⤷ Title: How I Bypassed a Mandatory 2FA Enforcement Just by Dropping One Request
════════════════════════
𐀪 Author: NorthSideHacker
════════════════════════
ⴵ Time: Fri, 10 Jul 2026 09:19:11 GMT
════════════════════════
⌗ Tags: #bug_bounty #web_security #bugbounty_writeup #infosec
════════════════════════
𐀪 Author: NorthSideHacker
════════════════════════
ⴵ Time: Fri, 10 Jul 2026 09:19:11 GMT
════════════════════════
⌗ Tags: #bug_bounty #web_security #bugbounty_writeup #infosec
Medium
How I Bypassed a Mandatory 2FA Enforcement Just by Dropping One Request
So I was testing a platform that forces every new user to set up 2FA before they can even see the dashboard. No skip button, no later…
⤷ Title: Hacking the Hacker’s Assistant: How I Found a Critical Stored XSS in DeepSeek’s Code Sandbox
════════════════════════
𐀪 Author: Sumit Shah (HackSage)
════════════════════════
ⴵ Time: Sun, 12 Jul 2026 14:23:31 GMT
════════════════════════
⌗ Tags: #deepseek #bugbounty_writeup #xss_attack #xss_vulnerability #cybersecurity
════════════════════════
𐀪 Author: Sumit Shah (HackSage)
════════════════════════
ⴵ Time: Sun, 12 Jul 2026 14:23:31 GMT
════════════════════════
⌗ Tags: #deepseek #bugbounty_writeup #xss_attack #xss_vulnerability #cybersecurity
Medium
Hacking the Hacker’s Assistant: How I Found a Critical Stored XSS in DeepSeek’s Code Sandbox 💀
What’s up, hackers? Sumit here, aka hacksage 😌
⤷ Title: I Spent 5 Days Looking for a Bug That Didn’t Exist: NASA
════════════════════════
𐀪 Author: Vaibhav Kubade
════════════════════════
ⴵ Time: Mon, 13 Jul 2026 08:03:56 GMT
════════════════════════
⌗ Tags: #bugbounty_writeup #hacking #nasa
════════════════════════
𐀪 Author: Vaibhav Kubade
════════════════════════
ⴵ Time: Mon, 13 Jul 2026 08:03:56 GMT
════════════════════════
⌗ Tags: #bugbounty_writeup #hacking #nasa
Medium
I Spent 5 Days Looking for a Bug That Didn’t Exist: NASA
Until I Realized I Was Asking the Wrong Question.
⤷ Title: Smali By bithowl: Chapter 2 Why Every Android Hacker Needs Smali
════════════════════════
𐀪 Author: bithowl
════════════════════════
ⴵ Time: Thu, 16 Jul 2026 12:20:24 GMT
════════════════════════
⌗ Tags: #bug_bounty #bugbounty_writeup #bithowl
════════════════════════
𐀪 Author: bithowl
════════════════════════
ⴵ Time: Thu, 16 Jul 2026 12:20:24 GMT
════════════════════════
⌗ Tags: #bug_bounty #bugbounty_writeup #bithowl
Medium
Smali By bithowl: Chapter 2 Why Every Android Hacker Needs Smali
(“The Code You See Isn’t Always the Code That Runs”)
⤷ Title: wp2shell: Breaking Down the Critical WordPress RCE (CVE-2026–60137 + CVE-2026–63030)
════════════════════════
𐀪 Author: ஜெய்
════════════════════════
ⴵ Time: Sat, 18 Jul 2026 16:50:21 GMT
════════════════════════
⌗ Tags: #cybersecurity #wordpress #hacking #bugbounty_writeup
════════════════════════
𐀪 Author: ஜெய்
════════════════════════
ⴵ Time: Sat, 18 Jul 2026 16:50:21 GMT
════════════════════════
⌗ Tags: #cybersecurity #wordpress #hacking #bugbounty_writeup
Medium
wp2shell: Breaking Down the Critical WordPress RCE (CVE-2026–60137 + CVE-2026–63030)
Hi Guyz
⤷ Title: How I Earned a $300 Bug Bounty by Finding an Authorization Bypass in a Private Program
════════════════════════
𐀪 Author: ameensec
════════════════════════
ⴵ Time: Sun, 19 Jul 2026 06:19:51 GMT
════════════════════════
⌗ Tags: #ethical_hacking #bugbounty_writeup
════════════════════════
𐀪 Author: ameensec
════════════════════════
ⴵ Time: Sun, 19 Jul 2026 06:19:51 GMT
════════════════════════
⌗ Tags: #ethical_hacking #bugbounty_writeup
Medium
How I Earned a $300 Bug Bounty by Finding an Authorization Bypass in a Private Program
Authorization vulnerabilities are often overlooked because they don’t always involve complex exploits. Sometimes, a single…
⤷ Title: How a Simple Profile Setting Revealed Sensitive Credentials in a Bug Bounty Program
════════════════════════
𐀪 Author: Mazen Rady
════════════════════════
ⴵ Time: Sun, 19 Jul 2026 08:09:01 GMT
════════════════════════
⌗ Tags: #penetration_testing #information_disclosure #web_penetration_testing #bugbounty_writeup #bug_bounty
════════════════════════
𐀪 Author: Mazen Rady
════════════════════════
ⴵ Time: Sun, 19 Jul 2026 08:09:01 GMT
════════════════════════
⌗ Tags: #penetration_testing #information_disclosure #web_penetration_testing #bugbounty_writeup #bug_bounty
Medium
How a Simple Profile Setting Revealed Sensitive Credentials in a Bug Bounty Program
.اللهم انفعنا بما علَّمتنا، وعلِّمنا ما ينفعنا، وزِدنا علمًا وفقهًا وفهمًا يا رب العالمين
⤷ Title: How a Simple Google Dork Led Me to Find Reflected XSS & HTML Injection on NASA and Earn a Letter of…
════════════════════════
𐀪 Author: ItsS4LEH
════════════════════════
ⴵ Time: Thu, 23 Jul 2026 15:07:34 GMT
════════════════════════
⌗ Tags: #infosec #bug_bounty_tips #bug_bounty_writeup #bug_bounty #bugbounty_writeup
════════════════════════
𐀪 Author: ItsS4LEH
════════════════════════
ⴵ Time: Thu, 23 Jul 2026 15:07:34 GMT
════════════════════════
⌗ Tags: #infosec #bug_bounty_tips #bug_bounty_writeup #bug_bounty #bugbounty_writeup
Medium
How a Simple Google Dork Led Me to Find Reflected XSS & HTML Injection on NASA and Earn a Letter of Recognition [April 2026]
Disclaimer
⤷ Title: Smali By bithowl: Chapter 3 Android Bytecode Fundamentals
════════════════════════
𐀪 Author: bithowl
════════════════════════
ⴵ Time: Sat, 25 Jul 2026 13:04:01 GMT
════════════════════════
⌗ Tags: #bugbounty_writeup #bug_bounty #bithowl
════════════════════════
𐀪 Author: bithowl
════════════════════════
ⴵ Time: Sat, 25 Jul 2026 13:04:01 GMT
════════════════════════
⌗ Tags: #bugbounty_writeup #bug_bounty #bithowl
Medium
Smali By bithowl: Chapter 3 Android Bytecode Fundamentals
(“Every Android App Speaks a Language Your Phone Understands”)
⤷ Title: Account Takeover Across Multiple Programs via Featurebase Integration
════════════════════════
𐀪 Author: JEETPAL
════════════════════════
ⴵ Time: Wed, 29 Jul 2026 05:23:30 GMT
════════════════════════
⌗ Tags: #bug_bounty_writeup #bug_bounty #bugbounty_writeup #bug_bounty_tips #account_takeover
════════════════════════
𐀪 Author: JEETPAL
════════════════════════
ⴵ Time: Wed, 29 Jul 2026 05:23:30 GMT
════════════════════════
⌗ Tags: #bug_bounty_writeup #bug_bounty #bugbounty_writeup #bug_bounty_tips #account_takeover
Medium
Account Takeover Across Multiple Programs via Featurebase Integration
In this blog, I am going to share an account takeover vulnerability in a third-party provider widely used by many bug bounty programs.