⤷ Title: OS command injection, simple case [ES] [PortSwigger]
════════════════════════
𐀪 Author: h0lm3s
════════════════════════
ⴵ Time: Sat, 26 Jul 2025 01:39:42 GMT
════════════════════════
⌗ Tags: #vulnerability #infosec #bug_bounty #technology #cybersecurity
════════════════════════
𐀪 Author: h0lm3s
════════════════════════
ⴵ Time: Sat, 26 Jul 2025 01:39:42 GMT
════════════════════════
⌗ Tags: #vulnerability #infosec #bug_bounty #technology #cybersecurity
Medium
OS command injection, simple case [ES] [PortSwigger]
Imagina que pudieras dar instrucciones secretas al sistema operativo y obtener el resultado sin ningún tipo de filtro, utilizando un canal…
⤷ Title: Operation GhostChat & PhantomPrayers
════════════════════════
𐀪 Author: Cyber-AppSec
════════════════════════
ⴵ Time: Sat, 26 Jul 2025 02:02:36 GMT
════════════════════════
⌗ Tags: #application_security #cybersecurity #information_security #ai #malware
════════════════════════
𐀪 Author: Cyber-AppSec
════════════════════════
ⴵ Time: Sat, 26 Jul 2025 02:02:36 GMT
════════════════════════
⌗ Tags: #application_security #cybersecurity #information_security #ai #malware
Medium
Operation GhostChat & PhantomPrayers
How Fake Dalai Lama Apps Were Used to Spy on the Tibetan Community
⤷ Title: FileFix: A New Clipboard-Based Cyberattack Method (Social Engineering)
════════════════════════
𐀪 Author: Muamer Huseinovic
════════════════════════
ⴵ Time: Sat, 26 Jul 2025 02:50:59 GMT
════════════════════════
⌗ Tags: #threat_intelligence #technology #cybersecurity #news #education
════════════════════════
𐀪 Author: Muamer Huseinovic
════════════════════════
ⴵ Time: Sat, 26 Jul 2025 02:50:59 GMT
════════════════════════
⌗ Tags: #threat_intelligence #technology #cybersecurity #news #education
Medium
FileFix: A New Clipboard-Based Cyberattack Method (Social Engineering)
A Newly Crafted Social Engineering method as of April-July, 2025
⤷ Title: ️♂️ Hunting an APT with CrowdStrike: From Detection to Containment
════════════════════════
𐀪 Author: Paritosh
════════════════════════
ⴵ Time: Sat, 26 Jul 2025 02:24:59 GMT
════════════════════════
⌗ Tags: #information_technology #threat_hunting #apt #cybersecurity #crowdstrike
════════════════════════
𐀪 Author: Paritosh
════════════════════════
ⴵ Time: Sat, 26 Jul 2025 02:24:59 GMT
════════════════════════
⌗ Tags: #information_technology #threat_hunting #apt #cybersecurity #crowdstrike
Medium
🕵️♂️ Hunting an APT with CrowdStrike: From Detection to Containment
“APT actors don’t break in — they log in. The question is: are you watching?”
⤷ Title: Healthcare Isn’t Just Under Threat, It’s Underprepared
════════════════════════
𐀪 Author: Ernest Nwangbo
════════════════════════
ⴵ Time: Sat, 26 Jul 2025 02:13:21 GMT
════════════════════════
⌗ Tags: #cloud_computing #cybersecurity #healthcare
════════════════════════
𐀪 Author: Ernest Nwangbo
════════════════════════
ⴵ Time: Sat, 26 Jul 2025 02:13:21 GMT
════════════════════════
⌗ Tags: #cloud_computing #cybersecurity #healthcare
Medium
Healthcare Isn’t Just Under Threat, It’s Underprepared
Healthcare organisations face deep challenges today as they operate in most vulnerable digital environments, such as:
⤷ Title: Let’s Defend: 123 — SOC173 — Follina 0-Day Detected
════════════════════════
𐀪 Author: EPereda
════════════════════════
ⴵ Time: Sat, 26 Jul 2025 01:27:04 GMT
════════════════════════
⌗ Tags: #lets_defend #cybersecurity #writeup #blue_team
════════════════════════
𐀪 Author: EPereda
════════════════════════
ⴵ Time: Sat, 26 Jul 2025 01:27:04 GMT
════════════════════════
⌗ Tags: #lets_defend #cybersecurity #writeup #blue_team
Medium
Let’s Defend: 123 — SOC173 — Follina 0-Day Detected
Let’s Defend is an interactive, hands-on training platform focused on Blue Team (defensive cybersecurity) operations. It simulates a…
⤷ Title: Let’s Defend: 153 — SOC202 — FakeGPT Malicious Chrome Extension | Writeup
════════════════════════
𐀪 Author: EPereda
════════════════════════
ⴵ Time: Sat, 26 Jul 2025 01:27:03 GMT
════════════════════════
⌗ Tags: #blue_team #lets_defend #cybersecurity #writeup
════════════════════════
𐀪 Author: EPereda
════════════════════════
ⴵ Time: Sat, 26 Jul 2025 01:27:03 GMT
════════════════════════
⌗ Tags: #blue_team #lets_defend #cybersecurity #writeup
Medium
Let’s Defend: 153 — SOC202 — FakeGPT Malicious Chrome Extension | Writeup
Let’s Defend is an interactive, hands-on training platform focused on Blue Team (defensive cybersecurity) operations. It simulates a…
⤷ Title: Let’s Defend: 161 — SOC211 — Utilman.exe Winlogon Exploit Attempt | Writeup
════════════════════════
𐀪 Author: EPereda
════════════════════════
ⴵ Time: Sat, 26 Jul 2025 01:26:59 GMT
════════════════════════
⌗ Tags: #blue_team #cybersecurity #lets_defend #writeup
════════════════════════
𐀪 Author: EPereda
════════════════════════
ⴵ Time: Sat, 26 Jul 2025 01:26:59 GMT
════════════════════════
⌗ Tags: #blue_team #cybersecurity #lets_defend #writeup
Medium
Let’s Defend: 161 — SOC211 — Utilman.exe Winlogon Exploit Attempt | Writeup
Let’s Defend is an interactive, hands-on training platform focused on Blue Team (defensive cybersecurity) operations. It simulates a…
⤷ Title: GLBA Compliance: What Every Financial Institution and School Must Know
════════════════════════
𐀪 Author: Don Jayathilake
════════════════════════
ⴵ Time: Sat, 26 Jul 2025 01:22:27 GMT
════════════════════════
⌗ Tags: #cloud_governance #cybersecurity #regulatory_compliance #eduction #compliance
════════════════════════
𐀪 Author: Don Jayathilake
════════════════════════
ⴵ Time: Sat, 26 Jul 2025 01:22:27 GMT
════════════════════════
⌗ Tags: #cloud_governance #cybersecurity #regulatory_compliance #eduction #compliance
Medium
GLBA Compliance: What Every Financial Institution and School Must Know
If you’re running a financial institution or managing student financial aid, the Gramm-Leach-Bliley Act (GLBA) is more than a regulatory…
⤷ Title: K2 Middle Camp Walkthrough
════════════════════════
𐀪 Author: Rich
════════════════════════
ⴵ Time: Sat, 26 Jul 2025 02:39:22 GMT
════════════════════════
⌗ Tags: #tryhackme #active_directory_security #tryhackme_walkthrough #tryhackme_writeup #windows_domain_security
════════════════════════
𐀪 Author: Rich
════════════════════════
ⴵ Time: Sat, 26 Jul 2025 02:39:22 GMT
════════════════════════
⌗ Tags: #tryhackme #active_directory_security #tryhackme_walkthrough #tryhackme_writeup #windows_domain_security
Medium
K2 Middle Camp Walkthrough
TL;DR walkthrough of the K2 Middle Camp portion of the K2 room. This is part 2 of 3 on the K2 room. Due to my suckiness at webapps there is…
⤷ Title: The Bug Hiding in Plain Sight: A Simple Click Led to Cross-Org Account Takeover
════════════════════════
𐀪 Author: Ayaa Hamed
════════════════════════
ⴵ Time: Sat, 26 Jul 2025 04:52:16 GMT
════════════════════════
⌗ Tags: #bug_bounty_tips #bug_bounty_writeup #bug_bounty
════════════════════════
𐀪 Author: Ayaa Hamed
════════════════════════
ⴵ Time: Sat, 26 Jul 2025 04:52:16 GMT
════════════════════════
⌗ Tags: #bug_bounty_tips #bug_bounty_writeup #bug_bounty
Medium
The Bug Hiding in Plain Sight: A Simple Click Led to Cross-Org Account Takeover
Sometimes, the most powerful bugs don’t hide behind layers of complexity— they sit quietly in the open, waiting for someone to ask the…
⤷ Title: Insecure OTP Mechanism: How I Discovered a Replay Attack Vulnerability
════════════════════════
𐀪 Author: Blue_eye
════════════════════════
ⴵ Time: Sat, 26 Jul 2025 03:46:57 GMT
════════════════════════
⌗ Tags: #web_development #hacking #bug_bounty #penetration_testing #software_development
════════════════════════
𐀪 Author: Blue_eye
════════════════════════
ⴵ Time: Sat, 26 Jul 2025 03:46:57 GMT
════════════════════════
⌗ Tags: #web_development #hacking #bug_bounty #penetration_testing #software_development
Medium
Insecure OTP Mechanism: How I Discovered a Replay Attack Vulnerability
Recently, while auditing an application’s authentication mechanisms, I unearthed a subtle but serious flaw in the way it handled One-Time…
⤷ Title: SharePoint ToolShell: The Most sophisticated Enterprise hack of 2025
════════════════════════
𐀪 Author: Mostefa Jakboub
════════════════════════
ⴵ Time: Sat, 26 Jul 2025 03:24:43 GMT
════════════════════════
⌗ Tags: #security_breach #hacking #cybersecurity #china #bug_bounty
════════════════════════
𐀪 Author: Mostefa Jakboub
════════════════════════
ⴵ Time: Sat, 26 Jul 2025 03:24:43 GMT
════════════════════════
⌗ Tags: #security_breach #hacking #cybersecurity #china #bug_bounty
Medium
SharePoint ToolShell: The Most sophisticated Enterprise hack of 2025
By Mostefa Jakboub | Threat Hunter & Security Researcher
⤷ Title: Operation CargoTalon: The Cyber Espionage Campaign Targeting Russia’s Aerospace Sector
════════════════════════
𐀪 Author: CYber VIaz
════════════════════════
ⴵ Time: Sat, 26 Jul 2025 04:47:28 GMT
════════════════════════
⌗ Tags: #hacking #cybersecurity #apt #espionage #cyber_warfare
════════════════════════
𐀪 Author: CYber VIaz
════════════════════════
ⴵ Time: Sat, 26 Jul 2025 04:47:28 GMT
════════════════════════
⌗ Tags: #hacking #cybersecurity #apt #espionage #cyber_warfare
Medium
Operation CargoTalon: The Cyber Espionage Campaign Targeting Russia’s Aerospace Sector
“In the world of cyber warfare, trust no file — even if it looks like a simple shipping document.”
⤷ Title: How a PUBG Ace Lost ₹1 Lakh in a Real-Time Phishing Scam: A Game Hack Case Study
════════════════════════
𐀪 Author: Nikita
════════════════════════
ⴵ Time: Sat, 26 Jul 2025 04:40:03 GMT
════════════════════════
⌗ Tags: #phishing #cybersecurity #infosec #pubg #hacking
════════════════════════
𐀪 Author: Nikita
════════════════════════
ⴵ Time: Sat, 26 Jul 2025 04:40:03 GMT
════════════════════════
⌗ Tags: #phishing #cybersecurity #infosec #pubg #hacking
Medium
🎮 How a PUBG Ace Lost ₹1 Lakh in a Real-Time Phishing Scam: A Game Hack Case Study
“Yaar, PUBG chalate-chalate woh paisa chala gaya…” — that was the first thing Rohan said after realizing he had been scammed. A…
⤷ Title: Cracking OSEP at 19: The Second Youngest Hacker to Do It
════════════════════════
𐀪 Author: ProwlSec
════════════════════════
ⴵ Time: Sat, 26 Jul 2025 04:36:02 GMT
════════════════════════
⌗ Tags: #offsec #hacking #active_directory #pentesting #offensive_security
════════════════════════
𐀪 Author: ProwlSec
════════════════════════
ⴵ Time: Sat, 26 Jul 2025 04:36:02 GMT
════════════════════════
⌗ Tags: #offsec #hacking #active_directory #pentesting #offensive_security
Medium
Cracking OSEP at 19: A Review from the Second Youngest Certified Hacker
At the age of 19, I took a challenge that even experienced professionals find tough. I signed up for Offensive Security’s OSEP…
⤷ Title: The New Cyber Sentinel: How AI Is Transforming Threat Detection
════════════════════════
𐀪 Author: Md Shafiqul Baten Sumon
════════════════════════
ⴵ Time: Sat, 26 Jul 2025 03:57:45 GMT
════════════════════════
⌗ Tags: #cybersecurity #artificial_intelligence #machine_learning #threat_detection #infosec
════════════════════════
𐀪 Author: Md Shafiqul Baten Sumon
════════════════════════
ⴵ Time: Sat, 26 Jul 2025 03:57:45 GMT
════════════════════════
⌗ Tags: #cybersecurity #artificial_intelligence #machine_learning #threat_detection #infosec
Medium
The New Cyber Sentinel: How AI Is Transforming Threat Detection
By Md Shafiqul Baten Sumon
⤷ Title: Small Tasks, Big Lessons: My Journey Through a Phishing Simulation Project During Internship
════════════════════════
𐀪 Author: 0xprowl3r
════════════════════════
ⴵ Time: Sat, 26 Jul 2025 04:37:20 GMT
════════════════════════
⌗ Tags: #information_security #phishing #technology #cybersecurity #ethical_hacking
════════════════════════
𐀪 Author: 0xprowl3r
════════════════════════
ⴵ Time: Sat, 26 Jul 2025 04:37:20 GMT
════════════════════════
⌗ Tags: #information_security #phishing #technology #cybersecurity #ethical_hacking
Medium
Small Tasks, Big Lessons: My Journey Through a Phishing Simulation Project During Internship
During my internship, I was handed a task that seemed simple on the surface: create a custom phishing website to be used for new joiner…
⤷ Title: The Growing Threat of Forgotten Subdomains: Real Risks Hiding in Plain Sight
════════════════════════
𐀪 Author: Aravind S V
════════════════════════
ⴵ Time: Sat, 26 Jul 2025 04:30:12 GMT
════════════════════════
⌗ Tags: #dns #information_security #information_technology #asset_management #cybersecurity
════════════════════════
𐀪 Author: Aravind S V
════════════════════════
ⴵ Time: Sat, 26 Jul 2025 04:30:12 GMT
════════════════════════
⌗ Tags: #dns #information_security #information_technology #asset_management #cybersecurity
Medium
The Growing Threat of Forgotten Subdomains: Real Risks Hiding in Plain Sight
In today’s dynamic digital landscape, organizations launch and retire web services faster than ever. Each initiative — whether a new…
⤷ Title: Threat detection approaches for Financial Technology (FinTech)
════════════════════════
𐀪 Author: Joe Alongi
════════════════════════
ⴵ Time: Sat, 26 Jul 2025 04:08:30 GMT
════════════════════════
⌗ Tags: #chaos_engineering #application #cybersecurity #information_security
════════════════════════
𐀪 Author: Joe Alongi
════════════════════════
ⴵ Time: Sat, 26 Jul 2025 04:08:30 GMT
════════════════════════
⌗ Tags: #chaos_engineering #application #cybersecurity #information_security
Medium
Threat detection approaches for Financial Technology (FinTech)
Planning for incidents in one of the most secure and regulated industries in cyberspace
⤷ Title: Layered cybersecurity approaches for Financial Technology (FinTech)
════════════════════════
𐀪 Author: Joe Alongi
════════════════════════
ⴵ Time: Sat, 26 Jul 2025 03:59:32 GMT
════════════════════════
⌗ Tags: #chaos_engineering #application #cybersecurity #information_security
════════════════════════
𐀪 Author: Joe Alongi
════════════════════════
ⴵ Time: Sat, 26 Jul 2025 03:59:32 GMT
════════════════════════
⌗ Tags: #chaos_engineering #application #cybersecurity #information_security
Medium
Layered cybersecurity approaches for Financial Technology (FinTech)
Getting to know one of the most secure and regulated industries in cyberspace