⤷ Title: Writing Custom Exploits: From Vulnerability Discovery to Working PoC
════════════════════════
𐀪 Author: ATNO For Cybersecurity | Hacking
════════════════════════
ⴵ Time: Sun, 02 Aug 2026 11:25:48 GMT
════════════════════════
⌗ Tags: #cybersecurity #bug_bounty #custom_exploit #exploit #ethical_hacking
════════════════════════
𐀪 Author: ATNO For Cybersecurity | Hacking
════════════════════════
ⴵ Time: Sun, 02 Aug 2026 11:25:48 GMT
════════════════════════
⌗ Tags: #cybersecurity #bug_bounty #custom_exploit #exploit #ethical_hacking
Medium
🧨 Writing Custom Exploits: From Vulnerability Discovery to Working PoC
A custom exploit is code you write yourself to demonstrate that a vulnerability is actually exploitable.
⤷ Title: DarkSword Exploit Exposes iOS Vulnerabilities
════════════════════════
𐀪 Author: Nam Phong
════════════════════════
ⴵ Time: Wed, 05 Aug 2026 13:01:40 +0000
════════════════════════
⌗ Tags: #Vulnerability #Censys #cybersecurity #DarkSword #exploit #ios
════════════════════════
𐀪 Author: Nam Phong
════════════════════════
ⴵ Time: Wed, 05 Aug 2026 13:01:40 +0000
════════════════════════
⌗ Tags: #Vulnerability #Censys #cybersecurity #DarkSword #exploit #ios
Information Security News
DarkSword Exploit Exposes iOS Vulnerabilities
The Rise of a New Threat Six iOS vulnerabilities accidentally leaked on GitHub rapidly evolved into a formidable weapon. Now, at least seven independent threat groups actively utilize this exploit…
⤷ Title: EasyStore (Joomla) filter_sortby Pre-Authentication SQL Injection (CVE-2026–65761)
════════════════════════
𐀪 Author: Guidancewhite
════════════════════════
ⴵ Time: Tue, 11 Aug 2026 05:47:01 GMT
════════════════════════
⌗ Tags: #cybersecurity #exploit #security #sql_injection #cve
════════════════════════
𐀪 Author: Guidancewhite
════════════════════════
ⴵ Time: Tue, 11 Aug 2026 05:47:01 GMT
════════════════════════
⌗ Tags: #cybersecurity #exploit #security #sql_injection #cve
Medium
EasyStore (Joomla) filter_sortby Pre-Authentication SQL Injection (CVE-2026–65761)
1. Overview of CVE-2026–65761
⤷ Title: The Complete Pentest Methodology: A Step-by-Step Practical Guide (Part 4)
════════════════════════
𐀪 Author: Abdelrhman mohamed
════════════════════════
ⴵ Time: Wed, 12 Aug 2026 08:39:40 GMT
════════════════════════
⌗ Tags: #binary_exploitation #hacking #exploit_development #purple_team #cybersecurity
════════════════════════
𐀪 Author: Abdelrhman mohamed
════════════════════════
ⴵ Time: Wed, 12 Aug 2026 08:39:40 GMT
════════════════════════
⌗ Tags: #binary_exploitation #hacking #exploit_development #purple_team #cybersecurity
Medium
The Complete Pentest Methodology: A Step-by-Step Practical Guide (Part 4)
“The Fortress - Building the Shield, Breaking Your Own Attack, and Proving the Defense”
⤷ Title: MariaDB 13.0.1-rc RCE: Priv-Esc + Heap UAF + JOP Chain to system()
════════════════════════
𐀪 Author: Guidancewhite
════════════════════════
ⴵ Time: Fri, 14 Aug 2026 04:48:26 GMT
════════════════════════
⌗ Tags: #database #rce #exploit #mariadb
════════════════════════
𐀪 Author: Guidancewhite
════════════════════════
ⴵ Time: Fri, 14 Aug 2026 04:48:26 GMT
════════════════════════
⌗ Tags: #database #rce #exploit #mariadb
Medium
MariaDB 13.0.1-rc RCE: Priv-Esc + Heap UAF + JOP Chain to system()
On the unmodified, stock MariaDB 13.0.1-rc Docker image, a chain of five steps gets an attacker from a low-privilege SQL account all the…
⤷ Title: CVE-2026–39987: Marimo Pre-Authentication Remote Code Execution
════════════════════════
𐀪 Author: Raj Kumar M
════════════════════════
ⴵ Time: Fri, 14 Aug 2026 07:06:54 GMT
════════════════════════
⌗ Tags: #rce #exploit_development #pentesting #cve_2026 #security_research
════════════════════════
𐀪 Author: Raj Kumar M
════════════════════════
ⴵ Time: Fri, 14 Aug 2026 07:06:54 GMT
════════════════════════
⌗ Tags: #rce #exploit_development #pentesting #cve_2026 #security_research
Medium
CVE-2026–39987: Marimo Pre-Authentication Remote Code Execution
CVE-2026–39987 is a critical pre-authentication Remote Code Execution (RCE) vulnerability affecting Marimo, an open-source reactive Python…
⤷ Title: THORChain Exploit Report: The Three-Part Attack
════════════════════════
𐀪 Author: Dan Ikigai
════════════════════════
ⴵ Time: Sat, 15 Aug 2026 14:31:48 GMT
════════════════════════
⌗ Tags: #hacking #cryptocurrency_news #exploit #defi #blockchain_technology
════════════════════════
𐀪 Author: Dan Ikigai
════════════════════════
ⴵ Time: Sat, 15 Aug 2026 14:31:48 GMT
════════════════════════
⌗ Tags: #hacking #cryptocurrency_news #exploit #defi #blockchain_technology
Medium
THORChain Exploit Report: The Three-Part Attack
Cryptographic flaw in THORChain's TSS implementation allowed three vulnerabilities to grant hackers $10.8 million
⤷ Title: Demystifying CVE-2024-38063: Root Cause Analysis, Code Execution, and Lab Setup Guide
════════════════════════
𐀪 Author: Rajumayank
════════════════════════
ⴵ Time: Sun, 06 Sep 2026 14:35:11 GMT
════════════════════════
⌗ Tags: #exploit #infosec #windows #software_engineering #cybersecurity
════════════════════════
𐀪 Author: Rajumayank
════════════════════════
ⴵ Time: Sun, 06 Sep 2026 14:35:11 GMT
════════════════════════
⌗ Tags: #exploit #infosec #windows #software_engineering #cybersecurity
Medium
Demystifying CVE-2024–38063: Root Cause Analysis, Code Execution, and Lab Setup Guide
A comprehensive technical deep dive into the Windows TCP/IP IPv6 RCE bug, featuring root cause analysis and a complete lab setup guide.
⤷ Title: From a Stock GSM-CC Crasher to Heap PC Control on Samsung Shannon.
════════════════════════
𐀪 Author: Raafat Abualazm
════════════════════════
ⴵ Time: Wed, 09 Sep 2026 08:45:23 GMT
════════════════════════
⌗ Tags: #binary_exploitation #exploitation #exploit_development #reverse_engineering #hacking
════════════════════════
𐀪 Author: Raafat Abualazm
════════════════════════
ⴵ Time: Wed, 09 Sep 2026 08:45:23 GMT
════════════════════════
⌗ Tags: #binary_exploitation #exploitation #exploit_development #reverse_engineering #hacking
Medium
From a GSM Heap Crash to Program Counter Control in FirmWire
From a GSM Heap Crash to Program Counter Control in FirmWire This is a prepared-lab walkthrough for turning the SA-RIOT Module 2 heap testcase into two deterministic program-counter (PC) control …
⤷ Title: BlueMoon Exploit Kit Chains Chrome and Windows Zero-Days
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 09 Sep 2026 11:42:59 +0000
════════════════════════
⌗ Tags: #Cybercriminals #BlueMoon #Chrome Zero_Day #Chromium #cyber_espionage #Exploit Kit #TA412
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 09 Sep 2026 11:42:59 +0000
════════════════════════
⌗ Tags: #Cybercriminals #BlueMoon #Chrome Zero_Day #Chromium #cyber_espionage #Exploit Kit #TA412
Daily CyberSecurity
BlueMoon Exploit Kit Chains Chrome and Windows Zero-Days
Proofpoint threat researchers uncovered state-aligned espionage groups deploying zero-day browser exploit chains in late August 2026. Field Details Actor or Group Suspected China-aligned espionage…
⤷ Title: What’s a Hack? It’s Never a Single Vulnerability
════════════════════════
𐀪 Author: SorynTrace
════════════════════════
ⴵ Time: Mon, 14 Sep 2026 17:45:16 GMT
════════════════════════
⌗ Tags: #vulnerability_research #exploit_development #application_security #cybersecurity #reverse_engineering
════════════════════════
𐀪 Author: SorynTrace
════════════════════════
ⴵ Time: Mon, 14 Sep 2026 17:45:16 GMT
════════════════════════
⌗ Tags: #vulnerability_research #exploit_development #application_security #cybersecurity #reverse_engineering
Medium
What’s a Hack? It’s Never a Single Vulnerability
Most people believe that a hack is a single vulnerability that was discovered in a moment of inspiration. Reality is different though.
⤷ Title: I spent a week doing PR for my own game. Here’s what actually happened.
════════════════════════
𐀪 Author: NODE: PROTOCOL
════════════════════════
ⴵ Time: Tue, 15 Sep 2026 07:31:26 GMT
════════════════════════
⌗ Tags: #games #game_development #hacking #indie_game #exploit_development
════════════════════════
𐀪 Author: NODE: PROTOCOL
════════════════════════
ⴵ Time: Tue, 15 Sep 2026 07:31:26 GMT
════════════════════════
⌗ Tags: #games #game_development #hacking #indie_game #exploit_development
Medium
I spent a week doing PR for my own game. Here’s what actually happened.
Hey everyone,
⤷ Title: Gitea 1.7.5 CVE-2019–11229 get RCE by Git Hooks PoC
════════════════════════
𐀪 Author: Marinovharisan
════════════════════════
ⴵ Time: Wed, 16 Sep 2026 11:51:59 GMT
════════════════════════
⌗ Tags: #vulnerability #gitea #git #exploit #rce
════════════════════════
𐀪 Author: Marinovharisan
════════════════════════
ⴵ Time: Wed, 16 Sep 2026 11:51:59 GMT
════════════════════════
⌗ Tags: #vulnerability #gitea #git #exploit #rce
Medium
Gitea 1.7.5 CVE-2019–11229 get RCE by Git Hooks PoC
Gitea version 1.7.5 contains a critical remote code execution vulnerability (CVE-2019–11229) stemming from improper restricted access to…
⤷ Title: Voy a estudiar hacking 12 horas al día durante un año. Y lo voy a grabar todo.
════════════════════════
𐀪 Author: Lagart_Security
════════════════════════
ⴵ Time: Fri, 18 Sep 2026 17:12:04 GMT
════════════════════════
⌗ Tags: #exploit_development #challenge #ciberseguridad #bug_bounty #training
════════════════════════
𐀪 Author: Lagart_Security
════════════════════════
ⴵ Time: Fri, 18 Sep 2026 17:12:04 GMT
════════════════════════
⌗ Tags: #exploit_development #challenge #ciberseguridad #bug_bounty #training
Medium
Voy a estudiar hacking 12 horas al día durante un año. Y lo voy a grabar todo.
El lunes 21 de septiembre de 2026 empiezo. El 21 de septiembre de 2027 termino. Doce horas al día, de lunes a viernes. Más de 3,000 horas…
⤷ Title: Zero-click APV, in a player that auto-plays shared clips
════════════════════════
𐀪 Author: Raafat Abualazm
════════════════════════
ⴵ Time: Mon, 21 Sep 2026 16:24:57 GMT
════════════════════════
⌗ Tags: #android #reverse_engineering #exploit_development #heap_overflow #hacking
════════════════════════
𐀪 Author: Raafat Abualazm
════════════════════════
ⴵ Time: Mon, 21 Sep 2026 16:24:57 GMT
════════════════════════
⌗ Tags: #android #reverse_engineering #exploit_development #heap_overflow #hacking
Medium
Zero-click APV, in a player that auto-plays shared clips
CVE-2026–28618 in StreamBox — the same OpenAPV decoder class as CVE-2026–0006, turned into a heap write against a session object.
⤷ Title: How to Sell Exploits Without Going to Jail
════════════════════════
𐀪 Author: Owais
════════════════════════
ⴵ Time: Tue, 22 Sep 2026 07:31:39 GMT
════════════════════════
⌗ Tags: #hacking #infosec #darkweb #exploit_development #bug_bounty
════════════════════════
𐀪 Author: Owais
════════════════════════
ⴵ Time: Tue, 22 Sep 2026 07:31:39 GMT
════════════════════════
⌗ Tags: #hacking #infosec #darkweb #exploit_development #bug_bounty
Medium
How to Sell Exploits Without Going to Jail 🔓
You found a vulnerability. It’s real. It works. You have a solid proof of concept.
⤷ Title: Where Convenience Forgot to Lock the Door
════════════════════════
𐀪 Author: Aditya Patil
════════════════════════
ⴵ Time: Thu, 24 Sep 2026 17:40:15 GMT
════════════════════════
⌗ Tags: #ai_security #langflow #cybersecurity #rce #exploit
════════════════════════
𐀪 Author: Aditya Patil
════════════════════════
ⴵ Time: Thu, 24 Sep 2026 17:40:15 GMT
════════════════════════
⌗ Tags: #ai_security #langflow #cybersecurity #rce #exploit
Medium
Where Convenience Forgot to Lock the Door
What an unauthenticated RCE in Langflow taught me about hunting bugs in the age of agentic AI
⤷ Title: Daily CyberSecurity Launches CVE Alerts, an Automated Vulnerability Intelligence Service for IT and Security Teams
════════════════════════
𐀪 Author: ddos-admin
════════════════════════
ⴵ Time: Tue, 29 Sep 2026 01:05:24 +0000
════════════════════════
⌗ Tags: #Announcement #CISA KEV #CVE Alerts #CVE_Watch #EPSS #Exploit Intelligence #Free Trial #GitHub Issues #Microsoft Teams #patch management #Reserved CVE #Slack Integration #threat intelligence #vulnerability management
════════════════════════
𐀪 Author: ddos-admin
════════════════════════
ⴵ Time: Tue, 29 Sep 2026 01:05:24 +0000
════════════════════════
⌗ Tags: #Announcement #CISA KEV #CVE Alerts #CVE_Watch #EPSS #Exploit Intelligence #Free Trial #GitHub Issues #Microsoft Teams #patch management #Reserved CVE #Slack Integration #threat intelligence #vulnerability management
Daily CyberSecurity
Daily CyberSecurity Launches CVE Alerts, an Automated Vulnerability Intelligence Service for IT and Security Teams
Daily CyberSecurity, the team behind the CVE-Watchtower vulnerability tracking platform on securityonline.info, today announced the general availability of CVE Alerts, a subscription service that …
⤷ Title: Bitget’s $388 Million Hack: A Technical Post-Mortem and the Road Ahead
════════════════════════
𐀪 Author: TidoEx Insights
════════════════════════
ⴵ Time: Wed, 30 Sep 2026 04:12:25 GMT
════════════════════════
⌗ Tags: #hacking #bitget #exploit #crypto #cryptocurrency
════════════════════════
𐀪 Author: TidoEx Insights
════════════════════════
ⴵ Time: Wed, 30 Sep 2026 04:12:25 GMT
════════════════════════
⌗ Tags: #hacking #bitget #exploit #crypto #cryptocurrency
Medium
Bitget’s $388 Million Hack: A Technical Post-Mortem and the Road Ahead
In one of the most significant security incidents in the cryptocurrency sector this year, centralized exchange Bitget suffered a massive…
⤷ Title: From CVE to PoC: How I Used Claude Code to Create a Custom N-Day Exploit
════════════════════════
𐀪 Author: Will Giles | Cybersecurity
════════════════════════
ⴵ Time: Fri, 02 Oct 2026 17:07:11 GMT
════════════════════════
⌗ Tags: #penetration_testing #cybersecurity #exploit_development #ai_agent #claude_code
════════════════════════
𐀪 Author: Will Giles | Cybersecurity
════════════════════════
ⴵ Time: Fri, 02 Oct 2026 17:07:11 GMT
════════════════════════
⌗ Tags: #penetration_testing #cybersecurity #exploit_development #ai_agent #claude_code
Medium
From CVE to PoC: How I Used Claude Code to Create a Custom N-Day Exploit
How an agentic AI tool turned a public Langflow CVE into a working proof of concept, and why that should worry defenders