⤷ Title: Broken Access Control to Gain Unauthorized Role Management in a Public Program
════════════════════════
𐀪 Author: Bassemwanies
════════════════════════
ⴵ Time: Sun, 20 Jul 2025 20:54:22 GMT
════════════════════════
⌗ Tags: #real_world_bug_hunting #bug_bounty #bug_hunting #cybersecurity #bug_bounty_writeup
════════════════════════
𐀪 Author: Bassemwanies
════════════════════════
ⴵ Time: Sun, 20 Jul 2025 20:54:22 GMT
════════════════════════
⌗ Tags: #real_world_bug_hunting #bug_bounty #bug_hunting #cybersecurity #bug_bounty_writeup
Medium
Broken Access Control to Gain Unauthorized Role Management in a Public Program
قَالَ اللَّهُ تَعَالَى: {يَرْفَعِ اللَّهُ الَّذِينَ آمَنُوا مِنكُمْ وَالَّذِينَ أُوتُوا الْعِلْمَ دَرَجَاتٍ ۚ وَاللَّهُ بِمَا تَعْمَلُونَ…
⤷ Title: I Found Hidden Vulnerabilities in Just 3 Hours
════════════════════════
𐀪 Author: Ibtissam hammadi
════════════════════════
ⴵ Time: Sun, 20 Jul 2025 21:31:21 GMT
════════════════════════
⌗ Tags: #hacking #bug_bounty #cybersecurity
════════════════════════
𐀪 Author: Ibtissam hammadi
════════════════════════
ⴵ Time: Sun, 20 Jul 2025 21:31:21 GMT
════════════════════════
⌗ Tags: #hacking #bug_bounty #cybersecurity
Medium
I Found Hidden Vulnerabilities in Just 3 Hours
Most bug hunters miss 70% of attack surfaces because they focus only on the main domain. Here’s how I expanded my scope and found critical…
⤷ Title: [Web Security Academy] — Server-Side Vulnerabilities / Path Traversal
════════════════════════
𐀪 Author: Voltsec
════════════════════════
ⴵ Time: Sun, 20 Jul 2025 20:54:23 GMT
════════════════════════
⌗ Tags: #bug_bounty #path_traversal #web_security #writeup #cybersecurity
════════════════════════
𐀪 Author: Voltsec
════════════════════════
ⴵ Time: Sun, 20 Jul 2025 20:54:23 GMT
════════════════════════
⌗ Tags: #bug_bounty #path_traversal #web_security #writeup #cybersecurity
Medium
[Web Security Academy] — Server-Side Vulnerabilities / Path Traversal
A simple demonstration of a Path Traversal vulnerability from PortSwigger’s Web Security Academy.
⤷ Title: Enumerando Serviços com Bash Puro: Pentest Sem Ferramentas, Só Casca Grossa
════════════════════════
𐀪 Author: Thiago Leandro
════════════════════════
ⴵ Time: Sun, 20 Jul 2025 21:01:19 GMT
════════════════════════
⌗ Tags: #pentesting #python #cybersecurity #hacking #red_team
════════════════════════
𐀪 Author: Thiago Leandro
════════════════════════
ⴵ Time: Sun, 20 Jul 2025 21:01:19 GMT
════════════════════════
⌗ Tags: #pentesting #python #cybersecurity #hacking #red_team
Medium
Enumerando Serviços com Bash Puro: Pentest Sem Ferramentas, Só Casca Grossa
Durante um dos experimentos no meu laboratório de segurança experimental, me propus um desafio: comprometer uma máquina na DMZ e girar para
⤷ Title: LinkVortex: HTB WriteUp
════════════════════════
𐀪 Author: Jad Ghamloush
════════════════════════
ⴵ Time: Sun, 20 Jul 2025 20:54:09 GMT
════════════════════════
⌗ Tags: #hackthebox #walkthrough #hacking #writeup #cybersecurity
════════════════════════
𐀪 Author: Jad Ghamloush
════════════════════════
ⴵ Time: Sun, 20 Jul 2025 20:54:09 GMT
════════════════════════
⌗ Tags: #hackthebox #walkthrough #hacking #writeup #cybersecurity
Medium
LinkVortex: HTB WriteUp
In this write-up, I’ll walk you through how I rooted the LinkVortex box. Let’s get started!
⤷ Title: Exposed: How Hackers Bypass Microsoft 365 MFA Using Advanced Phishing Tools
════════════════════════
𐀪 Author: Lawrence Teixeira
════════════════════════
ⴵ Time: Sun, 20 Jul 2025 21:58:44 GMT
════════════════════════
⌗ Tags: #mfa #microsoft_365 #cybersecurity #infosec #phishing
════════════════════════
𐀪 Author: Lawrence Teixeira
════════════════════════
ⴵ Time: Sun, 20 Jul 2025 21:58:44 GMT
════════════════════════
⌗ Tags: #mfa #microsoft_365 #cybersecurity #infosec #phishing
Medium
Exposed: How Hackers Bypass Microsoft 365 MFA Using Advanced Phishing Tools
The shocking reality: Even Microsoft 365’s multi-factor authentication can be bypassed by sophisticated phishing tools
⤷ Title: Let’s Defend: 76 — SOC137 — Malicious File/Script Download Attempt | Writeup
════════════════════════
𐀪 Author: EPereda
════════════════════════
ⴵ Time: Sun, 20 Jul 2025 22:55:22 GMT
════════════════════════
⌗ Tags: #cybersecurity #writeup #lets_defend #blue_team
════════════════════════
𐀪 Author: EPereda
════════════════════════
ⴵ Time: Sun, 20 Jul 2025 22:55:22 GMT
════════════════════════
⌗ Tags: #cybersecurity #writeup #lets_defend #blue_team
Medium
Let’s Defend: 76 — SOC137 — Malicious File/Script Download Attempt | Writeup
Let’s Defend is an interactive, hands-on training platform focused on Blue Team (defensive cybersecurity) operations. It simulates a…
⤷ Title: Let’s Defend: 75 — SOC105 — Requested T.I. URL address | Writeup
════════════════════════
𐀪 Author: EPereda
════════════════════════
ⴵ Time: Sun, 20 Jul 2025 22:54:57 GMT
════════════════════════
⌗ Tags: #cybersecurity #blue_team #writeup #lets_defend
════════════════════════
𐀪 Author: EPereda
════════════════════════
ⴵ Time: Sun, 20 Jul 2025 22:54:57 GMT
════════════════════════
⌗ Tags: #cybersecurity #blue_team #writeup #lets_defend
Medium
Let’s Defend: 75 — SOC105 — Requested T.I. URL address | Writeup
Let’s Defend is an interactive, hands-on training platform focused on Blue Team (defensive cybersecurity) operations. It simulates a…
⤷ Title: Let’s Defend: 45 — SOC114 — Malicious Attachment Detected — Phishing Alert | Writeup
════════════════════════
𐀪 Author: EPereda
════════════════════════
ⴵ Time: Sun, 20 Jul 2025 22:54:12 GMT
════════════════════════
⌗ Tags: #writeup #cybersecurity #blue_team #lets_defend
════════════════════════
𐀪 Author: EPereda
════════════════════════
ⴵ Time: Sun, 20 Jul 2025 22:54:12 GMT
════════════════════════
⌗ Tags: #writeup #cybersecurity #blue_team #lets_defend
Medium
Let’s Defend: 45 — SOC114 — Malicious Attachment Detected — Phishing Alert | Writeup
Let’s Defend is an interactive, hands-on training platform focused on Blue Team (defensive cybersecurity) operations. It simulates a…
⤷ Title: Protecting SCADA Systems From Remote Attacks
════════════════════════
𐀪 Author: Karthikeyan Nagaraj
════════════════════════
ⴵ Time: Sun, 20 Jul 2025 22:16:59 GMT
════════════════════════
⌗ Tags: #technology #careers #cybersecurity #programming #security
════════════════════════
𐀪 Author: Karthikeyan Nagaraj
════════════════════════
ⴵ Time: Sun, 20 Jul 2025 22:16:59 GMT
════════════════════════
⌗ Tags: #technology #careers #cybersecurity #programming #security
Medium
Protecting SCADA Systems From Remote Attacks
How to secure critical industrial control systems against evolving cyber threats.
⤷ Title: WormGPT: The Chatbot That Doesn’t Play Nice. But Taught Me Everything About Prompt Security.
════════════════════════
𐀪 Author: Dom 'Tudell Mika'
════════════════════════
ⴵ Time: Sun, 20 Jul 2025 21:39:31 GMT
════════════════════════
⌗ Tags: #cybersecurity #chatbots #cloud_computing #chatgpt #cybercrime
════════════════════════
𐀪 Author: Dom 'Tudell Mika'
════════════════════════
ⴵ Time: Sun, 20 Jul 2025 21:39:31 GMT
════════════════════════
⌗ Tags: #cybersecurity #chatbots #cloud_computing #chatgpt #cybercrime
Medium
WormGPT: The Chatbot That Doesn’t Play Nice. But Taught Me Everything About Prompt Security.
What I learned after testing the AI designed to outsmart humans and why printing its responses changed everything.
⤷ Title: Getting Started with Microsoft Defender XDR
════════════════════════
𐀪 Author: Eyad Hasanato
════════════════════════
ⴵ Time: Sun, 20 Jul 2025 21:11:36 GMT
════════════════════════
⌗ Tags: #cybersecurity #cloud_computing #microsoft #microsoft_defender_xdr #cloud_security
════════════════════════
𐀪 Author: Eyad Hasanato
════════════════════════
ⴵ Time: Sun, 20 Jul 2025 21:11:36 GMT
════════════════════════
⌗ Tags: #cybersecurity #cloud_computing #microsoft #microsoft_defender_xdr #cloud_security
Medium
Getting Started with Microsoft Defender XDR
What is Microsoft Dedender XDR
⤷ Title: Server-side Attacks — Skills Assessment HackTheBox
════════════════════════
𐀪 Author: Hasan Huseynov
════════════════════════
ⴵ Time: Sun, 20 Jul 2025 22:59:22 GMT
════════════════════════
⌗ Tags: #hackthebox #hackthebox_writeup #hackthebox_academy #hackthebox_walkthrough
════════════════════════
𐀪 Author: Hasan Huseynov
════════════════════════
ⴵ Time: Sun, 20 Jul 2025 22:59:22 GMT
════════════════════════
⌗ Tags: #hackthebox #hackthebox_writeup #hackthebox_academy #hackthebox_walkthrough
Medium
Server-side Attacks — Skills Assessment HackTheBox
Hər kəsə salam,Bu məqalədə HackTheBox-dakı Server-Side Attacks modulundakı Skills Assessment hissəsini edib,əlimdən gəldiyi qədər izah…
⤷ Title: NativeDump: Stealthy LSASS Dumping Tool Bypasses EDRs Using Only NTAPIs
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 21 Jul 2025 00:29:01 +0000
════════════════════════
⌗ Tags: #Open Source Tool #credential dumping #cybersecurity #Evasion #LSASS #Mimikatz #NativeDump #Offensive Security #pypykatz #Red Team #Windows Security
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 21 Jul 2025 00:29:01 +0000
════════════════════════
⌗ Tags: #Open Source Tool #credential dumping #cybersecurity #Evasion #LSASS #Mimikatz #NativeDump #Offensive Security #pypykatz #Red Team #Windows Security
Penetration Testing Tools
NativeDump: Stealthy LSASS Dumping Tool Bypasses EDRs Using Only NTAPIs
NativeDump is a new tool for stealthy LSASS process dumping using only NTAPIs, bypassing EDRs to extract credentials for tools like Mimikatz or Pypykatz.
⤷ Title: Intel Axes High-Performance Clear Linux: End of an Era for a Decade of Innovation
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 21 Jul 2025 00:22:51 +0000
════════════════════════
⌗ Tags: #Linux #Clear Linux #Discontinuation #Intel #Linux Community #Linux distribution #open source #performance #Tech News
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 21 Jul 2025 00:22:51 +0000
════════════════════════
⌗ Tags: #Linux #Clear Linux #Discontinuation #Intel #Linux Community #Linux distribution #open source #performance #Tech News
Penetration Testing Tools
Intel Axes High-Performance Clear Linux: End of an Era for a Decade of Innovation
Intel has officially discontinued Clear Linux, its high-performing Linux distribution, as part of cost-cutting. Users are urged to migrate immediately.
⤷ Title: Akira Ransomware Unleashes Double Extortion Barrage on 12 Global Companies in 72 Hours
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 21 Jul 2025 00:20:07 +0000
════════════════════════
⌗ Tags: #Malware
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 21 Jul 2025 00:20:07 +0000
════════════════════════
⌗ Tags: #Malware
Penetration Testing Tools
Akira Ransomware Unleashes Double Extortion Barrage on 12 Global Companies in 72 Hours
The Akira ransomware group intensified attacks, adding 12 new companies to its leak site in 3 days, using double extortion to steal and encrypt data from diverse global industries.
⤷ Title: New Linuxsys Cryptominer Campaign Exploits Apache HTTP Server & Other Critical Flaws
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 21 Jul 2025 00:12:29 +0000
════════════════════════
⌗ Tags: #Malware #Apache HTTP Server #Cryptominer #CVE_2021_41773 #cybersecurity #h2miner #Linux #Linuxsys #malware #ransomware #windows
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 21 Jul 2025 00:12:29 +0000
════════════════════════
⌗ Tags: #Malware #Apache HTTP Server #Cryptominer #CVE_2021_41773 #cybersecurity #h2miner #Linux #Linuxsys #malware #ransomware #windows
Penetration Testing Tools
New Linuxsys Cryptominer Campaign Exploits Apache HTTP Server & Other Critical Flaws
VulnCheck reveals a new Linuxsys cryptominer campaign exploiting Apache HTTP Server CVE-2021-41773 and other critical flaws to deploy malware, including the Lcrypt0rx ransomware.
⤷ Title: Three High-Severity Privilege Escalation Flaws Patched in Sophos Intercept X for Windows
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 21 Jul 2025 00:41:21 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2024_13972 #CVE_2025_7433 #CVE_2025_7472 #cybersecurity #endpoint security #LPE #patch #privilege escalation #Sophos Intercept X #Vulnerability
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 21 Jul 2025 00:41:21 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2024_13972 #CVE_2025_7433 #CVE_2025_7472 #cybersecurity #endpoint security #LPE #patch #privilege escalation #Sophos Intercept X #Vulnerability
Daily CyberSecurity
Three High-Severity Privilege Escalation Flaws Patched in Sophos Intercept X for Windows
Sophos has patched three high-severity LPE vulnerabilities in Intercept X for Windows (CVE-2024-13972, CVE-2025-7433, CVE-2025-7472), allowing local users to gain SYSTEM privileges.
⤷ Title: Critical Livewire RCE (CVE-2025-54068) Threatens Millions of Laravel Apps – Patch Immediately!
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 21 Jul 2025 00:40:45 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2025_54068 #cybersecurity #Laravel #Livewire #php #rce #Remote Code Execution #Vulnerability #web development
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 21 Jul 2025 00:40:45 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2025_54068 #cybersecurity #Laravel #Livewire #php #rce #Remote Code Execution #Vulnerability #web development
Daily CyberSecurity
Critical Livewire RCE (CVE-2025-54068) Threatens Millions of Laravel Apps – Patch Immediately!
A critical RCE (CVE-2025-54068) in Livewire v3.6.3 and earlier allows unauthenticated attackers to execute arbitrary code on millions of Laravel applications. Update now!
⤷ Title: Scanception: Global QR Code Phishing Campaign Bypasses Enterprise Security, Steals Credentials at Scale
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 21 Jul 2025 00:40:41 +0000
════════════════════════
⌗ Tags: #Cybercriminals #AiTM #Credential Harvesting #cybersecurity #Cyble #mobile security #phishing #QR code phishing #Quishing #Scanception
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 21 Jul 2025 00:40:41 +0000
════════════════════════
⌗ Tags: #Cybercriminals #AiTM #Credential Harvesting #cybersecurity #Cyble #mobile security #phishing #QR code phishing #Quishing #Scanception
Daily CyberSecurity
Scanception: Global QR Code Phishing Campaign Bypasses Enterprise Security, Steals Credentials at Scale
Scanception campaign uses QR code-based phishing in PDFs to bypass traditional security, targeting high-value industries globally for credential and 2FA theft.
⤷ Title: Katz Stealer: The $100/Month MaaS Threat Plundering Digital Identities Undetected
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 21 Jul 2025 00:36:34 +0000
════════════════════════
⌗ Tags: #Malware #Credential Theft #crypto wallets #cybersecurity #evasion #info_stealer #Katz Stealer #MaaS #Malware_as_a_Service #Process Hollowing
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 21 Jul 2025 00:36:34 +0000
════════════════════════
⌗ Tags: #Malware #Credential Theft #crypto wallets #cybersecurity #evasion #info_stealer #Katz Stealer #MaaS #Malware_as_a_Service #Process Hollowing
Daily CyberSecurity
Katz Stealer: The $100/Month MaaS Threat Plundering Digital Identities Undetected
Katz Stealer is a dangerous MaaS info-stealer (starting at $100/month) that plunders digital identities, evades detection with stealthy techniques, and targets a vast array of sensitive data.