⤷ Title: SOC108 — Malicious Remote Access Software Detected
════════════════════════
𐀪 Author: Cyril Philipp Abajar
════════════════════════
ⴵ Time: Thu, 01 May 2025 11:22:21 GMT
════════════════════════
⌗ Tags: #investigation #beginners_guide #technology #cybersecurity #url
════════════════════════
𐀪 Author: Cyril Philipp Abajar
════════════════════════
ⴵ Time: Thu, 01 May 2025 11:22:21 GMT
════════════════════════
⌗ Tags: #investigation #beginners_guide #technology #cybersecurity #url
Medium
SOC108 — Malicious Remote Access Software Detected
Greetings everyone. Today, I will investigate a new alert: ‘SOC108 — Malicious Remote Access Software Detected.’ from LetsDefend SOC…
⤷ Title: URL File Attack in Active Directory and Mitigation
════════════════════════
𐀪 Author: Abdus Satter
════════════════════════
ⴵ Time: Sun, 11 May 2025 09:31:49 GMT
════════════════════════
⌗ Tags: #penetration_testing #url_file_attack #active_directory_security #ads #url
════════════════════════
𐀪 Author: Abdus Satter
════════════════════════
ⴵ Time: Sun, 11 May 2025 09:31:49 GMT
════════════════════════
⌗ Tags: #penetration_testing #url_file_attack #active_directory_security #ads #url
Medium
URL File Attack in Active Directory and Mitigation
Post Compromise AD Attack
⤷ Title: Meet URLShort: The Ultimate URL Shortener, Fuzzer & Payload Injector for Bug Bounty Hunters &…
════════════════════════
𐀪 Author: Neeraj Sah
════════════════════════
ⴵ Time: Tue, 13 May 2025 07:45:51 GMT
════════════════════════
⌗ Tags: #bug_bounty #fuzzing #pentesting #hacking_tools #url_shorteners
════════════════════════
𐀪 Author: Neeraj Sah
════════════════════════
ⴵ Time: Tue, 13 May 2025 07:45:51 GMT
════════════════════════
⌗ Tags: #bug_bounty #fuzzing #pentesting #hacking_tools #url_shorteners
Medium
🔗 Meet URLShort: The Ultimate URL Shortener, Fuzzer & Payload Injector for Bug Bounty Hunters & Devs
🔗 Meet URLShort: The Ultimate URL Shortener, Fuzzer & Payload Injector for Bug Bounty Hunters & Devs
⤷ Title: Discovering an Open Redirect Flaw Using URL Encoding
════════════════════════
𐀪 Author: Ahmad Suhendra
════════════════════════
ⴵ Time: Sun, 25 May 2025 15:52:27 GMT
════════════════════════
⌗ Tags: #url_redirection #penetration_testing #open_redirect #cybersecurity #web_security
════════════════════════
𐀪 Author: Ahmad Suhendra
════════════════════════
ⴵ Time: Sun, 25 May 2025 15:52:27 GMT
════════════════════════
⌗ Tags: #url_redirection #penetration_testing #open_redirect #cybersecurity #web_security
Medium
Discovering an Open Redirect Flaw Using URL Encoding
During routine security reconnaissance on public-facing academic domains, I discovered an Open Redirect vulnerability on a subdomain…
⤷ Title: BFScan: Uncover Hidden URLs, Paths, & Secrets in JAR/WAR/APK Files
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 16 Jun 2025 00:39:27 +0000
════════════════════════
⌗ Tags: #Vulnerability Assessment #apk #application security #BFScan #cybersecurity #HTTP Request Generation #JAR #OpenAPI #Secret Detection #security tool #URL Discovery #WAR
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 16 Jun 2025 00:39:27 +0000
════════════════════════
⌗ Tags: #Vulnerability Assessment #apk #application security #BFScan #cybersecurity #HTTP Request Generation #JAR #OpenAPI #Secret Detection #security tool #URL Discovery #WAR
Penetration Testing Tools
BFScan: Uncover Hidden URLs, Paths, & Secrets in JAR/WAR/APK Files
BFScan is a powerful tool to extract URLs, paths, and secrets from JAR, WAR, and APK files, generating raw HTTP requests and OpenAPI specs for security analysis.
⤷ Title: Investigating Suspicious URLs — Tools that you need to know as SOC Analyst
════════════════════════
𐀪 Author: Ayyappan Subramanian
════════════════════════
ⴵ Time: Tue, 17 Jun 2025 22:23:50 GMT
════════════════════════
⌗ Tags: #engineering #cybersecurity #url_analysis #soc_analyst #network_security
════════════════════════
𐀪 Author: Ayyappan Subramanian
════════════════════════
ⴵ Time: Tue, 17 Jun 2025 22:23:50 GMT
════════════════════════
⌗ Tags: #engineering #cybersecurity #url_analysis #soc_analyst #network_security
Medium
Investigating Suspicious URLs — Tools that you need to know as SOC Analyst
Before discussing different tools that are necessary for the URL analysis, I just want you to walk through the basic anatomy of URL.
⤷ Title: Broken Access Control part-10 : URL-based access control can be circumvented
════════════════════════
𐀪 Author: Ahmad Sopyan
════════════════════════
ⴵ Time: Thu, 03 Jul 2025 14:56:09 GMT
════════════════════════
⌗ Tags: #penetration_testing #url_access_bypass #forced_browsing #broken_access_control #header_injection
════════════════════════
𐀪 Author: Ahmad Sopyan
════════════════════════
ⴵ Time: Thu, 03 Jul 2025 14:56:09 GMT
════════════════════════
⌗ Tags: #penetration_testing #url_access_bypass #forced_browsing #broken_access_control #header_injection
Medium
Broken Access Control part-10 : URL-based access control can be circumvented
Hallo CyberExplorer . . . . . .
⤷ Title: Chrome for iOS Levels Up: New Features Enhance Data Separation for Work and Personal Accounts
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 22 Jul 2025 02:54:42 +0000
════════════════════════
⌗ Tags: #Technology #BYOD #chrome #cybersecurity #Data Separation #enterprise #Google Accounts #ios #IT Management #URL Filtering
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 22 Jul 2025 02:54:42 +0000
════════════════════════
⌗ Tags: #Technology #BYOD #chrome #cybersecurity #Data Separation #enterprise #Google Accounts #ios #IT Management #URL Filtering
Daily CyberSecurity
Chrome for iOS Levels Up: New Features Enhance Data Separation for Work and Personal Accounts
Chrome for iOS now offers enhanced data separation for work and personal Google accounts, alongside new Enterprise controls like URL filtering and audit log streaming for IT.
⤷ Title: How to Investigate Suspicious URLs As a SOC Analyst ?
════════════════════════
𐀪 Author: rkn
════════════════════════
ⴵ Time: Thu, 14 Aug 2025 09:17:15 GMT
════════════════════════
⌗ Tags: #virustotal #url_analysis #soc_analyst #cybersecurity
════════════════════════
𐀪 Author: rkn
════════════════════════
ⴵ Time: Thu, 14 Aug 2025 09:17:15 GMT
════════════════════════
⌗ Tags: #virustotal #url_analysis #soc_analyst #cybersecurity
Medium
How to Investigate Suspicious URLs As a SOC Analyst ?
In today’s digital threat landscape, malicious URLs are among the most commonly used weapons in phishing, malware delivery, and…
⤷ Title: Unraveling a Phishing Spree That Abuses Email Marketing and Cloud Services
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 01 Sep 2025 00:28:49 +0000
════════════════════════
⌗ Tags: #Cybercriminals #cloud services #Credential Theft #cybersecurity #Malvertising #phishing #social engineering #Trustwave #URL redirectors
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 01 Sep 2025 00:28:49 +0000
════════════════════════
⌗ Tags: #Cybercriminals #cloud services #Credential Theft #cybersecurity #Malvertising #phishing #social engineering #Trustwave #URL redirectors
Daily CyberSecurity
Unraveling a Phishing Spree That Abuses Email Marketing and Cloud Services
A new report reveals a rise in phishing campaigns that abuse email marketing platforms and cloud services to evade detection and steal credentials from victims.
⤷ Title: BiDi Swap: A Decade-Old Unicode Flaw Still Enables URL Spoofing
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 22 Sep 2025 00:32:50 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #BiDi Swap #browser security #cybersecurity #phishing attacks #Unicode #URL spoofing #Varonis
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 22 Sep 2025 00:32:50 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #BiDi Swap #browser security #cybersecurity #phishing attacks #Unicode #URL spoofing #Varonis
Daily CyberSecurity
BiDi Swap: A Decade-Old Unicode Flaw Still Enables URL Spoofing
A decade-old browser flaw, "BiDi Swap," allows attackers to craft deceptive URLs for phishing. The bug, found by Varonis, exploits mixed-text direction.
⤷ Title: Using LLMs to Boost Classical Machine Learning URL Classification Models.
════════════════════════
𐀪 Author: Ernest Mugambi
════════════════════════
ⴵ Time: Sat, 27 Sep 2025 17:21:34 GMT
════════════════════════
⌗ Tags: #llm_applications #cybersecurity #model_drift #url_classification #machine_learning
════════════════════════
𐀪 Author: Ernest Mugambi
════════════════════════
ⴵ Time: Sat, 27 Sep 2025 17:21:34 GMT
════════════════════════
⌗ Tags: #llm_applications #cybersecurity #model_drift #url_classification #machine_learning
Medium
Using LLMs to Boost Classical Machine Learning URL Classification Models.
Introduction
⤷ Title: Which Links Are Safe and Which Are Not?
════════════════════════
𐀪 Author: Hassan Khattak
════════════════════════
ⴵ Time: Thu, 23 Oct 2025 11:45:37 GMT
════════════════════════
⌗ Tags: #security #scam #links #cybersecurity #url_shorteners
════════════════════════
𐀪 Author: Hassan Khattak
════════════════════════
ⴵ Time: Thu, 23 Oct 2025 11:45:37 GMT
════════════════════════
⌗ Tags: #security #scam #links #cybersecurity #url_shorteners
Medium
Which Links Are Safe and Which Are Not?
This article is written to raise awareness about the growing threats of cybersecurity and how one small click can sometimes lead to big…
⤷ Title: Apache Tomcat Patches URL Rewrite Bypass (CVE-2025-55752) Risking RCE and Console ANSI Injection
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 28 Oct 2025 01:43:18 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #ANSI Escape #apache Tomcat #CVE_2025_55752 #Denial of Service #rce #URL Rewrite Bypass
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 28 Oct 2025 01:43:18 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #ANSI Escape #apache Tomcat #CVE_2025_55752 #Denial of Service #rce #URL Rewrite Bypass
Daily CyberSecurity
Apache Tomcat Patches URL Rewrite Bypass (CVE-2025-55752) Risking RCE and Console ANSI Injection
Apache patched three flaws in Tomcat 9/10/11: CVE-2025-55752 risks RCE by bypassing security constraints. CVE-2025-55754 allows ANSI escape sequence injection in Windows logs.
⤷ Title: PAN-OS Flaw (CVE-2025-4619) Allows Unauthenticated Firewall Reboot via Single Crafted Packet
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 13 Nov 2025 02:49:16 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2025_4619 #Decrypt Policy #Denial of Service #dos #firewall #Palo Alto Networks #PAN_OS #URL Proxy
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 13 Nov 2025 02:49:16 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2025_4619 #Decrypt Policy #Denial of Service #dos #firewall #Palo Alto Networks #PAN_OS #URL Proxy
Daily CyberSecurity
PAN-OS Flaw (CVE-2025-4619) Allows Unauthenticated Firewall Reboot via Single Crafted Packet
Palo Alto patched a DoS flaw (CVE-2025-4619) in PAN-OS. An unauthenticated attacker can remotely reboot the firewall if URL proxy or decryption policies are enabled.
⤷ Title: PHP 8.5 Released: Pipe Operator & Standards-Compliant URL Handling Arrive
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 24 Nov 2025 02:53:36 +0000
════════════════════════
⌗ Tags: #Technology #Code Readability #Laravel #PHP 8.5 #Pipe Operator #Programming Language #URL Handling #Web Development #WordPress
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 24 Nov 2025 02:53:36 +0000
════════════════════════
⌗ Tags: #Technology #Code Readability #Laravel #PHP 8.5 #Pipe Operator #Programming Language #URL Handling #Web Development #WordPress
Penetration Testing Tools
PHP 8.5 Released: Pipe Operator & Standards-Compliant URL Handling Arrive
PHP 8.5 brings major updates, including the long-awaited Pipe operator for cleaner code chaining and a new URL library for standards-compliant, reliable data handling.
⤷ Title: Lab: URL normalisation |Portswigger
════════════════════════
𐀪 Author: L4V4NY4 AGR3
════════════════════════
ⴵ Time: Tue, 27 Jan 2026 07:28:44 GMT
════════════════════════
⌗ Tags: #xss_vulnerability #portswigger #malicious_url #caches_normalization #url_normalisation
════════════════════════
𐀪 Author: L4V4NY4 AGR3
════════════════════════
ⴵ Time: Tue, 27 Jan 2026 07:28:44 GMT
════════════════════════
⌗ Tags: #xss_vulnerability #portswigger #malicious_url #caches_normalization #url_normalisation
Medium
Lab: URL normalisation |Portswigger
This lab contains an XSS vulnerability that is not directly exploitable due to browser URL-encoding.To solve the lab, take advantage of the…
⤷ Title: The Stealth Oracle: How “Safe” Chrome Extensions Can Reconstruct Your Private URLs Character by Character
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 05 Feb 2026 04:01:26 +0000
════════════════════════
⌗ Tags: #Data Leak #chrome #cyber security news 2026 #declarativeNetRequest #dynamic rules #Manifest V3 #privacy vulnerability #regexFilter #side_channel attack #URL exfiltration #web security
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 05 Feb 2026 04:01:26 +0000
════════════════════════
⌗ Tags: #Data Leak #chrome #cyber security news 2026 #declarativeNetRequest #dynamic rules #Manifest V3 #privacy vulnerability #regexFilter #side_channel attack #URL exfiltration #web security
Penetration Testing Tools
The Stealth Oracle: How "Safe" Chrome Extensions Can Reconstruct Your Private URLs Character by Character
A sophisticated technique has been unearthed within Chrome that permits the exfiltration of the complete URL from any
⤷ Title: URL Encoding Explained: The Complete Beginner-to-Advanced Guide
════════════════════════
𐀪 Author: Ishant Gupta
════════════════════════
ⴵ Time: Mon, 09 Mar 2026 14:22:21 GMT
════════════════════════
⌗ Tags: #ethical_hacking #url_encoding #web_development #cybersecurity #bug_bounty
════════════════════════
𐀪 Author: Ishant Gupta
════════════════════════
ⴵ Time: Mon, 09 Mar 2026 14:22:21 GMT
════════════════════════
⌗ Tags: #ethical_hacking #url_encoding #web_development #cybersecurity #bug_bounty
Medium
URL Encoding Explained: The Complete Beginner-to-Advanced Guide
The internet works because browsers, servers, and applications follow strict rules when communicating. One of the most important — yet…
⤷ Title: How a Single ;/ Bypassed a Cloud WAF and Reached Protected Spring Boot Endpoints
════════════════════════
𐀪 Author: Alareqi
════════════════════════
ⴵ Time: Sun, 10 May 2026 10:17:55 GMT
════════════════════════
⌗ Tags: #bug_bounty #cybersecurity #url #http_request #prompt_injection_attack
════════════════════════
𐀪 Author: Alareqi
════════════════════════
ⴵ Time: Sun, 10 May 2026 10:17:55 GMT
════════════════════════
⌗ Tags: #bug_bounty #cybersecurity #url #http_request #prompt_injection_attack
Medium
How a Single ;/ Bypassed a Cloud WAF and Reached Protected Spring Boot Endpoints
Most WAF bypasses involve encoding tricks, obscure headers, or parser confusion.