⤷ Title: Hardcoded Secrets Strike Again: How a Telegram Bot Token Exposed Customer Support and PII
════════════════════════
𐀪 Author: Cameron Bardin (MDVKG)
════════════════════════
ⴵ Time: Thu, 04 Dec 2025 13:27:41 GMT
════════════════════════
⌗ Tags: #web_penetration_testing #owasp #bug_bounty #cybersecurity #penetration_testing
════════════════════════
𐀪 Author: Cameron Bardin (MDVKG)
════════════════════════
ⴵ Time: Thu, 04 Dec 2025 13:27:41 GMT
════════════════════════
⌗ Tags: #web_penetration_testing #owasp #bug_bounty #cybersecurity #penetration_testing
Medium
Hardcoded Secrets Strike Again: How a Telegram Bot Token Exposed Customer Support and PII
When a simple configuration mistake becomes a business-critical security incident.
⤷ Title: 6. Master the Basics, Break the Web: Input & Output Basics
════════════════════════
𐀪 Author: Abinesh M
════════════════════════
ⴵ Time: Thu, 04 Dec 2025 13:02:51 GMT
════════════════════════
⌗ Tags: #bug_bounty #cybersecurity #hacking #pentesting #ethical_hacking
════════════════════════
𐀪 Author: Abinesh M
════════════════════════
ⴵ Time: Thu, 04 Dec 2025 13:02:51 GMT
════════════════════════
⌗ Tags: #bug_bounty #cybersecurity #hacking #pentesting #ethical_hacking
Medium
6. Master the Basics, Break the Web: Input & Output Basics
1. Client-Side Validation vs Server-Side Validation
⤷ Title: Breaking Dailymotion: A Private Video Access Control Bypass (Part1)
════════════════════════
𐀪 Author: Osama
════════════════════════
ⴵ Time: Thu, 04 Dec 2025 12:57:10 GMT
════════════════════════
⌗ Tags: #bug_bounty #web_security #infosec #cybersecurity #bugbounty_writeup
════════════════════════
𐀪 Author: Osama
════════════════════════
ⴵ Time: Thu, 04 Dec 2025 12:57:10 GMT
════════════════════════
⌗ Tags: #bug_bounty #web_security #infosec #cybersecurity #bugbounty_writeup
Medium
Breaking Dailymotion: A Private Video Access Control Bypass (Part1)
Hi, It’s been a while since my last writeup, I hope to stay in touch more consistently from now on, After all One should always share the…
⤷ Title: From Port Forwarding to Attack Blocking: My Practical Firewall Journey
════════════════════════
𐀪 Author: Wesley Santos
════════════════════════
ⴵ Time: Thu, 04 Dec 2025 12:29:21 GMT
════════════════════════
⌗ Tags: #tryhackme #hacking #firewall #cybersecurity #network_security
════════════════════════
𐀪 Author: Wesley Santos
════════════════════════
ⴵ Time: Thu, 04 Dec 2025 12:29:21 GMT
════════════════════════
⌗ Tags: #tryhackme #hacking #firewall #cybersecurity #network_security
Medium
From Port Forwarding to Attack Blocking: My Practical Firewall Journey
From network extension to defense: My practical guide to configuring firewalls to drop malicious traffic, based on a THM room.
⤷ Title: Understanding CWE-656: Reliance on Security Through Obscurity
════════════════════════
𐀪 Author: Walter Moar
════════════════════════
ⴵ Time: Thu, 04 Dec 2025 12:02:14 GMT
════════════════════════
⌗ Tags: #cwe #software_development #cybersecurity #infosec #hacking
════════════════════════
𐀪 Author: Walter Moar
════════════════════════
ⴵ Time: Thu, 04 Dec 2025 12:02:14 GMT
════════════════════════
⌗ Tags: #cwe #software_development #cybersecurity #infosec #hacking
Medium
Understanding CWE-656: Reliance on Security Through Obscurity
Security measures work best when they actively prevent unauthorized access through authentication, encryption, and access controls…
⤷ Title: How I Use Burp Suite Like A Surveillance Tool Instead Of A Scanner
════════════════════════
𐀪 Author: Aeon Flex, Elriel Assoc. 2133 [NEON MAXIMA]
════════════════════════
ⴵ Time: Thu, 04 Dec 2025 13:52:11 GMT
════════════════════════
⌗ Tags: #security #cybersecurity #burpsuite #infosec #hacking
════════════════════════
𐀪 Author: Aeon Flex, Elriel Assoc. 2133 [NEON MAXIMA]
════════════════════════
ⴵ Time: Thu, 04 Dec 2025 13:52:11 GMT
════════════════════════
⌗ Tags: #security #cybersecurity #burpsuite #infosec #hacking
Medium
How I Use Burp Suite Like A Surveillance Tool Instead Of A Scanner
Most people open Burp Suite with one goal: run the scanner and hope it lights up with findings. That is the default workflow. Press start…
⤷ Title: The Lie of “Private AI”: Three Seams in the Vendor’s Promise
════════════════════════
𐀪 Author: Jeremy Tarkington
════════════════════════
ⴵ Time: Thu, 04 Dec 2025 13:16:39 GMT
════════════════════════
⌗ Tags: #cybersecurity #privacy #infosec #ai #cloud
════════════════════════
𐀪 Author: Jeremy Tarkington
════════════════════════
ⴵ Time: Thu, 04 Dec 2025 13:16:39 GMT
════════════════════════
⌗ Tags: #cybersecurity #privacy #infosec #ai #cloud
Medium
The Lie of “Private AI”: Three Seams in the Vendor’s Promise
Every big AI vendor has the same comforting line right now: “Your data is private. We don’t use it to train our models.”
⤷ Title: MONITORING — Advanced, Interesting, and Knowledge-Boosted Walkthrough
════════════════════════
𐀪 Author: IshhIshneet
════════════════════════
ⴵ Time: Thu, 04 Dec 2025 12:34:05 GMT
════════════════════════
⌗ Tags: #walkthrough #nagios #cybersecurity #infosec #meterpreter
════════════════════════
𐀪 Author: IshhIshneet
════════════════════════
ⴵ Time: Thu, 04 Dec 2025 12:34:05 GMT
════════════════════════
⌗ Tags: #walkthrough #nagios #cybersecurity #infosec #meterpreter
Medium
🌌 MONITORING — Advanced, Interesting, and Knowledge-Boosted Walkthrough
A short box… but full of hidden lessons that real penetration testers use every day.
⤷ Title: Mandated Safety or Backdoor Surveillance?
════════════════════════
𐀪 Author: eL Njas!™
════════════════════════
ⴵ Time: Thu, 04 Dec 2025 12:25:12 GMT
════════════════════════
⌗ Tags: #governance #infosec #business #surveillance #india
════════════════════════
𐀪 Author: eL Njas!™
════════════════════════
ⴵ Time: Thu, 04 Dec 2025 12:25:12 GMT
════════════════════════
⌗ Tags: #governance #infosec #business #surveillance #india
Medium
Mandated Safety or Backdoor Surveillance? The Global Debate Over Preloaded Government and Third-Party Apps on Smartphones.
A growing global debate is unfolding at the intersection of cybersecurity, privacy, business ethics, and geopolitics. Governments are…
⤷ Title: The Living SBOM: A Strategic Blueprint for Medical Device and Industrial IoT Cybersecurity
════════════════════════
𐀪 Author: Nitish Gupta
════════════════════════
ⴵ Time: Thu, 04 Dec 2025 13:45:17 GMT
════════════════════════
⌗ Tags: #cloud_security #iot #aws #cybersecurity #digital_twin
════════════════════════
𐀪 Author: Nitish Gupta
════════════════════════
ⴵ Time: Thu, 04 Dec 2025 13:45:17 GMT
════════════════════════
⌗ Tags: #cloud_security #iot #aws #cybersecurity #digital_twin
Medium
The Living SBOM: A Strategic Blueprint for Medical Device and Industrial IoT Cybersecurity
Learn the specific AWS architecture — from Inspector SBOM Export to Athena Querying — to instantly identify CVE impact across EC2, Lambda…
⤷ Title: It’s a new beginning
════════════════════════
𐀪 Author: KEROLESS ADEL
════════════════════════
ⴵ Time: Thu, 04 Dec 2025 13:37:58 GMT
════════════════════════
⌗ Tags: #short_story #new_beginnings #story_time #cybersecurity
════════════════════════
𐀪 Author: KEROLESS ADEL
════════════════════════
ⴵ Time: Thu, 04 Dec 2025 13:37:58 GMT
════════════════════════
⌗ Tags: #short_story #new_beginnings #story_time #cybersecurity
Medium
It’s a new beginning
hello everyone Today it’s a new beginning of my journey into the world of Cyber-security with my self . I’m starting from scratch again …
⤷ Title: PowerShell Empire: A Shape‑Shifting Post‑Exploitation Framework with a Practical Tutorial Example
════════════════════════
𐀪 Author: Youssef El-Sibai
════════════════════════
ⴵ Time: Thu, 04 Dec 2025 13:24:33 GMT
════════════════════════
⌗ Tags: #cybersecurity #penetration_testing_tools #ethical_hacking #powershell_empire #red_team
════════════════════════
𐀪 Author: Youssef El-Sibai
════════════════════════
ⴵ Time: Thu, 04 Dec 2025 13:24:33 GMT
════════════════════════
⌗ Tags: #cybersecurity #penetration_testing_tools #ethical_hacking #powershell_empire #red_team
Medium
PowerShell Empire: A Shape‑Shifting Post‑Exploitation Framework with a Practical Tutorial Example
Executive Summary
⤷ Title: XSS — Apprentice
════════════════════════
𐀪 Author: muhammedenesozel
════════════════════════
ⴵ Time: Thu, 04 Dec 2025 13:21:12 GMT
════════════════════════
⌗ Tags: #cybersecurity #appsec #portswigger #burpsuite #xs
════════════════════════
𐀪 Author: muhammedenesozel
════════════════════════
ⴵ Time: Thu, 04 Dec 2025 13:21:12 GMT
════════════════════════
⌗ Tags: #cybersecurity #appsec #portswigger #burpsuite #xs
Medium
XSS — Apprentice
Bu çalışmada, PortSwigger’ın XSS — Apprentice seviyesindeki lablarında kullanıcı girdisinin istemci tarafındaki veri akışı boyunca nasıl…
⤷ Title: Dream Job-2: : Hack The Box Sherlock Write-Up
════════════════════════
𐀪 Author: Deven Chhajed
════════════════════════
ⴵ Time: Thu, 04 Dec 2025 13:17:55 GMT
════════════════════════
⌗ Tags: #dream_job_2 #cybersecurity #lazarus_group #hackthebox #threat_intelligence
════════════════════════
𐀪 Author: Deven Chhajed
════════════════════════
ⴵ Time: Thu, 04 Dec 2025 13:17:55 GMT
════════════════════════
⌗ Tags: #dream_job_2 #cybersecurity #lazarus_group #hackthebox #threat_intelligence
Medium
Dream Job-2: : Hack The Box Sherlock Write-Up
Sherlock Scenario
⤷ Title: Professional Penetration Testing Agreement: A Comprehensive Framework for Security Testing
════════════════════════
𐀪 Author: Seun odebode
════════════════════════
ⴵ Time: Thu, 04 Dec 2025 13:17:36 GMT
════════════════════════
⌗ Tags: #ethical_hacking #cybersecurity #penetration_testing
════════════════════════
𐀪 Author: Seun odebode
════════════════════════
ⴵ Time: Thu, 04 Dec 2025 13:17:36 GMT
════════════════════════
⌗ Tags: #ethical_hacking #cybersecurity #penetration_testing
Medium
Professional Penetration Testing Agreement: A Comprehensive Framework for Security Testing
Acknowledgments
⤷ Title: Automating the Kill Chain: How I Built a Serverless Incident Response Bot on AWS
════════════════════════
𐀪 Author: Aderinola Taiwo
════════════════════════
ⴵ Time: Thu, 04 Dec 2025 13:13:23 GMT
════════════════════════
⌗ Tags: #devsecops #cloud_computing #cybersecurity #aws #automation
════════════════════════
𐀪 Author: Aderinola Taiwo
════════════════════════
ⴵ Time: Thu, 04 Dec 2025 13:13:23 GMT
════════════════════════
⌗ Tags: #devsecops #cloud_computing #cybersecurity #aws #automation
Medium
Automating the Kill Chain: How I Built a Serverless Incident Response Bot on AWS
I’ve been spending most of my time in Google Cloud (GCP) lately. Why? Because I learn by breaking things. I love the freedom of tearing…
⤷ Title: Day 3 of Advent of Cyber, Splunk Basics — Did you SIEM?
════════════════════════
𐀪 Author: Suhani Panda
════════════════════════
ⴵ Time: Thu, 04 Dec 2025 13:15:35 GMT
════════════════════════
⌗ Tags: #tryhackme #tryhackme_writeup #adventofcyber_4
════════════════════════
𐀪 Author: Suhani Panda
════════════════════════
ⴵ Time: Thu, 04 Dec 2025 13:15:35 GMT
════════════════════════
⌗ Tags: #tryhackme #tryhackme_writeup #adventofcyber_4
Medium
Day 3 of Advent of Cyber, Splunk Basics — Did you SIEM?
Hello everyone, its day 2 of AoC!!!!
⤷ Title: RootMe — TryHackMe Walkthrough
════════════════════════
𐀪 Author: Om Fulsundar
════════════════════════
ⴵ Time: Thu, 04 Dec 2025 12:00:41 GMT
════════════════════════
⌗ Tags: #root_me #tryhackme_walkthrough #tryhackme_writeup #tryhackme #rootme_writeup
════════════════════════
𐀪 Author: Om Fulsundar
════════════════════════
ⴵ Time: Thu, 04 Dec 2025 12:00:41 GMT
════════════════════════
⌗ Tags: #root_me #tryhackme_walkthrough #tryhackme_writeup #tryhackme #rootme_writeup
Medium
RootMe — TryHackMe Walkthrough
The box greets us with a simple line: “Can you root me?” Looks harmless, but we know better. Time to peel back the layers and see what’s…
⤷ Title: Hack The Box Sherlock: Meerkat Write-up
════════════════════════
𐀪 Author: k1ndlov3r
════════════════════════
ⴵ Time: Thu, 04 Dec 2025 12:26:27 GMT
════════════════════════
⌗ Tags: #network_traffic_analysis #mitre_attack_framework #brute_force_attack #wireshark #hackthebox_writeup
════════════════════════
𐀪 Author: k1ndlov3r
════════════════════════
ⴵ Time: Thu, 04 Dec 2025 12:26:27 GMT
════════════════════════
⌗ Tags: #network_traffic_analysis #mitre_attack_framework #brute_force_attack #wireshark #hackthebox_writeup
Medium
Hack The Box Sherlock: Meerkat Write-up
Analyzing Brute-Force Activity Through PCAPs, Zeek Logs, and jq
⤷ Title: SpyCloud Data Shows Corporate Users 3x More Likely to Be Targeted by Phishing Than by Malware
════════════════════════
𐀪 Author: CyberNewswire
════════════════════════
ⴵ Time: Thu, 04 Dec 2025 14:01:30 +0000
════════════════════════
⌗ Tags: #Press Release #Research
════════════════════════
𐀪 Author: CyberNewswire
════════════════════════
ⴵ Time: Thu, 04 Dec 2025 14:01:30 +0000
════════════════════════
⌗ Tags: #Press Release #Research
Hackread
SpyCloud Data Shows Corporate Users 3x More Likely to Be Targeted by Phishing Than by Malware
Follow us on Bluesky, Twitter (X), Mastodon and Facebook at @Hackread
⤷ Title: How I Gained Administrative Access to a Reading Application Through a Critical Vulnerability
════════════════════════
𐀪 Author: Shaman King
════════════════════════
ⴵ Time: Thu, 04 Dec 2025 15:48:05 GMT
════════════════════════
⌗ Tags: #bug_bounty
════════════════════════
𐀪 Author: Shaman King
════════════════════════
ⴵ Time: Thu, 04 Dec 2025 15:48:05 GMT
════════════════════════
⌗ Tags: #bug_bounty
Medium
How I Hacked a Reading App and Gained Admin Privileges
Hi, I’m Atakan. I work as a Security Researcher at HackerOne, and I recently identified a simple, yet highly impactful vulnerability that…