⤷ Title: (BAC)Insecure direct object references
════════════════════════
𐀪 Author: Abdallh Mohamed
════════════════════════
ⴵ Time: Sat, 08 Aug 2026 16:14:39 GMT
════════════════════════
⌗ Tags: #owasp_top_10 #penetration_testing #web_security #broken_access_control #bug_bounty_writeup
════════════════════════
𐀪 Author: Abdallh Mohamed
════════════════════════
ⴵ Time: Sat, 08 Aug 2026 16:14:39 GMT
════════════════════════
⌗ Tags: #owasp_top_10 #penetration_testing #web_security #broken_access_control #bug_bounty_writeup
Medium
(BAC)Insecure direct object references
firstly we explain what of the Insecure direct object references???
⤷ Title: Reading a Website Like a Pentester: What to Test in Every Functionality
════════════════════════
𐀪 Author: Shruti Vijay Shinde
════════════════════════
ⴵ Time: Mon, 10 Aug 2026 07:18:07 GMT
════════════════════════
⌗ Tags: #bug_bounty #ethical_hacking #penetration_testing #web_security #cybersecurity
════════════════════════
𐀪 Author: Shruti Vijay Shinde
════════════════════════
ⴵ Time: Mon, 10 Aug 2026 07:18:07 GMT
════════════════════════
⌗ Tags: #bug_bounty #ethical_hacking #penetration_testing #web_security #cybersecurity
Medium
Reading a Website Like a Pentester: What to Test in Every Functionality
When a normal user opens a web application, they usually focus on what they can do with it search for a product, log in to an account…
⤷ Title: Hacker Holidays Day 2: The Room That Wasn’t on Any Floor Plan
════════════════════════
𐀪 Author: Devyaniitware
════════════════════════
ⴵ Time: Mon, 10 Aug 2026 14:07:10 GMT
════════════════════════
⌗ Tags: #cybersecurity #ctf #web_security #infosec #tryhackme
════════════════════════
𐀪 Author: Devyaniitware
════════════════════════
ⴵ Time: Mon, 10 Aug 2026 14:07:10 GMT
════════════════════════
⌗ Tags: #cybersecurity #ctf #web_security #infosec #tryhackme
Medium
Hacker Holidays Day 2: The Room That Wasn’t on Any Floor Plan
The setup
⤷ Title: Blind SQL Injection with Conditional Responses - PortSwigger Lab Write-Up
════════════════════════
𐀪 Author: Om Barot
════════════════════════
ⴵ Time: Mon, 10 Aug 2026 14:10:57 GMT
════════════════════════
⌗ Tags: #ethical_hacking #web_security_academy #sql_injection #burpsuite #cybersecurity
════════════════════════
𐀪 Author: Om Barot
════════════════════════
ⴵ Time: Mon, 10 Aug 2026 14:10:57 GMT
════════════════════════
⌗ Tags: #ethical_hacking #web_security_academy #sql_injection #burpsuite #cybersecurity
Medium
Blind SQL Injection with Conditional Responses - PortSwigger Lab Write-Up
Introduction
⤷ Title: An Evolution in HTTP: The QUERY Method
════════════════════════
𐀪 Author: PriOFF
════════════════════════
ⴵ Time: Mon, 10 Aug 2026 19:49:42 GMT
════════════════════════
⌗ Tags: #information_security #web_security #api_security #https #cybersecurity
════════════════════════
𐀪 Author: PriOFF
════════════════════════
ⴵ Time: Mon, 10 Aug 2026 19:49:42 GMT
════════════════════════
⌗ Tags: #information_security #web_security #api_security #https #cybersecurity
Medium
An Evolution in HTTP: The QUERY Method
A Brand New HTTP Method That Solved the Complex Problem of the Internet and Became an Evolution
⤷ Title: How Insecure Client-Side State Management Led to a Critical BFLA in a Healthcare Platform
════════════════════════
𐀪 Author: Mohamed Mejahed
════════════════════════
ⴵ Time: Mon, 10 Aug 2026 23:13:53 GMT
════════════════════════
⌗ Tags: #penetration_testing #api_security #owasp_top_10 #application_security #web_security
════════════════════════
𐀪 Author: Mohamed Mejahed
════════════════════════
ⴵ Time: Mon, 10 Aug 2026 23:13:53 GMT
════════════════════════
⌗ Tags: #penetration_testing #api_security #owasp_top_10 #application_security #web_security
Medium
How Insecure Client-Side State Management Led to a Critical BFLA in a Healthcare Platform
During a recent authorized security assessment of a live (Private), AI-powered healthcare management platform, I identified a critical…
⤷ Title: Blind SQL injection with time delays and information retrieval Lab
════════════════════════
𐀪 Author: Hafsa
════════════════════════
ⴵ Time: Tue, 11 Aug 2026 11:22:20 GMT
════════════════════════
⌗ Tags: #blind_sql_injection #sql_injection #web_security #portswigger
════════════════════════
𐀪 Author: Hafsa
════════════════════════
ⴵ Time: Tue, 11 Aug 2026 11:22:20 GMT
════════════════════════
⌗ Tags: #blind_sql_injection #sql_injection #web_security #portswigger
Medium
Blind SQL injection with time delays and information retrieval Lab
This is the walkthrough of portswigger lab: Blind SQL injection with time delays and information retrieval.
⤷ Title: Infinite Money Glitch? How Our Team Generated Infinite Money on a Fortune 100 Financial Site
════════════════════════
𐀪 Author: Broken Access Pentests
════════════════════════
ⴵ Time: Tue, 11 Aug 2026 19:20:33 GMT
════════════════════════
⌗ Tags: #cybersecurity #web_security #bug_bounty #penetration_testing #ai
════════════════════════
𐀪 Author: Broken Access Pentests
════════════════════════
ⴵ Time: Tue, 11 Aug 2026 19:20:33 GMT
════════════════════════
⌗ Tags: #cybersecurity #web_security #bug_bounty #penetration_testing #ai
Medium
Infinite Money Glitch? How Our Team Generated Infinite Money on a Fortune 100 Financial Site
The “Infinite Money” Glitch
⤷ Title: How I Found a Hidden .git Repository and Leaked an Entire Website — TryHackMe Room 404
════════════════════════
𐀪 Author: Souhardya
════════════════════════
ⴵ Time: Tue, 11 Aug 2026 18:05:16 GMT
════════════════════════
⌗ Tags: #tryhackme #cybersecurity #git_security #directory_enumeration #web_security
════════════════════════
𐀪 Author: Souhardya
════════════════════════
ⴵ Time: Tue, 11 Aug 2026 18:05:16 GMT
════════════════════════
⌗ Tags: #tryhackme #cybersecurity #git_security #directory_enumeration #web_security
Medium
How I Found a Hidden .git Repository and Leaked an Entire Website — TryHackMe Room 404
A beginner-friendly walkthrough of how directory enumeration exposed source code, Git history, and a secret left behind in an old commit.
⤷ Title: I Built My Own Hacking Lab Because Watching Cybersecurity Tutorials Was Getting Me Nowhere
════════════════════════
𐀪 Author: Satyam Pathania
════════════════════════
ⴵ Time: Wed, 12 Aug 2026 14:44:22 GMT
════════════════════════
⌗ Tags: #bug_bounty #web_security #ethical_hacking #cybersecurity #homelab
════════════════════════
𐀪 Author: Satyam Pathania
════════════════════════
ⴵ Time: Wed, 12 Aug 2026 14:44:22 GMT
════════════════════════
⌗ Tags: #bug_bounty #web_security #ethical_hacking #cybersecurity #homelab
Medium
I Built My Own Hacking Lab Because Watching Cybersecurity Tutorials Was Getting Me Nowhere
I had watched enough hacking videos to feel like I knew cybersecurity. Then I realized I hadn’t actually built or broken anything myself