celebrated my birthday by making a promise to myself: I would pass the Practical Network Penetration Tester…
⤷ Title: BadSuccessor: Escalating Privileges via dMSA in Active Directory
════════════════════════
𐀪 Author: NASRALLAH SALEH (Xiro0x)
════════════════════════
ⴵ Time: Sun, 02 Aug 2026 22:01:55 GMT
════════════════════════
⌗ Tags: #advice #tryhackme #cybersecurity #active_directory #badsuccessor
════════════════════════
𐀪 Author: NASRALLAH SALEH (Xiro0x)
════════════════════════
ⴵ Time: Sun, 02 Aug 2026 22:01:55 GMT
════════════════════════
⌗ Tags: #advice #tryhackme #cybersecurity #active_directory #badsuccessor
Medium
BadSuccessor: Escalating Privileges via dMSA in Active Directory
Introduction
⤷ Title: From a Web Shell to Domain Admin: HTB Academy’s AD Enumeration & Attacks Skills Assessment (Part I)
════════════════════════
𐀪 Author: Moustafa Abdelmaksoud
════════════════════════
ⴵ Time: Mon, 03 Aug 2026 09:47:29 GMT
════════════════════════
⌗ Tags: #penetration_testing #hackthebox #ethical_hacking #active_directory #cybersecurity
════════════════════════
𐀪 Author: Moustafa Abdelmaksoud
════════════════════════
ⴵ Time: Mon, 03 Aug 2026 09:47:29 GMT
════════════════════════
⌗ Tags: #penetration_testing #hackthebox #ethical_hacking #active_directory #cybersecurity
Medium
From a Web Shell to Domain Admin: HTB Academy’s AD Enumeration & Attacks Skills Assessment (Part I)
A walkthrough of Inlanefreight’s Active Directory environment — from an exposed file upload vulnerability to full domain compromise.
⤷ Title: Post-Exploitation Basics: A TryHackMe Walkthrough (PowerView, BloodHound, Mimikatz & Golden…
════════════════════════
𐀪 Author: Karim roshdy
════════════════════════
ⴵ Time: Mon, 03 Aug 2026 09:44:51 GMT
════════════════════════
⌗ Tags: #red_team #active_directory #penetration_testing #cybersecurity #windows_post_exploitation
════════════════════════
𐀪 Author: Karim roshdy
════════════════════════
ⴵ Time: Mon, 03 Aug 2026 09:44:51 GMT
════════════════════════
⌗ Tags: #red_team #active_directory #penetration_testing #cybersecurity #windows_post_exploitation
Medium
Post-Exploitation Basics: A TryHackMe Walkthrough (PowerView, BloodHound, Mimikatz & Golden Tickets)
Introduction
⤷ Title: AD-RTS Exam Walkthrough: From Zero to Domain Admin
════════════════════════
𐀪 Author: Farid Narimanov
════════════════════════
ⴵ Time: Mon, 03 Aug 2026 20:31:55 GMT
════════════════════════
⌗ Tags: #information_security #ethical_hacking #red_team #active_directory #cybersecurity
════════════════════════
𐀪 Author: Farid Narimanov
════════════════════════
ⴵ Time: Mon, 03 Aug 2026 20:31:55 GMT
════════════════════════
⌗ Tags: #information_security #ethical_hacking #red_team #active_directory #cybersecurity
Medium
AD-RTS Exam Walkthrough: From Zero to Domain Admin
Introduction
⤷ Title: Active Directory Explained from Zero: How It Actually Works
════════════════════════
𐀪 Author: Himanshu Parmar
════════════════════════
ⴵ Time: Tue, 04 Aug 2026 05:56:53 GMT
════════════════════════
⌗ Tags: #windows #active_directory #cybersecurity #ethical_hacking #penetration_testing
════════════════════════
𐀪 Author: Himanshu Parmar
════════════════════════
ⴵ Time: Tue, 04 Aug 2026 05:56:53 GMT
════════════════════════
⌗ Tags: #windows #active_directory #cybersecurity #ethical_hacking #penetration_testing
Medium
Active Directory Explained from Zero: How It Actually Works
Active Directory From Zero to Hero - Part 1