⤷ Title: Secure by Default: Practical Web App Security Checklist
════════════════════════
𐀪 Author: Tera Byte 26
════════════════════════
ⴵ Time: Tue, 09 Sep 2025 17:30:55 GMT
════════════════════════
⌗ Tags: #web_app_security #owasp_2025 #secure_by_default #supply_chain_security #application_security
════════════════════════
𐀪 Author: Tera Byte 26
════════════════════════
ⴵ Time: Tue, 09 Sep 2025 17:30:55 GMT
════════════════════════
⌗ Tags: #web_app_security #owasp_2025 #secure_by_default #supply_chain_security #application_security
Medium
Secure by Default: Practical Web App Security Checklist
Secure by Default: Practical Web App Security Checklist Security that actually gets used is security that fits the size and speed of your team. Secure by default is not a slogan, it is a product …
⤷ Title: PortSwigger Lab — Access Control: URL-Based Access Control Can Be Circumvented
════════════════════════
𐀪 Author: Siddiquimohammad
════════════════════════
ⴵ Time: Tue, 09 Sep 2025 09:08:57 GMT
════════════════════════
⌗ Tags: #broken_access_control #portswigger #burpsuite #application_security #portswigger_lab
════════════════════════
𐀪 Author: Siddiquimohammad
════════════════════════
ⴵ Time: Tue, 09 Sep 2025 09:08:57 GMT
════════════════════════
⌗ Tags: #broken_access_control #portswigger #burpsuite #application_security #portswigger_lab
Medium
PortSwigger Lab — Access Control: URL-Based Access Control Can Be Circumvented
This lab demonstrates how poorly implemented URL-based access control can be bypassed using HTTP headers like X-Original-URL or…
⤷ Title: Portswigger Web Security Academy | Web Cache Deception Lab #1
════════════════════════
𐀪 Author: BooRuleDie
════════════════════════
ⴵ Time: Tue, 09 Sep 2025 04:33:01 GMT
════════════════════════
⌗ Tags: #cybersecurity #web_cache_deception #application_security #web_application_security #portswigger_lab
════════════════════════
𐀪 Author: BooRuleDie
════════════════════════
ⴵ Time: Tue, 09 Sep 2025 04:33:01 GMT
════════════════════════
⌗ Tags: #cybersecurity #web_cache_deception #application_security #web_application_security #portswigger_lab
Medium
Portswigger Web Security Academy | Web Cache Deception Lab #1
Hi all! Today, we’ll be solving the first Web Cache Deception lab of the PortSwigger Web Security Academy. Let’s get started!
⤷ Title: Researchers Uncover Web Application Firewall Bypass Using JavaScript Injection and Parameter…
════════════════════════
𐀪 Author: Jasmitharouthu
════════════════════════
ⴵ Time: Mon, 08 Sep 2025 15:12:32 GMT
════════════════════════
⌗ Tags: #web_security #coe_security #cybersecurity #application_security #threat_intelligence
════════════════════════
𐀪 Author: Jasmitharouthu
════════════════════════
ⴵ Time: Mon, 08 Sep 2025 15:12:32 GMT
════════════════════════
⌗ Tags: #web_security #coe_security #cybersecurity #application_security #threat_intelligence
Medium
Researchers Uncover Web Application Firewall Bypass Using JavaScript Injection and Parameter…
Security researchers have demonstrated a new method to bypass Web Application Firewalls (WAFs) using a combination of JavaScript injection…
⤷ Title: AspGoat: The First Intentionally Vulnerable modern ASP.NET Core App for OWASP Top 10
════════════════════════
𐀪 Author: Soham
════════════════════════
ⴵ Time: Mon, 08 Sep 2025 13:59:58 GMT
════════════════════════
⌗ Tags: #cybersecurity #bug_bounty #ethical_hacking #dotnet #application_security
════════════════════════
𐀪 Author: Soham
════════════════════════
ⴵ Time: Mon, 08 Sep 2025 13:59:58 GMT
════════════════════════
⌗ Tags: #cybersecurity #bug_bounty #ethical_hacking #dotnet #application_security
Medium
AspGoat: The First Intentionally Vulnerable modern ASP.NET Core App for OWASP Top 10
Most intentionally vulnerable applications we know and use for training like DVWA, Juice Shop, and WebGoat are written in PHP , Node.JS…
⤷ Title: Invisible Security Layers in PHP That Kill Most Attacks Instantly
════════════════════════
𐀪 Author: Asian Digital Hub
════════════════════════
ⴵ Time: Mon, 08 Sep 2025 08:28:11 GMT
════════════════════════
⌗ Tags: #cybersecurity #backend_development #web_development #application_security #php
════════════════════════
𐀪 Author: Asian Digital Hub
════════════════════════
ⴵ Time: Mon, 08 Sep 2025 08:28:11 GMT
════════════════════════
⌗ Tags: #cybersecurity #backend_development #web_development #application_security #php
Medium
Invisible Security Layers in PHP That Kill Most Attacks Instantly
Hackers aren’t always looking for the big, cinematic breach. More often, they’re poking around for the lazy gaps - the missed validation…
⤷ Title: Secure Coding : Path Traversal ( os.path.join
════════════════════════
𐀪 Author: Siddiquimohammad
════════════════════════
ⴵ Time: Mon, 08 Sep 2025 07:34:28 GMT
════════════════════════
⌗ Tags: #directory_traversal #path_traversal #owasp #secure_coding #application_security
════════════════════════
𐀪 Author: Siddiquimohammad
════════════════════════
ⴵ Time: Mon, 08 Sep 2025 07:34:28 GMT
════════════════════════
⌗ Tags: #directory_traversal #path_traversal #owasp #secure_coding #application_security
Medium
Secure Coding : Path Traversal ( os.path.join )
Modern microservices often expose APIs for downloading reports, logs, or documents.
⤷ Title: My Journey into Mentorship: From AppSecFamily to ADPlist
════════════════════════
𐀪 Author: Mr Madani
════════════════════════
ⴵ Time: Mon, 08 Sep 2025 02:30:19 GMT
════════════════════════
⌗ Tags: #adplist #penetration_testing #application_security #mentoring #cybersecurity
════════════════════════
𐀪 Author: Mr Madani
════════════════════════
ⴵ Time: Mon, 08 Sep 2025 02:30:19 GMT
════════════════════════
⌗ Tags: #adplist #penetration_testing #application_security #mentoring #cybersecurity
Medium
My Journey into Mentorship: From AppSecFamily to ADPlist
Mentorship has always been close to my heart. Over the years of working in cybersecurity particularly in application security and…
⤷ Title: Organising a Clickjacking Attack
════════════════════════
𐀪 Author: Swetha
════════════════════════
ⴵ Time: Tue, 09 Sep 2025 17:00:28 GMT
════════════════════════
⌗ Tags: #webinar #cybersecurity #hacking #clickbait #ctf
════════════════════════
𐀪 Author: Swetha
════════════════════════
ⴵ Time: Tue, 09 Sep 2025 17:00:28 GMT
════════════════════════
⌗ Tags: #webinar #cybersecurity #hacking #clickbait #ctf
Medium
Organising a Clickjacking Attack
and tricking my Audience
⤷ Title: Ukraine Just Pulled the Plug on Russia’s Gas Pumps
════════════════════════
𐀪 Author: Edward Harrington
════════════════════════
ⴵ Time: Tue, 09 Sep 2025 16:54:43 GMT
════════════════════════
⌗ Tags: #ukraine_war #war #technology #hacking #russia
════════════════════════
𐀪 Author: Edward Harrington
════════════════════════
ⴵ Time: Tue, 09 Sep 2025 16:54:43 GMT
════════════════════════
⌗ Tags: #ukraine_war #war #technology #hacking #russia
Medium
Ukraine Just Pulled the Plug on Russia’s Gas Pumps
National Push Your Car to Work Day.
⤷ Title: HTB Vintage Machine Walkthrough | Easy HackTheBox Guide for Beginners
════════════════════════
𐀪 Author: SeverSerenity
════════════════════════
ⴵ Time: Tue, 09 Sep 2025 16:21:02 GMT
════════════════════════
⌗ Tags: #hackthebox #ethical_hacking #hackthebox_walkthrough #hackthebox_writeup #hacking
════════════════════════
𐀪 Author: SeverSerenity
════════════════════════
ⴵ Time: Tue, 09 Sep 2025 16:21:02 GMT
════════════════════════
⌗ Tags: #hackthebox #ethical_hacking #hackthebox_walkthrough #hackthebox_writeup #hacking
Medium
HTB Vintage Machine Walkthrough | Easy HackTheBox Guide for Beginners
Welcome to the WhyWriteUps articles, where we explain every step we made and why we made it. I have been solving machines for quite a bit…
⤷ Title: PG Practice — Bratarina (Linux)
════════════════════════
𐀪 Author: Lepton
════════════════════════
ⴵ Time: Tue, 09 Sep 2025 16:19:10 GMT
════════════════════════
⌗ Tags: #oscp #pentesting #hacking #provinggrounds #penetration_testing
════════════════════════
𐀪 Author: Lepton
════════════════════════
ⴵ Time: Tue, 09 Sep 2025 16:19:10 GMT
════════════════════════
⌗ Tags: #oscp #pentesting #hacking #provinggrounds #penetration_testing
Medium
PG Practice — Bratarina (Linux)
TLDR: Foothold — OpenSMTPD public exploit; Privesc — NIL
⤷ Title: ARTIFICIAL — HTB
════════════════════════
𐀪 Author: H3XH7WK
════════════════════════
ⴵ Time: Tue, 09 Sep 2025 16:06:35 GMT
════════════════════════
⌗ Tags: #hackthebox #cybersecurity #hacking #ctf
════════════════════════
𐀪 Author: H3XH7WK
════════════════════════
ⴵ Time: Tue, 09 Sep 2025 16:06:35 GMT
════════════════════════
⌗ Tags: #hackthebox #cybersecurity #hacking #ctf
Medium
ARTIFICIAL — HTB
RECON 🕵️♂️
⤷ Title: DNS Recon: The Silent Cartographer of Your Network
════════════════════════
𐀪 Author: KeyboardSamurai
════════════════════════
ⴵ Time: Tue, 09 Sep 2025 15:32:39 GMT
════════════════════════
⌗ Tags: #hacking #black_ops #dns_servers #cybersecurity #reconnaissance
════════════════════════
𐀪 Author: KeyboardSamurai
════════════════════════
ⴵ Time: Tue, 09 Sep 2025 15:32:39 GMT
════════════════════════
⌗ Tags: #hacking #black_ops #dns_servers #cybersecurity #reconnaissance
Medium
DNS Recon: The Silent Cartographer of Your Network
When most organizations think of reconnaissance, they imagine noisy port scans or brute-force login attempts hammering their perimeter. Few…
⤷ Title: 5 ways hackers erase their footprints
════════════════════════
𐀪 Author: Khushi Garg
════════════════════════
ⴵ Time: Tue, 09 Sep 2025 15:16:21 GMT
════════════════════════
⌗ Tags: #hacking #digital_footprint #ethical_hacking #cybersecurity #penetration_testing
════════════════════════
𐀪 Author: Khushi Garg
════════════════════════
ⴵ Time: Tue, 09 Sep 2025 15:16:21 GMT
════════════════════════
⌗ Tags: #hacking #digital_footprint #ethical_hacking #cybersecurity #penetration_testing
Medium
5 ways hackers erase their footprints
I understand how lengthy is the process of gathering information and then exploiting and getting access but it is also important to erase…
⤷ Title: NIH wasn’t the sin. Outsourcing every keystroke was.
════════════════════════
𐀪 Author: OKcontract
════════════════════════
ⴵ Time: Tue, 09 Sep 2025 15:12:35 GMT
════════════════════════
⌗ Tags: #hacking #cybersecurity #npm #malware #web3
════════════════════════
𐀪 Author: OKcontract
════════════════════════
ⴵ Time: Tue, 09 Sep 2025 15:12:35 GMT
════════════════════════
⌗ Tags: #hacking #cybersecurity #npm #malware #web3
Medium
NIH wasn’t the sin. Outsourcing every keystroke was.
The latest npm compromise showed how a tiny change deep in a dependency supply chain can rewrite what users see, sign, and send.
⤷ Title: The NPM Hack: A Wake-Up Call for Crypto Privacy and Security
════════════════════════
𐀪 Author: SilentSwap
════════════════════════
ⴵ Time: Tue, 09 Sep 2025 14:53:32 GMT
════════════════════════
⌗ Tags: #hacking #cryptocurrency #npm #blockchain #privacy
════════════════════════
𐀪 Author: SilentSwap
════════════════════════
ⴵ Time: Tue, 09 Sep 2025 14:53:32 GMT
════════════════════════
⌗ Tags: #hacking #cryptocurrency #npm #blockchain #privacy
Medium
The NPM Hack: A Wake-Up Call for Crypto Privacy and Security
In early September 2025, a supply chain attack hit the JavaScript ecosystem, targeting crypto users through the NPM package repository…
⤷ Title: Demystifying Cybersecurity with Real-World Examples
════════════════════════
𐀪 Author: Cyber Security Research
════════════════════════
ⴵ Time: Tue, 09 Sep 2025 16:05:40 GMT
════════════════════════
⌗ Tags: #basics #example #infosec
════════════════════════
𐀪 Author: Cyber Security Research
════════════════════════
ⴵ Time: Tue, 09 Sep 2025 16:05:40 GMT
════════════════════════
⌗ Tags: #basics #example #infosec
Medium
Demystifying Cybersecurity with Real-World Examples
The landscape of digital operations is continuously reshaped by the increasing sophistication of cyber threats, making robust cybersecurity…
⤷ Title: Stealer Logs in 2025: Find Exposed Employee Logins for Your Domain in 2 Minutes
════════════════════════
𐀪 Author: Alexandre Vandamme
════════════════════════
ⴵ Time: Tue, 09 Sep 2025 15:35:41 GMT
════════════════════════
⌗ Tags: #stealer_logs #data_breach #infosec #devsecops #cybersecurity
════════════════════════
𐀪 Author: Alexandre Vandamme
════════════════════════
ⴵ Time: Tue, 09 Sep 2025 15:35:41 GMT
════════════════════════
⌗ Tags: #stealer_logs #data_breach #infosec #devsecops #cybersecurity
Medium
Stealer Logs in 2025: Find Exposed Employee Logins for Your Domain in 2 Minutes
Attackers still start with stealer logs. These dumps contain url:user:pass in plain text. Do a fast 2 minute check:
⤷ Title: How AI is Helping Unmask the Insider Threat
════════════════════════
𐀪 Author: Berend Watchus
════════════════════════
ⴵ Time: Tue, 09 Sep 2025 15:03:36 GMT
════════════════════════
⌗ Tags: #insider_threat #threat_intelligence #cybersecurity #infosec #cybercrime
════════════════════════
𐀪 Author: Berend Watchus
════════════════════════
ⴵ Time: Tue, 09 Sep 2025 15:03:36 GMT
════════════════════════
⌗ Tags: #insider_threat #threat_intelligence #cybersecurity #infosec #cybercrime
Medium
How AI is Helping Unmask the Insider Threat
Author: Berend Watchus September 9, 2025 Blog article
⤷ Title: Mastering Modern Red Teaming Infrastructure — Part 9: SilentMind-AI-C2—Automating…
════════════════════════
𐀪 Author: Faris Faisal 0xFF
════════════════════════
ⴵ Time: Tue, 09 Sep 2025 14:02:37 GMT
════════════════════════
⌗ Tags: #cyberattack #infosec #hacker #offensive_security #cybersecurity
════════════════════════
𐀪 Author: Faris Faisal 0xFF
════════════════════════
ⴵ Time: Tue, 09 Sep 2025 14:02:37 GMT
════════════════════════
⌗ Tags: #cyberattack #infosec #hacker #offensive_security #cybersecurity
Medium
Mastering Modern Red Teaming Infrastructure — Part 9: SilentMind-AI-C2—Automating Post-Exploitation Data Exfiltration with AI-Powered…
In this part of the Mastering Modern Red Teaming Infrastructure series, we introduce SilentMind-AI-C2. an AI-powered Command & Control…