⤷ Title: Web Cache Poisoning via Fat GET Requests: Exploiting Cache Key Flaws
════════════════════════
𐀪 Author: Bash Overflow
════════════════════════
ⴵ Time: Tue, 09 Sep 2025 05:04:51 GMT
════════════════════════
⌗ Tags: #web_cache_poisoning #cache_key_manipulation #cache_poisoning_attack #bug_bounty #xss_via_cache_poisoning
════════════════════════
𐀪 Author: Bash Overflow
════════════════════════
ⴵ Time: Tue, 09 Sep 2025 05:04:51 GMT
════════════════════════
⌗ Tags: #web_cache_poisoning #cache_key_manipulation #cache_poisoning_attack #bug_bounty #xss_via_cache_poisoning
Medium
Web Cache Poisoning via Fat GET Requests: Exploiting Cache Key Flaws
Learn how fat GET requests enable web cache poisoning by exploiting mismatched cache key handling, and why this vulnerability can escalate…
⤷ Title: Broken like Hijacking earned me $150
════════════════════════
𐀪 Author: Canonminibeast
════════════════════════
ⴵ Time: Tue, 09 Sep 2025 05:06:37 GMT
════════════════════════
⌗ Tags: #bug_bounty_tips #cybersecurity #bug_bounty #hacking #bug_bounty_writeup
════════════════════════
𐀪 Author: Canonminibeast
════════════════════════
ⴵ Time: Tue, 09 Sep 2025 05:06:37 GMT
════════════════════════
⌗ Tags: #bug_bounty_tips #cybersecurity #bug_bounty #hacking #bug_bounty_writeup
Medium
Broken like Hijacking earned me $150
hey hi guys its been a while am writing a blog .
⤷ Title: SQL for Bug Bounty Hunters 2.0
════════════════════════
𐀪 Author: Swetha
════════════════════════
ⴵ Time: Tue, 09 Sep 2025 05:06:05 GMT
════════════════════════
⌗ Tags: #learning #hacking #programming #sql #bug_bounty
════════════════════════
𐀪 Author: Swetha
════════════════════════
ⴵ Time: Tue, 09 Sep 2025 05:06:05 GMT
════════════════════════
⌗ Tags: #learning #hacking #programming #sql #bug_bounty
Medium
SQL for Bug Bounty Hunters 2.0
This is the like to 1.0 version of this article https://medium.com/bugbountywriteup/sql-for-bug-bounty-hunters-106a4c324049
⤷ Title: AspGoat: The First Intentionally Vulnerable modern ASP.NET Core App for OWASP Top 10
════════════════════════
𐀪 Author: Soham
════════════════════════
ⴵ Time: Tue, 09 Sep 2025 05:06:01 GMT
════════════════════════
⌗ Tags: #cybersecurity #bug_bounty #ethical_hacking #dotnet #application_security
════════════════════════
𐀪 Author: Soham
════════════════════════
ⴵ Time: Tue, 09 Sep 2025 05:06:01 GMT
════════════════════════
⌗ Tags: #cybersecurity #bug_bounty #ethical_hacking #dotnet #application_security
Medium
AspGoat: The First Intentionally Vulnerable modern ASP.NET Core App for OWASP Top 10
Most intentionally vulnerable applications we know and use for training like DVWA, Juice Shop, and WebGoat are written in PHP , Node.JS…
⤷ Title: When Support Portals Bite Back: DOM-XSS in a Helpcenter
════════════════════════
𐀪 Author: Devansh Patel
════════════════════════
ⴵ Time: Tue, 09 Sep 2025 05:03:55 GMT
════════════════════════
⌗ Tags: #bug_bounty #cybersecurity #cybercrime #bug_bounty_writeup #bug_bounty_tips
════════════════════════
𐀪 Author: Devansh Patel
════════════════════════
ⴵ Time: Tue, 09 Sep 2025 05:03:55 GMT
════════════════════════
⌗ Tags: #bug_bounty #cybersecurity #cybercrime #bug_bounty_writeup #bug_bounty_tips
Medium
When Support Portals Bite Back: DOM-XSS in a Helpcenter
FREE LINK
⤷ Title: E-Ciber: como funciona a Estratégia Nacional de Cibersegurança do Brasil?
════════════════════════
𐀪 Author: Bughunt
════════════════════════
ⴵ Time: Tue, 09 Sep 2025 16:39:01 GMT
════════════════════════
⌗ Tags: No_Tags
════════════════════════
𐀪 Author: Bughunt
════════════════════════
ⴵ Time: Tue, 09 Sep 2025 16:39:01 GMT
════════════════════════
⌗ Tags: No_Tags
BugHunt
E-Ciber: como funciona a Estratégia Nacional de Cibersegurança do Brasil?
O que é a E-Ciber e como impacta empresas, governo e cidadãos? Entenda a Estratégia Nacional de Cibersegurança e seus principais desafios.
⤷ Title: The Bug Bounty Hunter Begins
════════════════════════
𐀪 Author: Agentic Monarch
════════════════════════
ⴵ Time: Tue, 09 Sep 2025 15:51:12 GMT
════════════════════════
⌗ Tags: #bug_bounty #33h #bug_bounty_hunter
════════════════════════
𐀪 Author: Agentic Monarch
════════════════════════
ⴵ Time: Tue, 09 Sep 2025 15:51:12 GMT
════════════════════════
⌗ Tags: #bug_bounty #33h #bug_bounty_hunter
Medium
The Bug Bounty Hunter Begins
เริ่มต้นบันทึกเส้นทางของการเปลี่ยนอาชีพมาทำ Cyber Security Engineer / Bug Bounty Hunter :)
⤷ Title: “That One Time I Found a Golden Ticket in a Desktop App”
════════════════════════
𐀪 Author: Aman Sharma
════════════════════════
ⴵ Time: Tue, 09 Sep 2025 15:15:17 GMT
════════════════════════
⌗ Tags: #programming #bug_bounty #money #cybersecurity #hacking
════════════════════════
𐀪 Author: Aman Sharma
════════════════════════
ⴵ Time: Tue, 09 Sep 2025 15:15:17 GMT
════════════════════════
⌗ Tags: #programming #bug_bounty #money #cybersecurity #hacking
Medium
“That One Time I Found a Golden Ticket in a Desktop App”
Let’s be real. We’ve all seen those mind-blowing bug bounty write-ups on Twitter. The ones that make you wonder, “How did they even think…
⤷ Title: How Hackers Exploit AI Tools Like ChatGPT: What You Need to Know
════════════════════════
𐀪 Author: Very Lazy Tech
════════════════════════
ⴵ Time: Tue, 09 Sep 2025 14:18:38 GMT
════════════════════════
⌗ Tags: #chatgpt #ai_tools #penetration_testing #bug_bounty #cybersecurity
════════════════════════
𐀪 Author: Very Lazy Tech
════════════════════════
ⴵ Time: Tue, 09 Sep 2025 14:18:38 GMT
════════════════════════
⌗ Tags: #chatgpt #ai_tools #penetration_testing #bug_bounty #cybersecurity
Medium
How Hackers Exploit AI Tools Like ChatGPT: What You Need to Know
✨ Link for the full article in the first comment
⤷ Title: Subdomain Takeover
════════════════════════
𐀪 Author: yee-yore
════════════════════════
ⴵ Time: Tue, 09 Sep 2025 13:46:59 GMT
════════════════════════
⌗ Tags: #cybersecurity #osint #red_team #bug_bounty #pentesting
════════════════════════
𐀪 Author: yee-yore
════════════════════════
ⴵ Time: Tue, 09 Sep 2025 13:46:59 GMT
════════════════════════
⌗ Tags: #cybersecurity #osint #red_team #bug_bounty #pentesting
Medium
Subdomain Takeover
Subdomain Takeover Introduction Imagine you’re visiting `blog.example.com`. 1. Browser: "What's the IP address for blog.example.com?" 2. DNS Server: "blog.example.com points to …
⤷ Title: How to Find Hidden Web Vulnerabilities Using FFUF
════════════════════════
𐀪 Author: Ibtissam hammadi
════════════════════════
ⴵ Time: Tue, 09 Sep 2025 13:32:21 GMT
════════════════════════
⌗ Tags: #technology #ffuf #bug_bounty #cybersecurity #hacking
════════════════════════
𐀪 Author: Ibtissam hammadi
════════════════════════
ⴵ Time: Tue, 09 Sep 2025 13:32:21 GMT
════════════════════════
⌗ Tags: #technology #ffuf #bug_bounty #cybersecurity #hacking
Medium
How to Find Hidden Web Vulnerabilities Using FFUF
Go beyond basic commands and learn the techniques that reveal the vulnerabilities others miss.
⤷ Title: Digital Forensics : Recover Deleted Files Using Autopsy
════════════════════════
𐀪 Author: Arrhenius Paelongan
════════════════════════
ⴵ Time: Tue, 09 Sep 2025 10:38:21 GMT
════════════════════════
⌗ Tags: #security #cybersecurity #penetration_testing #bug_bounty #digital_forensics
════════════════════════
𐀪 Author: Arrhenius Paelongan
════════════════════════
ⴵ Time: Tue, 09 Sep 2025 10:38:21 GMT
════════════════════════
⌗ Tags: #security #cybersecurity #penetration_testing #bug_bounty #digital_forensics
Medium
Digital Forensics : Recover Deleted Data Using Autopsy
Introduction
⤷ Title: How I Accidentally Stumbled Upon a Critical Vulnerability (Exposed backup on google storage)
════════════════════════
𐀪 Author: Sirat Sami (analyz3r)
════════════════════════
ⴵ Time: Tue, 09 Sep 2025 10:01:30 GMT
════════════════════════
⌗ Tags: #bug_bounty #cybersecurity #bug_bounty_writeup #bug_bounty_tips #hacking
════════════════════════
𐀪 Author: Sirat Sami (analyz3r)
════════════════════════
ⴵ Time: Tue, 09 Sep 2025 10:01:30 GMT
════════════════════════
⌗ Tags: #bug_bounty #cybersecurity #bug_bounty_writeup #bug_bounty_tips #hacking
Medium
How I Accidentally Stumbled Upon a Critical Vulnerability (Exposed backup on google storage)
Hi everyone, I’m Sirat, a bug hunter and security researcher.
Recently, I released a new tool called Skybrute, which is designed to…
Recently, I released a new tool called Skybrute, which is designed to…
⤷ Title: From Limited Shell to Interactive TTY Shell: A Must-Have Skill for Bug Bounty Hunters
════════════════════════
𐀪 Author: Ali Ziro
════════════════════════
ⴵ Time: Tue, 09 Sep 2025 09:44:07 GMT
════════════════════════
⌗ Tags: #aliziro #shell #cybersecurity #penetration_testing #bug_bounty
════════════════════════
𐀪 Author: Ali Ziro
════════════════════════
ⴵ Time: Tue, 09 Sep 2025 09:44:07 GMT
════════════════════════
⌗ Tags: #aliziro #shell #cybersecurity #penetration_testing #bug_bounty
Medium
🛠 From Limited Shell to Interactive TTY Shell: A Must-Have Skill for Bug Bounty Hunters
During bug bounty hunting, you might exploit a vulnerability such as Command Injection or Remote Code Execution (RCE) and successfully gain…
⤷ Title: BugDB v2
════════════════════════
𐀪 Author: Dasmanish
════════════════════════
ⴵ Time: Tue, 09 Sep 2025 07:47:46 GMT
════════════════════════
⌗ Tags: #ctf_writeup #bug_bounty #hacker101 #graphql
════════════════════════
𐀪 Author: Dasmanish
════════════════════════
ⴵ Time: Tue, 09 Sep 2025 07:47:46 GMT
════════════════════════
⌗ Tags: #ctf_writeup #bug_bounty #hacker101 #graphql
Medium
BugDB v2
HackerOne’s Hacker101 easy level CTF walkthrough
⤷ Title: Secure by Default: Practical Web App Security Checklist
════════════════════════
𐀪 Author: Tera Byte 26
════════════════════════
ⴵ Time: Tue, 09 Sep 2025 17:30:55 GMT
════════════════════════
⌗ Tags: #web_app_security #owasp_2025 #secure_by_default #supply_chain_security #application_security
════════════════════════
𐀪 Author: Tera Byte 26
════════════════════════
ⴵ Time: Tue, 09 Sep 2025 17:30:55 GMT
════════════════════════
⌗ Tags: #web_app_security #owasp_2025 #secure_by_default #supply_chain_security #application_security
Medium
Secure by Default: Practical Web App Security Checklist
Secure by Default: Practical Web App Security Checklist Security that actually gets used is security that fits the size and speed of your team. Secure by default is not a slogan, it is a product …
⤷ Title: PortSwigger Lab — Access Control: URL-Based Access Control Can Be Circumvented
════════════════════════
𐀪 Author: Siddiquimohammad
════════════════════════
ⴵ Time: Tue, 09 Sep 2025 09:08:57 GMT
════════════════════════
⌗ Tags: #broken_access_control #portswigger #burpsuite #application_security #portswigger_lab
════════════════════════
𐀪 Author: Siddiquimohammad
════════════════════════
ⴵ Time: Tue, 09 Sep 2025 09:08:57 GMT
════════════════════════
⌗ Tags: #broken_access_control #portswigger #burpsuite #application_security #portswigger_lab
Medium
PortSwigger Lab — Access Control: URL-Based Access Control Can Be Circumvented
This lab demonstrates how poorly implemented URL-based access control can be bypassed using HTTP headers like X-Original-URL or…
⤷ Title: Portswigger Web Security Academy | Web Cache Deception Lab #1
════════════════════════
𐀪 Author: BooRuleDie
════════════════════════
ⴵ Time: Tue, 09 Sep 2025 04:33:01 GMT
════════════════════════
⌗ Tags: #cybersecurity #web_cache_deception #application_security #web_application_security #portswigger_lab
════════════════════════
𐀪 Author: BooRuleDie
════════════════════════
ⴵ Time: Tue, 09 Sep 2025 04:33:01 GMT
════════════════════════
⌗ Tags: #cybersecurity #web_cache_deception #application_security #web_application_security #portswigger_lab
Medium
Portswigger Web Security Academy | Web Cache Deception Lab #1
Hi all! Today, we’ll be solving the first Web Cache Deception lab of the PortSwigger Web Security Academy. Let’s get started!
⤷ Title: Researchers Uncover Web Application Firewall Bypass Using JavaScript Injection and Parameter…
════════════════════════
𐀪 Author: Jasmitharouthu
════════════════════════
ⴵ Time: Mon, 08 Sep 2025 15:12:32 GMT
════════════════════════
⌗ Tags: #web_security #coe_security #cybersecurity #application_security #threat_intelligence
════════════════════════
𐀪 Author: Jasmitharouthu
════════════════════════
ⴵ Time: Mon, 08 Sep 2025 15:12:32 GMT
════════════════════════
⌗ Tags: #web_security #coe_security #cybersecurity #application_security #threat_intelligence
Medium
Researchers Uncover Web Application Firewall Bypass Using JavaScript Injection and Parameter…
Security researchers have demonstrated a new method to bypass Web Application Firewalls (WAFs) using a combination of JavaScript injection…
⤷ Title: AspGoat: The First Intentionally Vulnerable modern ASP.NET Core App for OWASP Top 10
════════════════════════
𐀪 Author: Soham
════════════════════════
ⴵ Time: Mon, 08 Sep 2025 13:59:58 GMT
════════════════════════
⌗ Tags: #cybersecurity #bug_bounty #ethical_hacking #dotnet #application_security
════════════════════════
𐀪 Author: Soham
════════════════════════
ⴵ Time: Mon, 08 Sep 2025 13:59:58 GMT
════════════════════════
⌗ Tags: #cybersecurity #bug_bounty #ethical_hacking #dotnet #application_security
Medium
AspGoat: The First Intentionally Vulnerable modern ASP.NET Core App for OWASP Top 10
Most intentionally vulnerable applications we know and use for training like DVWA, Juice Shop, and WebGoat are written in PHP , Node.JS…
⤷ Title: Invisible Security Layers in PHP That Kill Most Attacks Instantly
════════════════════════
𐀪 Author: Asian Digital Hub
════════════════════════
ⴵ Time: Mon, 08 Sep 2025 08:28:11 GMT
════════════════════════
⌗ Tags: #cybersecurity #backend_development #web_development #application_security #php
════════════════════════
𐀪 Author: Asian Digital Hub
════════════════════════
ⴵ Time: Mon, 08 Sep 2025 08:28:11 GMT
════════════════════════
⌗ Tags: #cybersecurity #backend_development #web_development #application_security #php
Medium
Invisible Security Layers in PHP That Kill Most Attacks Instantly
Hackers aren’t always looking for the big, cinematic breach. More often, they’re poking around for the lazy gaps - the missed validation…