Skip to content

rix4uni/medium-writeups

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

46,210 Commits
 
 
 
 
 
 
 
 

Repository files navigation

Time Title Feed IsNew IsToday
Sat, 16 May 2026 00:07:51 GMT Reproducing IF-GUIDE: A Proactive Approach to Detoxifying LLMs security Yes Yes
Sat, 16 May 2026 01:01:00 GMT Shadow AI Is the Breach Your DLP Tool Will Never Catch cybersecurity Yes Yes
Sat, 16 May 2026 01:10:11 GMT LLM Security: Understanding AI as an Attack Surface — A TryHack... cybersecurity Yes Yes
Sat, 16 May 2026 00:07:56 GMT China, Data Centers, AI, Oh my! cybersecurity Yes Yes
Sat, 16 May 2026 01:07:58 GMT Search_path: PostgreSQL’s Quality-of-Life Feature cybersecurity Yes Yes
Sat, 16 May 2026 00:09:02 GMT El Bug Bounty está sentenciado bug-bounty Yes Yes
Sat, 16 May 2026 00:54:48 GMT I Got HyperLink Injection and Breaking a Cryptography Signed Open... bug-bounty, cybersecurity Yes Yes
Sat, 16 May 2026 00:40:11 GMT Why Should You Use a Concrete Vault? cybersecurity Yes Yes
Sat, 16 May 2026 01:02:50 GMT Forensics CTF writeups — Securinets isetZaghouan x isetRades cybersecurity Yes Yes
Mon, 16 Feb 2026 08:42:31 GMT Lab: Exploiting HTTP request smuggling to perform web cache poiso... web-cache-poisoning
Sat, 10 Jan 2026 05:03:45 GMT Lab:Web cache poisoning via an unkeyed query parameter | Portswi... web-cache-poisoning
Wed, 06 May 2026 23:46:09 GMT HTB File Inclusion Skills Assessment — From LFI to RCE (Full Wa... local-file-inclusion
Fri, 03 Apr 2026 08:30:09 GMT Inside The Vault Sentry — How We Detect and Stop API Key Leaks api-key
Mon, 30 Mar 2026 12:28:22 GMT API Access Explained: Everything You Need to Know to Get Started api-key
Fri, 15 May 2026 17:42:58 GMT I Ran a Full Security Audit on MaidLink Before Real Customers Tru... security
Fri, 08 May 2026 16:20:05 GMT Giddy, BCE Token, and Resolv Exploits: $27M Lost to Signature Val... exploit
Wed, 25 Mar 2026 08:34:09 GMT Improper Input Handling Leading to Client Side Code Execution and... vulnerability-disclosure
Wed, 29 Apr 2026 04:45:44 GMT How I Found My First RCE — CVE-2026–37748 remote-code-execution
Wed, 19 Nov 2025 19:44:02 GMT The Pulse of Liquidity: How DorkFi’s Interest Rates Adapt in Re... dorks
Tue, 05 Dec 2023 07:54:40 GMT LFI via SMTP log poisoning log-poisoning
Wed, 16 Jul 2025 12:07:42 GMT Hackers Love This 1979 Protocol (Because It Can’t Defend Itself... censys
Wed, 06 May 2026 13:15:12 GMT Web Application Attack Detection and Alerting with Wazuh (XSS Use... xss-attack
Wed, 10 Dec 2025 12:06:41 GMT Strengthening Web3 Security: Recent Vulnerability Findings from Y... vulnerability-disclosure
Fri, 15 May 2026 06:54:19 GMT Automated Vulnerability Scanning Vs Manual Pentest vapt
Tue, 24 Mar 2026 17:48:00 GMT The Ultimate Bug Bounty Course: From Zero to Advanced Hacker 1 bug-bounty-hunting
Sat, 18 Apr 2026 05:07:38 GMT We’re About to Stop Trusting What We See Online — And AI Is t... cyber-sec
Fri, 15 May 2026 13:09:49 GMT ⚡ Recon → Exploit Pipeline — How I Turn Raw Recon Into Real... bug-bounty, hacking
Sat, 02 May 2026 04:43:46 GMT Copy Fail: Easily gained root access in system. exploit
Fri, 15 May 2026 17:39:36 GMT The Journey of DTRANS Technologies: Building Digital Solutions wi... information-technology
Tue, 05 May 2026 09:32:07 GMT Google Dorks — Advanced Search google-dorking, google-dork
Sun, 19 Apr 2026 11:31:54 GMT Search Engine Discovery & Google Dorking: Turning Google into a R... google-dorking
Sat, 11 Apr 2026 13:56:44 GMT Top Cybersecurity Tools for Beginners: A Complete List (2026) |K... cybersecurity-tools
Mon, 11 May 2026 06:28:13 GMT IMDS İstismarı Nedir? ssrf
Mon, 09 Mar 2026 06:56:21 GMT File Inclusion Vulnerability: Easy concept explanation file-inclusion
Fri, 15 May 2026 22:51:53 GMT The End of Human-Speed Cybersecurity cybersecurity
Fri, 15 May 2026 23:23:22 GMT [TryHackMe: Summit LAB] cybersecurity, information-security
Fri, 15 May 2026 18:04:42 GMT Telegram Investigations for Hacking baby hacking
Fri, 15 May 2026 13:24:11 GMT How cyrillic letters can be used for advanced phishing hacking, cyber-security-awareness
Thu, 14 May 2026 21:41:00 GMT OSCP Dailies: THM — Roasted — Day 2 pentesting
Thu, 07 May 2026 23:40:39 GMT A Critical IDOR That Allowed Me to Delete Any User Account hackerone, bugcrowd
Sun, 26 Jan 2025 19:08:11 GMT Matrix strike’s back against honesty from a power stance web-pentest
Tue, 05 May 2026 22:06:03 GMT LFI Automated Scanning: Finding and Fuzzing with ffuf local-file-inclusion
Fri, 15 May 2026 06:50:19 GMT AI-Discovered 18-Year-Old NGINX Vulnerability: A New Era for Inte... vulnerability
Thu, 29 Jan 2026 21:21:39 GMT Turning Fuzzing Into $2,550: How a Simple Bug Gave Me Access to E... bounties
Sat, 02 May 2026 01:22:29 GMT Penetration Testing Report: Authorized Security Assessment of Bit... pentest
Sun, 03 May 2026 11:10:19 GMT Sistemleri Savunmak İçin Saldırmak – Pentest 101 pentest
Wed, 13 May 2026 12:59:20 GMT Clash of Clans “Downloading Content” Loop — What I Experien... bugs
Fri, 15 May 2026 13:34:32 GMT Why Most Test Cases Don’t Catch Real Bugs bugs
Wed, 13 May 2026 15:53:04 GMT Bugs Work When They Pile Up bugs
Fri, 15 May 2026 19:14:13 GMT Claude Mythos: Why AI-Powered Vulnerability Discovery Changes the... information-security
Fri, 08 May 2026 04:58:23 GMT Write-Up: BugForge Weekly Challenge — FurHire with SSRF ssrf
Fri, 15 May 2026 12:17:26 GMT How Internal Application Paths Were Exposed Without Login web-security, ethical-hacking, application-security
Fri, 15 May 2026 12:18:56 GMT 5 erreurs de cybersécurité que font (presque) tous les particul... hacking
Fri, 15 May 2026 06:32:56 GMT OWASP Application Security Risk 10:2025 A07 Authentication Failur... application-security
Fri, 08 May 2026 20:28:49 GMT The UFO Files Were Never the Real Story information-disclosure
Mon, 04 May 2026 23:53:49 GMT Break The Syntax CTF — Web Challenge 2 Writeup lfi
Mon, 06 Apr 2026 13:55:29 GMT The 7 Golden Rules of Vulnerability Scanning vulnerability-scanning
Fri, 10 Apr 2026 12:32:22 GMT How Soroban’s CAP-0066 Killed My LayerZero Finding bounty-program
Sun, 03 May 2026 14:59:22 GMT Your secrets deserve better than plaintext: why I designed Keyden... api-key
Fri, 15 May 2026 13:31:00 GMT $900 IDOR: Unauthorized Access to Form Attachments via Direct API bug-bounty, infosec, idor
Tue, 05 May 2026 16:22:09 GMT One curl Command Returned Server Credentials — Here Is What I L... bugbounty-writeup
Fri, 10 Nov 2023 03:38:01 GMT Apache error.log advanced Log poisoning RCE log-poisoning
Thu, 14 May 2026 16:51:43 GMT Fragnesia — The next severe linux vulnerability following C... cve
Fri, 15 May 2026 20:32:31 GMT Tic-Tac-Toe information-technology
Fri, 15 May 2026 13:31:09 GMT 7 Cybersecurity Habits Every Senior Engineer Practices (But Never... infosec
Thu, 07 May 2026 01:31:36 GMT Reflected DOM XSS xss-attack
Fri, 15 May 2026 11:26:51 GMT Strix | Open-Source AI for Finding App Vulnerabilities hacking
Tue, 14 Apr 2026 09:57:40 GMT Pentester Lab 06 Writeup recon
Sun, 28 Dec 2025 08:13:44 GMT Subzy Tool subdomain-takeover
Mon, 04 May 2026 17:36:51 GMT The Complete Guide to Managed Cyber Defense: Protecting Your Busi... cyber-sec
Fri, 28 Jun 2024 14:51:14 GMT X-Forwarded HTTP header-ləri : Qısa izah log-poisoning
Thu, 14 May 2026 20:35:07 GMT Remote Process Write Primitive via APC Routines pentesting
Tue, 21 Apr 2026 14:42:50 GMT Web Security Series # 16— Exploiting Local File Inclusion (LFI) file-inclusion
Sun, 05 Apr 2026 13:27:30 GMT The Vault Sentry — A Startup’s Strategic Edge in Cybersecurit... api-key
Fri, 15 May 2026 20:41:03 GMT Defense in Depth: The Art of Never Trusting a Single Wall security
Wed, 13 May 2026 19:57:46 GMT Access to members-only YouTube video content bug-bounty-writeup
Wed, 13 May 2026 05:35:14 GMT PortSwigger Lab -Broken Access Control (URL-based access control ... bug-bounty-writeup
Sun, 10 May 2026 08:12:20 GMT Why Hunter × Hunter Is Still One of the Greatest Anime Ever bug-bounty-hunter
Sat, 07 Mar 2026 04:09:52 GMT Threat Intelligence Investigation — Dropbox Phishing Domain Ana... google-dorking
Wed, 13 May 2026 05:15:24 GMT Fly Faster & Smarter with Beginner RC Airplanes rce
Wed, 29 Apr 2026 16:56:27 GMT When a Git Redirect Carries Your Credentials With It: Finding an ... security-research
Fri, 15 May 2026 22:38:31 GMT XSS Discovery: How Hackers Actually Find Cross-Site Scripting Vul... bug-bounty, penetration-testing, web-security, cross-site-scripting
Wed, 01 Apr 2026 09:33:58 GMT How to earn VDS in Vadeus Network [Rewards Center] bounty-program
Fri, 06 Mar 2026 12:01:01 GMT Salí de compras y terminé en Roma bounty-program
Thu, 14 May 2026 05:59:42 GMT Meet Argus: Local AI Vulnerability Scanner cve
Thu, 08 Jan 2026 09:02:50 GMT osint-Forgotten Ruins bounty $$ bounties
Fri, 08 May 2026 10:26:57 GMT Cross-site Scripting (XSS) in detail.. cross-site-scripting
Fri, 01 May 2026 07:49:18 GMT T̶A̶X̶ WAF Evasion: Escalating User-Controlled Input to Cross... cross-site-scripting
Sun, 10 May 2026 08:30:47 GMT Analysis of CVE-2026–34621: Making dead bugs tell tales exploit
Mon, 11 May 2026 04:05:55 GMT Four Pillars, One Platform: How Cybrium Unifies Code, Cloud, AI, ... pentest
Wed, 18 Mar 2026 14:34:33 GMT File Inclusion Zafiyetleri: LFI ve RFI Nedir, Nasıl Çalışır ... file-inclusion
Fri, 15 May 2026 12:06:15 GMT Broken Access Control in SourceCodester Online Boat Reservation S... web-security, application-security
Tue, 18 Nov 2025 08:33:41 GMT A Chain of Vulnerabilities Leading to Critical Information Disclo... bug-bounty-program
Thu, 11 Sep 2025 22:20:14 GMT It’s Coming: DorkFi Delivers PreFi Rewards Surge dorking
Thu, 14 May 2026 02:21:00 GMT Exploiting Samba RCE (CVE-2017–7494) | Hackviser Labs Walkthro... remote-code-execution
Mon, 04 May 2026 19:18:14 GMT LFI to RCE: Log Poisoning via PHP Sessions and Apache Logs local-file-inclusion
Tue, 24 Mar 2026 07:41:00 GMT How I Built a Directory Listing Site (ToolIndex.net) and What I L... directory-listing
Tue, 28 Apr 2026 20:00:52 GMT Official Blind XSS Platform Update (2026) xss-bypass
Thu, 14 May 2026 00:58:14 GMT JWT, OAuth, and Every Auth Method You’ll Meet in Web App Testin... bug-bounty-writeup
Wed, 29 Apr 2026 13:59:27 GMT Finding an IDOR in Tesla From the Outside bugcrowd
Sat, 02 May 2026 14:02:00 GMT I Received an Official Bug Bounty Certificate from a Major Paymen... bugbounty-writeup
Fri, 17 Apr 2026 04:53:23 GMT How I Found an Exposed Google Maps API Key on a Global Brand’s ... vdp
Thu, 30 Apr 2026 22:03:21 GMT How to learn Autopsy quickly to pass any exams cybersecurity-tools
Thu, 23 Apr 2026 14:41:01 GMT Stop Learning — Start Mastering These Cybersecurity Tools in 20... cybersecurity-tools
Fri, 15 May 2026 13:10:12 GMT My Experience with PIPA: Practical IoT Penetration Associate penetration-testing
Fri, 15 May 2026 12:37:51 GMT I Watched an AI Hack a Home Network in Under 10 Minutes hacking
Fri, 15 May 2026 17:18:48 GMT TruthTrace: Securing Digital Evidence with Cryptography & Forensi... information-security
Wed, 13 May 2026 13:30:11 GMT CVE-2021–36942'den CVE-2025–33073'e: Self-Relay Saldırısı cve
Fri, 15 May 2026 17:48:35 GMT Beyond XSS and SQLi: Why Business Logic Is the Real Frontier of W... penetration-testing
Fri, 24 Apr 2026 15:44:54 GMT File Inclusion local-file-inclusion
Fri, 19 Sep 2025 07:40:16 GMT How I Tracked Our Clients’ Device Versions Without Direct Repor... zoomeye
Thu, 29 Jan 2026 05:03:15 GMT Subdomain Takeover: Understanding, Detecting, and Recovering from... subdomain-takeover
Fri, 15 May 2026 17:46:01 GMT Unseen vulnerability
Fri, 23 May 2025 06:02:53 GMT Search Skills censys
Thu, 19 Mar 2026 22:46:44 GMT How I Earned $76,000 From a Single Program on Bugcrowd bugcrowd
Fri, 15 May 2026 14:15:45 GMT Kerberoasting Attack — Simple Overview & Practical Walkthrough penetration-testing
Wed, 08 Apr 2026 22:09:58 GMT How I Discovered a Blind SQL Injection in a Private program bugcrowd
Wed, 25 Feb 2026 01:47:45 GMT How I Found a Path Traversal in the Rancher Dashboard via HAR Rep... web-pentest
Tue, 12 May 2026 09:55:50 GMT Critical PHP SOAP Vulnerabilities Put Web Applications at Risk of... remote-code-execution
Tue, 18 Nov 2025 18:12:40 GMT Dork Labs Awarded AWS Activate Startup Grant dorks
Thu, 16 Apr 2026 10:24:30 GMT Why Every Business Needs a Penetration Test in 2026 pentest
Sat, 09 May 2026 23:55:54 GMT Earn Up To $200 Creating Content About Crypto Payments With Kivor... bounty-program
Fri, 15 May 2026 09:44:38 GMT the darkness i kept finding vulnerability
Tue, 31 Mar 2026 07:57:14 GMT How I Test API Keys Using Only Burp Suite api-key
Fri, 08 May 2026 05:05:14 GMT VAPT Services Explained, What Every Company Should Know vapt
Sun, 19 Apr 2026 15:57:12 GMT XSS Bypass urlparse filter evasion in Python xss-bypass
Fri, 01 May 2026 09:40:56 GMT Excessive Data Exposure Leading to Unauthorized Access to Paid Fe... vulnerability-disclosure
Mon, 11 May 2026 19:04:42 GMT Uber Eats BOLA (IDOR) Vulnerability | $2,000 Bounty | Technical... bug-bounty-tips, idor
Mon, 13 Apr 2026 03:31:01 GMT Google Dorks Google Ko Bana Do Apna Hacking Tool: Free Mein Bugs ... google-dork, github-dorking
Thu, 30 Apr 2026 20:08:40 GMT IDOR via Weak JWT Validation Leading to Unauthorized Data Access information-disclosure
Sat, 14 Mar 2026 18:06:12 GMT Web Security Series #3 — Discovering Credentials Using Cluster ... bug-bounty-hunting
Sun, 08 Mar 2026 11:01:01 GMT I Paid $500 for AI Directory Listings. Here Is My Honest ROI Brea... directory-listing
Fri, 15 May 2026 08:56:31 GMT A Georgian Psychotherapist, Medium, and the Power of Being Seen vulnerability
Mon, 04 May 2026 18:17:58 GMT SSRF to Remote Java SPI Plugin Injection leading to RCE rce, ssrf
Fri, 15 May 2026 08:36:10 GMT The Hackers Labs Writeup — Hackeando al Hacker (Spanish) pentesting
Fri, 15 May 2026 14:24:57 GMT Introducing GreyNod Labs penetration-testing, web-security
Fri, 15 May 2026 17:05:39 GMT A Pentester’s Journey to 2nd Place at DEF CON Azure IR Training penetration-testing
Sun, 17 Aug 2025 19:26:05 GMT bug-bounty-program
Wed, 13 May 2026 07:15:59 GMT Exploit Sederhana Pada Server Metasploitable exploit
Mon, 04 May 2026 07:35:39 GMT CPDoS via Content Negotiation Mechanism web-cache-poisoning
Wed, 21 Jan 2026 15:09:15 GMT Lab: Weak isolation on dual-use endpoint | Portswigger web-cache-poisoning
Fri, 27 Mar 2026 11:58:55 GMT Why Beginners Fail in Bug Bounty (And How to Fix It in 2026) bug-bounty-hunter
Thu, 19 Feb 2026 12:53:45 GMT Lab: Web cache poisoning via HTTP/2 request tunnelling | Portswi... web-cache-poisoning
Tue, 05 May 2026 22:33:08 GMT CVE‑2026‑22679: Weaver E‑cology RCE rce
Mon, 04 May 2026 19:01:35 GMT LFI to RCE: Weaponizing File Uploads with PHP Shells local-file-inclusion
Sun, 15 Feb 2026 09:26:13 GMT TryHackMe Walkthrough -Subdomain Enumeration subdomain-enumeration
Sat, 11 Apr 2026 09:59:14 GMT The Symmetry of Recon: Active vs. Passive Discovery in Bug Bounty shodan
Sat, 02 May 2026 15:14:37 GMT Signature Bypass via Control Character Injection → Arbitrary F... bugbounty-writeup
Fri, 15 May 2026 18:55:05 GMT Hacking AI APIs: A Bug Bounty Hunter’s Complete Guide to LLM Vu... ethical-hacking
Fri, 12 Dec 2025 06:49:56 GMT How Variable Data Technology is Transforming Postcard & Brochure ... vdp
Sat, 09 May 2026 19:12:03 GMT Automating Angry Birds Transformers in 2026: A Deep Dive into ABT... exploit
Sun, 03 May 2026 03:59:58 GMT Metaspliotable 2 via ftp exploit
Fri, 19 Dec 2025 20:23:57 GMT How I Found an Unauthenticated XXE That Allowed Arbitrary File Re... vulnerability-disclosure
Mon, 06 Apr 2026 21:37:15 GMT Walkthrough: Executing Local File Inclusion and Remote Code Execu... local-file-inclusion
Sun, 23 Feb 2025 11:17:25 GMT $1000-$10k worth Leaks via Github Secret Dorks github-dorking
Fri, 01 May 2026 12:41:01 GMT How I Found Sensitive Data Exposure on Screenly’s API — A Bug... bugbounty-writeup, information-disclosure
Fri, 25 Jul 2025 16:41:01 GMT ️ SubDNS-UI: Build Your Own Subdomain + DNS Enumerator with a C... subdomain-enumeration
Sat, 02 May 2026 16:49:25 GMT Beyond the Ping: Mastering Nmap for Network Reconnaissance in 202... vulnerability-scanning
Wed, 13 May 2026 16:01:01 GMT Mapleton (LFI to RCE) WebVerse rce, lfi
Sun, 10 May 2026 13:57:56 GMT Furhire (SSRF) (Weekly) Bugforge.io ssrf
Fri, 15 May 2026 17:54:27 GMT NGINX Rift: An 18-Year-Old Bug, Found by AI in One Click vulnerability, web-security
Fri, 24 Jan 2025 09:34:52 GMT A new Holistic temple opening InLeeds web-pentest
Thu, 20 Nov 2025 17:16:47 GMT The Health Factor: How DorkFi Keeps Your Position Safe dorks
Mon, 11 May 2026 18:49:45 GMT Six locks on a 256-byte secret: reverse-engineering an Android fa... security-research
Mon, 02 Mar 2026 00:00:27 GMT TakeOver | TryHackMe Write-up subdomain-takeover
Thu, 25 Dec 2025 00:47:15 GMT Subdomain Takeover Explained: Complete Step-by-Step Guide (Recon ... subdomain-takeover
Fri, 15 May 2026 22:03:57 GMT Five for Friday: May 15, 2026 infosec, information-security
Tue, 05 May 2026 04:50:20 GMT Everyone is talking about AI taking people’s jobs and even repl... hackerone
Fri, 10 Apr 2026 14:53:24 GMT The Ultimate Guide to Proxying and Pentesting MCP Servers!! pentest
Fri, 15 May 2026 17:58:48 GMT Essential Cloud Security Terms Every Beginner Should Know information-security
Fri, 15 May 2026 14:01:00 GMT Blue Team Labs Online — Phishing Analysis cyber-security-awareness
Fri, 15 May 2026 17:27:34 GMT Mass Government Website-Defacement Networks cyber-security-awareness
Sun, 12 Apr 2026 12:29:45 GMT პიროვნების ძიების სრული... google-dork
Thu, 14 May 2026 15:38:47 GMT NGINX Rift (CVE-2026-42945): The Bug That’s Been Hiding Since 2... remote-code-execution, cve
Sun, 17 Aug 2025 17:58:45 GMT $$$ How I Exploited a Business Logic Flaw to Slash Product Prices... bug-bounty-program
Wed, 29 Apr 2026 20:58:20 GMT Laboratorio de vulnerabilidades en el lado del cliente xss-vulnerability
Tue, 28 Apr 2026 07:09:41 GMT owockibot: The Bounty Board Powering the Agent Economy bounty-program
Fri, 01 May 2026 18:00:35 GMT Copy Fail: The 732-Byte Exploit That Roots Nearly a Decade of Lin... exploit
Thu, 14 May 2026 00:18:27 GMT The Story of 45+ Stored XSS Bugs cross-site-scripting
Wed, 05 Nov 2025 12:42:46 GMT How I Hacked Bank’s Admin Portal vdp
Sat, 09 May 2026 02:26:22 GMT How I Discovered a Reflected XSS Vulnerability on a Major German ... xss-attack, cross-site-scripting, xss-vulnerability, xss-bypass
Thu, 14 May 2026 17:02:56 GMT How-To Series: AI-Assisted Security Review of Commits and Merge R... application-security
Thu, 26 Mar 2026 00:32:02 GMT Révolution Lumière lfi
Thu, 07 May 2026 11:31:50 GMT OWASP Top 10 #1: Broken Access Control — The Most Exploited Web... idor
Mon, 04 May 2026 10:25:50 GMT IDOR | TryHackMe idor
Sun, 22 Mar 2026 10:40:15 GMT DVWA: File Inclusion Vulnerability (Low Security) file-inclusion
Fri, 15 May 2026 19:23:39 GMT How Industrial-Scale AI is Rewriting the Cyber Conflict Playbook vulnerability
Mon, 04 May 2026 16:05:38 GMT CVE-2026–31431 — Privilege Escalation via AEAD Crypto Socket... exploit
Sun, 03 May 2026 07:01:01 GMT Sprocket Line (RXSS) WebVerse xss-vulnerability
Fri, 15 May 2026 15:38:00 GMT Contract Manager : quelles compétences et comment les acquérir ... information-technology
Mon, 27 Apr 2026 20:32:13 GMT When Features Do More Than They Should bugcrowd
Fri, 15 May 2026 09:04:48 GMT Urgent Alert: Critical Microsoft Exchange Server Vulnerability (C... vulnerability
Mon, 11 May 2026 10:10:03 GMT Is This The End of Cybersecurity? security-research
Mon, 11 Dec 2023 18:17:01 GMT Exploiting a Log Poisoning. log-poisoning
Fri, 27 Mar 2026 11:01:08 GMT Finding XSS Through HTML Injection — Without Fuzzing Tools xss-bypass
Fri, 17 Apr 2026 15:39:41 GMT Bug Bounty 2026: Why the “End of the World” is Actually a $50... bounties
Fri, 15 May 2026 21:41:33 GMT Trending Articles in IT Chronicles This Month information-technology
Wed, 08 Apr 2026 13:31:24 GMT Hunting on Flipkart: When Product Specs Become Payloads google-dork
Fri, 06 Jun 2025 15:47:21 GMT ️‍♂️ GitHub Dorking for Bug Bounty: Hackers' Hidden Playg... github-dorking
Tue, 17 Mar 2026 09:18:53 GMT Web Security Series #6 — Exploiting SQL Injection to Extract Se... bug-bounty-hunting
Mon, 16 Mar 2026 18:05:08 GMT xss0r V6 is Finally Released! xss-bypass
Mon, 11 May 2026 04:25:50 GMT Google Dorking for Beginners: Ghosting the Network google-dorking
Tue, 12 May 2026 18:31:00 GMT It’s not a bug, it’s a feature bugs
Sun, 07 Dec 2025 06:18:32 GMT Breaking the Perimeter: How My Custom Python Tool Bypassed a Fede... vdp
Fri, 15 May 2026 13:53:32 GMT Why “We Passed VAPT” Doesn’t Mean You’re Secure vulnerability
Wed, 13 May 2026 08:34:01 GMT Cross-Site Scripting(XSS- A Web Application Vulnerability) cross-site-scripting
Wed, 06 May 2026 11:36:01 GMT Google Dorking google-dorking, dorking
Thu, 30 Apr 2026 15:04:04 GMT I Almost Scrolled Past This URL… Then I Got Curious local-file-inclusion, lfi
Sat, 02 Aug 2025 14:15:23 GMT The Silent Risk in Your ICS: Why S7 Protocol Needs Security Atten... censys
Fri, 15 May 2026 13:46:06 GMT Fake Drugs Online: Why Counterfeit Pharmaceuticals Are Growing infosec
Wed, 11 Feb 2026 21:37:40 GMT From Course Notes to CVE: How a GXPN Study Session Uncovered a 40... vulnerability-disclosure
Thu, 14 May 2026 17:57:19 GMT XSS(Cross-Site Scripting) zafiyeti: giriş çıkışlara dikkat! xss-attack
Thu, 07 May 2026 06:41:01 GMT Github Dorking dorking, github-dorking
Sun, 03 May 2026 06:17:38 GMT SQL Injection Vulnerability file-upload
Fri, 15 May 2026 11:31:00 GMT Galaxy Dash (IDOR) Bugforge.io hacking, idor
Fri, 08 May 2026 09:52:18 GMT When Bug Bounty Hunting Hit Me Back: How Losing $500 Led Me to a ... web-cache-poisoning
Sat, 11 Apr 2026 05:12:45 GMT Pentester Labs Recon 02 Writeup recon
Fri, 15 May 2026 19:20:23 GMT The Silent Exit: How to Safely Disengage from a Romance Scammer i... security
Fri, 15 May 2026 15:19:44 GMT CISSP Chapter 2 — Part 3: The Most Expensive Attack Path Often ... infosec
Sun, 03 May 2026 11:01:27 GMT Parameter Index Manipulation Leading to Unauthorized Field Inject... hackerone
Fri, 13 Mar 2026 02:31:00 GMT How I Use Google Dorking to Find Hidden Vulnerabilities google-dorking, google-dork
Fri, 15 May 2026 16:43:09 GMT HOW TO RECOVER STOLEN CRYPTOCURRENCY / HIRE A HACKER WHO CAN HELP... cyber-security-awareness
Fri, 24 Jan 2025 00:08:47 GMT A majestic temple opportunity of wellbeing and wellness web-pentest
Sat, 02 May 2026 07:21:38 GMT TryHackMe (THM) Agent T Walkthrough rce
Fri, 15 May 2026 19:28:45 GMT How Can Construction Security Guards in London Prevent Site Theft... security
Wed, 29 Apr 2026 14:47:41 GMT The Dorking Manifesto: Uncovering the Hidden Web google-dorking
Thu, 20 Nov 2025 09:45:04 GMT Timber Doors in Surrey: Style, Durability, and Value Explained dorking
Fri, 17 Apr 2026 15:51:57 GMT The 2026 Shodan Dork Bible: Finding Exposed Jenkins, Grafana, and... google-dork, shodan
Tue, 21 Apr 2026 10:47:26 GMT Validating My External Attack Surface: A Production-Ready Nuclei ... vulnerability-scanning
Sun, 14 Dec 2025 06:37:06 GMT My Bug Bounty Diary subdomain-enumeration
Fri, 20 Mar 2026 05:45:47 GMT Cloudflare WAF Bypass Leading to Reflected XSS via SVG Injection xss-bypass
Fri, 15 May 2026 18:22:33 GMT Event Security Services in London — Everything You Need to Know security
Fri, 15 May 2026 20:43:51 GMT The Cosmic Exception: When the Universe Divides by Zero bugs
Thu, 07 May 2026 06:04:52 GMT Understanding Injection Attacks: A Deep Dive into SQL Injection w... xss-attack
Fri, 15 May 2026 15:46:07 GMT Cylab Challenge (PicoCTF) Old session ethical-hacking
Mon, 13 Apr 2026 06:37:51 GMT File Inclusion on DVWA local-file-inclusion, file-inclusion
Fri, 15 May 2026 08:27:03 GMT Neighbour Write Up TryHackMe web-security
Thu, 07 May 2026 07:48:49 GMT SSRF: Making Servers Attack Themselves ssrf
Sun, 12 Apr 2026 10:48:18 GMT Ubah Keterampilan Anda Menjadi ALPH: Panduan Hadiah Alphland bounty-program
Sun, 10 May 2026 22:24:11 GMT Remote Code Execution via Insecure Deserialization in Wazuh XDR/S... rce
Fri, 15 May 2026 11:11:00 GMT Industrial Cybersecurity: Protect Manufacturing Systems cyber-security-awareness
Sat, 09 May 2026 13:22:15 GMT Is Your Network Orchestration Layer a Single Point of Failure Wai... vapt
Mon, 04 May 2026 12:56:26 GMT Beyond alert(1): Advanced XSS Payload Crafting, Filter Bypasses &... xss-bypass
Tue, 12 May 2026 16:52:41 GMT The Most Dangerous Bugs Aren’t in Your Code — They’re in Yo... bug-bounty-tips, bugs, bug-bounty-writeup
Tue, 05 May 2026 05:22:22 GMT JBoss 6 RCE Exploitation and Privilege Escalation via Misconfigur... rce
Sun, 13 Jul 2025 16:32:21 GMT ProConOS Exposed: What ICS Security Teams Need to Know censys
Wed, 18 Feb 2026 21:56:48 GMT Chapter 14: Subdomain Takeover subdomain-takeover
Mon, 04 May 2026 14:48:00 GMT I Found 150+ Vulnerabilities in DeFi Protocols. Here’s Why I C... bounties
Tue, 05 May 2026 17:12:25 GMT Escalating Self-XSS with Disk Cache xss-attack
Mon, 04 May 2026 07:21:47 GMT A Missed Bug that caused a Major Breach: Lessons from Lovable Hac... hackerone
Sat, 25 Apr 2026 09:18:33 GMT Bug Bounty Series — Part 3 (HTTP Parameter Pollution) bug-bounty-hunter
Wed, 13 May 2026 10:48:14 GMT OWASP Top 10 #5 — Security Misconfiguration ⚙️ vapt
Fri, 15 May 2026 17:07:45 GMT The Security Spending Shift cve
Fri, 15 May 2026 16:19:08 GMT Data Breaches Explained Simply: What They Are, How They Happen, ... information-security
Tue, 12 May 2026 11:37:21 GMT One Endpoint, One Mistake, One Catastrophe bug-bounty-tips
Mon, 06 Apr 2026 21:45:53 GMT Cookie(Çerez) Türleri ve Pentest Açısından Önemi web-pentest
Wed, 18 Mar 2026 10:03:26 GMT Web Security Series #7 — Exploiting Blind SQL Injection via Ses... bug-bounty-hunting
Thu, 13 Feb 2025 03:29:37 GMT ZoomEye Meets DeepSeek: AI-Powered Cyberspace Intelligence zoomeye
Fri, 20 Feb 2026 14:44:02 GMT XSS Attack Methodology: How Attackers Actually Exploit Your Brows... xss-bypass
Fri, 15 May 2026 08:10:30 GMT How to Conduct a Data Protection Impact Assessment (DPIA) in Keny... infosec
Sat, 11 Apr 2026 18:05:11 GMT Ha0ker is the online identity of Gagandeep Singh, a professional ... bugcrowd
Sat, 21 Mar 2026 20:37:31 GMT Using Nmap Scanner vulnerability-scanning
Thu, 30 Apr 2026 03:16:01 GMT Discovering a Stored XSS Vulnerability in a Blog Feature (Respons... xss-vulnerability
Mon, 26 Jan 2026 07:25:06 GMT How Forgotten DNS Records Lead to Subdomain Takeovers subdomain-takeover
Sat, 06 Dec 2025 17:05:14 GMT GitHub Pages Subdomain Takeover on aiaa-dpw.larc.nasa.gov (NASA V... subdomain-takeover
Fri, 15 May 2026 19:50:37 GMT Architecture Does Not Evolve. It Breaks. information-technology
Thu, 07 May 2026 08:48:21 GMT Driving Operational Value Through Multi Agent Orchestration cybersecurity-tools
Wed, 18 Feb 2026 01:09:03 GMT cURL’s Bug Bounty Is Dead. AI Killed It. bounty-program
Tue, 14 Apr 2026 17:24:57 GMT PAM Cleanup in Practice: Discovery, Risk Triage and Lifecycle Gov... cyber-sec
Wed, 30 Apr 2025 17:08:29 GMT Exploring Subdomains: What They Are and How to Find Them subdomain-enumeration
Fri, 01 May 2026 18:07:44 GMT How I Turned $3 Into 8 Paid Bugs bug-bounty-hunter
Wed, 14 Jan 2026 09:06:30 GMT Lab: Web cache poisoning via an unkeyed query string | Portswige... web-cache-poisoning
Wed, 06 May 2026 22:28:25 GMT The New Architecture of Trust in an Era of Persistent Cyber Warfa... pentest
Fri, 01 Aug 2025 06:17:06 GMT 15,000 Critical Systems Are Exposed — Thanks to This Outdat... censys
Thu, 14 May 2026 17:01:01 GMT Technical Evidence Summary Counterfeit Android Smartphone pentesting
Wed, 17 Dec 2025 09:57:30 GMT The Mother Lode: Hacking with GitHub Dorking github-dorking
Mon, 27 Apr 2026 04:11:56 GMT Cloudflare R2 + Custom Domain file-upload
Fri, 15 May 2026 14:29:03 GMT The MCP package looked clean. The installed tree did not. application-security, security-research
Wed, 01 Apr 2026 18:43:56 GMT Lab: SQL injection attack, listing the database contents on Oracl... web-pentest
Fri, 01 May 2026 20:49:29 GMT Stop Hardcoding Bytes: file-upload
Sun, 26 Apr 2026 16:31:24 GMT ️‍♂️ How I Find Critical Data Leaks Using Just Google Sea... google-dork
Tue, 12 May 2026 16:06:35 GMT From Viewer to Admin — Breaking Organization Isolation in a VDP... bug-bounty-tips, bug-bounty-writeup
Fri, 17 Apr 2026 19:01:54 GMT The Ultimate Guide to Wayback Machine Dorking for Deleted Leaks google-dorking, dorking
Mon, 27 Apr 2026 18:53:00 GMT We Are the Ones We Have Been Waiting For information-disclosure
Wed, 25 Mar 2026 10:55:24 GMT METASPLOIT EXPLOIT |TRYHACKME PREMIUM cyber-sec
Fri, 15 May 2026 20:28:49 GMT When your neighbor on the quantum cloud can tell you’re working infosec
Thu, 14 May 2026 15:08:54 GMT [Writeup] Chaining IDOR to Full Account Takeover (ATO) via Emai... bug-bounty-writeup
Tue, 05 May 2026 11:11:00 GMT Zero-Click ATO: How a Single Accent Mark Led to Account Takeovers hackerone
Mon, 27 Jan 2025 16:51:28 GMT The man who suffered 11 years in hell for freedom has now been fr... web-pentest
Mon, 11 May 2026 12:21:16 GMT OWASP Top 10 #4: Insecure Design — When Applications Are Built ... vapt
Thu, 30 Apr 2026 04:43:43 GMT Intigriti April 2026 XSS Challenge Writeup bugbounty-writeup
Thu, 14 May 2026 01:01:00 GMT The attack vector your entire security team hasn’t modeled yet ... cve
Thu, 02 Apr 2026 17:35:36 GMT How I Found a Subdomain Takeover via BetterUptime subdomain-takeover
Sat, 25 Oct 2025 12:23:25 GMT How to find leaks on GitHub as a beginner. Logic is main key github-dorking
Fri, 15 May 2026 15:53:43 GMT ​Why Ethical Hacking Matters Today hacking, ethical-hacking
Thu, 30 Apr 2026 14:25:30 GMT How I Use AI to Find Bugs Faster — My Full AI-Augmented Bug Bou... bugbounty-writeup
Fri, 27 Mar 2026 03:29:10 GMT TryHackMe — File Inclusion (Walkthrough) file-inclusion
Fri, 15 May 2026 22:10:06 GMT Security Hardening GitHub Workflows at Scale security
Wed, 28 Jan 2026 07:31:37 GMT Lab: Targeted web cache poisoning using an unknown header | Port... web-cache-poisoning
Fri, 08 May 2026 05:58:10 GMT An Easy IDOR on a Banking App (Hosted on Azure — Laternal Movem... hackerone
Tue, 14 Apr 2026 16:41:14 GMT Is Bug Bounty a Good Long-Term Career? The Reality in 2026 bug-bounty-hunter
Mon, 04 May 2026 11:34:52 GMT How I Found XSS by Understanding Context xss-vulnerability
Tue, 12 May 2026 17:55:36 GMT Wild Bounty Showdown PG Soft: Rahsia Maxwin Cowboy & Pola Gacor T... bounties
Fri, 15 May 2026 22:28:40 GMT Jira Knows the Filename. It Has No Idea What Is Inside the File. information-security
Fri, 15 May 2026 10:25:05 GMT New Malware Framework Enables Screen Control, Browser Artifact Th... cyber-security-awareness
Mon, 04 May 2026 12:16:22 GMT Upload file and fill up HTML form with express multer backend file-upload
Fri, 15 May 2026 13:32:59 GMT I Mistyped a URL and a Hacker Set Up Camp in My Browser hacking
Sat, 02 May 2026 13:19:31 GMT Understanding SSRF: Concepts, Patterns and Practical Exploitation ssrf
Tue, 21 Apr 2026 17:44:36 GMT TuesdayTool 44: ThreatCaddy: A Modern Approach to Threat Intellig... cybersecurity-tools
Fri, 15 May 2026 17:36:42 GMT Hack Smarter: Martini hacking
Thu, 14 May 2026 05:40:55 GMT Hunting Hidden Endpoints with Wayback URL Fetcher hackerone, bugbounty-writeup
Sat, 11 Apr 2026 05:28:40 GMT Pentester Recon 03 Write Up recon
Sat, 04 Apr 2026 09:10:35 GMT We’ve messed up, a lot. Here’s Why Scribble Still Exists to c... bounties
Fri, 15 May 2026 11:41:42 GMT Improper Session Invalidation in Online Boat Reservation System u... web-security, vapt
Wed, 12 Feb 2025 22:46:35 GMT https://www.express.co.uk/life-style/property/2012927/cleaning-ch... web-pentest
Fri, 08 May 2026 08:02:20 GMT Unauthenticated RCE via WebLogic WLS-WSAT (CVE-2019–2725) remote-code-execution
Tue, 14 Apr 2026 10:19:13 GMT Pentester Lab Recon 07 Writeup recon
Fri, 15 May 2026 14:44:58 GMT Dentro de los proveedores de Internet: acerca de MPLS y L3VPN information-technology
Fri, 15 May 2026 12:17:33 GMT AI Security: The Growing Cybersecurity Challenge in 2026 cyber-security-awareness
Tue, 12 May 2026 14:49:27 GMT Side Quest: “Copy Fail” security-research
Tue, 23 Sep 2025 13:01:51 GMT Why Email Marketing Is the Secret Growth Tool for Directory Websi... directory-listing
Tue, 28 Apr 2026 21:23:12 GMT Prototype Pollution xss-vulnerability
Tue, 10 Mar 2026 09:59:23 GMT I Thought I Found 259 Exposed Systems in Bengaluru… I Was Wrong shodan
Fri, 15 May 2026 09:48:14 GMT RASP Root Detection Bypass application-security
Mon, 04 May 2026 10:31:01 GMT Breaking Down CVE-2026–31431 (“Copy Fail”): What You Need t... exploit
Sat, 28 Feb 2026 21:11:37 GMT I Shouldn’t Be Sharing This: The 2026 Google Dork Bible That St... google-dork
Fri, 15 May 2026 18:32:03 GMT Pragmatic CSP for a Static Site on Cloudflare security
Fri, 15 May 2026 18:08:56 GMT My First Cybersecurity Lab Setup My First Cybersecurity Lab Setup... information-security, ethical-hacking
Mon, 06 Apr 2026 10:39:59 GMT Bug Bounty / Web Application Security Hunting Checklist - 2026 XS... bug-bounty-hunter
Mon, 02 Feb 2026 17:05:37 GMT Lab: Web cache poisoning to exploit a DOM vulnerability via a cac... web-cache-poisoning
Sun, 15 Mar 2026 16:45:35 GMT Web Security Series #4 — Discovering Unauthorized Resources via... bug-bounty-hunting
Fri, 15 May 2026 17:39:52 GMT Business Logic Vulnerabilities bug-bounty, web-security
Wed, 13 May 2026 22:00:19 GMT The Mathematics of the Other information-disclosure
Tue, 05 May 2026 22:10:53 GMT LFI Prevention: How to Actually Fix File Inclusion Vulnerabilitie... local-file-inclusion
Fri, 08 May 2026 11:04:27 GMT BUGTROTTER: Kali-in-Docker as MCP — AI-Driven AD Red Teaming vapt
Tue, 05 Aug 2025 00:19:11 GMT Breaking Recon with AMASS subdomain-enumeration
Fri, 15 May 2026 09:58:40 GMT How we used Burpsuite MCP with Antigravity AI to exploit a Supaba... pentesting
Fri, 15 May 2026 13:13:58 GMT Stop Trusting Your LLM’s Markdown: Prompt Injection Is the New ... xss-attack
Thu, 27 Mar 2025 23:46:11 GMT Make Break and Betrayal web-pentest
Sat, 20 Apr 2024 17:20:58 GMT TryHackMe — Brute Walkthrough | TheHiker log-poisoning
Thu, 28 Sep 2023 23:05:39 GMT Archangel — TryHackMe log-poisoning
Tue, 15 Jul 2025 12:15:58 GMT “Secure” OPC UA Setups Are Being Hacked — Here’s Why censys
Sun, 03 May 2026 09:14:45 GMT The Ghost in the Machine: A Bug Bounty Short Story recon
Tue, 24 Feb 2026 07:38:15 GMT Glassdoor’s IDOR vulnerability to retrieve email addresses of a... bounty-program
Mon, 11 May 2026 15:38:29 GMT Bug Bounty Automation with n8n Ep. 2 bug-bounty-tips
Fri, 15 May 2026 06:43:03 GMT My friend the ladybug bugs
Thu, 07 May 2026 16:39:17 GMT Host Header Injection — How I Manipulated Session Cookie Domain... bugbounty-writeup
Thu, 14 May 2026 11:00:57 GMT Fragnesia (CVE-2026–46300) — New Linux Kernel Vulnerability G... exploit, cve
Thu, 09 Apr 2026 17:39:27 GMT From 401 to BAC: How a Refresh Broke Workspace Authorization vulnerability-disclosure
Fri, 08 May 2026 22:12:35 GMT Write-up — Blind SSRF with Shellshock Exploitation ssrf
Sat, 25 Apr 2026 14:46:05 GMT File Inclusion— Skills Assesment (HTB) file-inclusion
Fri, 15 May 2026 13:52:22 GMT How to Connect Burp Suite to Claude AI on Mac Using MCP penetration-testing
Fri, 15 May 2026 19:43:53 GMT The Groups Behind Modern Cybercrime cyber-security-awareness
Fri, 24 Apr 2026 18:01:11 GMT Signed, Vulnerable, and Still Dangerous: What a BYOVD Research Pr... security-research
Fri, 29 Aug 2025 04:43:21 GMT 9. The Secret Power of Google Dorking dorking
Tue, 28 Apr 2026 11:47:05 GMT What Tools Do Cyber Security Experts Actually Use Every Day? (And... cybersecurity-tools
Fri, 24 Apr 2026 06:09:47 GMT Is Web Filtering Quietly Controlling Your Online Experience Witho... cybersecurity-tools
Mon, 27 Apr 2026 06:17:15 GMT Upload รูปภาพขึ้น Google Cloud Storage แบ... file-upload
Mon, 30 Mar 2026 06:03:13 GMT Why Business Directory Listings Are the Secret Weapon of Off-Page... directory-listing
Sun, 05 Apr 2026 20:11:41 GMT I Tried Logging In… and Accidentally Did Responsible Disclosure... vdp
Sun, 03 May 2026 07:35:55 GMT Your AI Stack is Publicly Searchable bugbounty-writeup
Sun, 10 May 2026 06:59:45 GMT When a Simple ‘git push’ Becomes Dangerous: Lessons from the ... remote-code-execution
Tue, 23 Sep 2025 06:36:22 GMT Mengamankan File Sensitif & Directory Listing website dengan .ht... directory-listing
Fri, 15 May 2026 17:21:27 GMT Oversharing di Media Sosial: Kebiasaan Sepele yang Bisa Mengancam... information-security
Wed, 13 May 2026 03:56:29 GMT Cross-Tenant Authorization Bypass bug-bounty-hunter
Sun, 03 May 2026 19:06:32 GMT Hacker101 CTF Walkthrough — A Little Something to Get You Start... hackerone
Thu, 02 Oct 2025 06:59:46 GMT Endless Cashback Glitch:How I Unlocked Unlimited Free Orders with... bug-bounty-program
Sun, 24 Aug 2025 20:18:55 GMT How I found an Account Lockout Vulnerability Without Any Tools bug-bounty-program
Thu, 05 Mar 2026 21:41:26 GMT Finding a P1 in NASA: The Power of Google Dorking google-dork
Tue, 21 Apr 2026 12:21:13 GMT 95% of PII Redaction Doesn’t Need an LLM. The Other 5% Is Where... information-disclosure
Wed, 13 May 2026 23:11:19 GMT The Lethal Trifecta: How AI Agents With Tool Access Turn Prompt I... rce, cyber-sec
Sat, 28 Mar 2026 08:13:46 GMT How Exposed n8n Webhooks Become an Attack Surface shodan
Tue, 21 Apr 2026 04:56:55 GMT Before You Test Anything, Understand What the System Is Protectin... bug-bounty-hunter
Mon, 16 Mar 2026 14:32:42 GMT Web Security Series #5 — Exploiting Broken Access Control via T... bug-bounty-hunting
Wed, 03 Dec 2025 23:26:26 GMT TryHackMe-TakeOver-WriteUp subdomain-takeover
Tue, 12 May 2026 23:12:26 GMT Atlantis Technology Beneath the Sphinx? information-disclosure
Fri, 08 May 2026 22:01:34 GMT AI Is Breaking the Two Rules That Kept the Internet Safe — And ... vulnerability-disclosure
Sun, 05 Apr 2026 08:08:21 GMT How I Built an Automated Recon Pipeline for Bug Bounty Hunting recon
Fri, 15 May 2026 20:28:08 GMT Bug Bounty in 2026 Isn’t About Hacking Harder It’s About Thin... bug-bounty, bug-bounty-tips
Tue, 12 May 2026 15:55:58 GMT Critical Authentication Flaw — Grants Full WordPress Admin Acce... bug-bounty-tips, bug-bounty-writeup
Fri, 13 Mar 2026 14:55:26 GMT Web Security Series #2 — Bypassing Authentication via MFA Tampe... bug-bounty-hunting
Sun, 21 Sep 2025 03:55:56 GMT Is it easy to discover a critical vulnerability [P1] ? directory-listing
Sat, 09 May 2026 10:01:40 GMT Shodan.io | TryHackMe shodan
Fri, 15 May 2026 19:21:00 GMT How a Single JavaScript File Bypassed a $1.5B Multi-Sig: Anatomy ... security
Wed, 13 May 2026 13:34:08 GMT HackTheBox — Kobold Writeup | CVE-2026–23520|MCPJam RCE|Do... rce
Mon, 03 Nov 2025 19:42:12 GMT Announcing DorkFi Go-Live Date: Liquidity is Coming dorks
Tue, 18 Nov 2025 13:26:47 GMT GitHub Dorking: The Hunter’s Guide to Finding Secrets in Public... github-dorking
Sat, 09 May 2026 01:31:00 GMT Your Server Is Showing Everything It Shouldn’t -The Apache Dire... directory-listing
Wed, 29 Apr 2026 14:14:58 GMT Part 2 : Cross-Site Scripting (XSS) xss-vulnerability, xss-bypass
Fri, 11 Jul 2025 16:20:24 GMT PC WORX: The Hidden Risk in Your Industrial Network censys
Fri, 01 May 2026 22:04:53 GMT From Source Code Review To Critical Vulnerability — Critical Fi... hackerone
Fri, 01 May 2026 15:14:40 GMT Stored XSS to Privilege Escalation in Azuriom CMS — When “Tru... cross-site-scripting
Tue, 12 May 2026 15:22:36 GMT Explorando Remote Code Execution (RCE) no WordPress rce
Wed, 13 May 2026 07:37:16 GMT How to Find Subdomains Using Shodan and the Favicon Hash Trick bug-bounty-tips, subdomain-enumeration, shodan, recon
Sat, 14 Mar 2026 01:59:36 GMT LFI/RFI lfi
Thu, 04 Dec 2025 04:45:36 GMT What is Google Dorking? dorking
Fri, 15 May 2026 12:18:45 GMT The Trojan PR: Achieving Code Execution in GitHub Actions via Pip... infosec, ethical-hacking
Fri, 15 May 2026 18:44:54 GMT What the TanStack Supply Chain Attack Means for Engineering Teams... information-security
Wed, 06 May 2026 10:26:18 GMT Upload Vulnerabilities | TryHackMe remote-code-execution
Mon, 04 May 2026 18:31:01 GMT Nmap: How Hackers “See” Your Network Before Attacking It vulnerability-scanning
Tue, 28 Apr 2026 16:40:18 GMT How I Discovered a Cognito Misconfiguration That Bypassed Corpora... security-research
Fri, 15 May 2026 18:31:14 GMT One Smiley Face, One Root Shell: The vsftpd 2.3.4 Backdoor in Met... penetration-testing, infosec, ethical-hacking
Fri, 15 May 2026 08:33:13 GMT The Nightmare of Security: Open Source Dependencies and Supply Ch... application-security
Thu, 07 May 2026 15:59:11 GMT CTF Solution: Information Disclosure and Privilege Escalation on ... information-disclosure
Thu, 16 Apr 2026 11:14:18 GMT Finance in Nigeria Just Moved to WhatsApp bounty-program
Fri, 15 May 2026 21:43:31 GMT You Don’t Have a Security Problem — You Have a Visibility Pro... security
Fri, 15 May 2026 06:43:25 GMT AI Tarafından Keşfedilen 18 Yıllık NGINX Açığı: İnternet... vulnerability
Thu, 09 Oct 2025 18:33:05 GMT 0-click Account Takeover via Punycode bug-bounty-program
Thu, 14 May 2026 10:41:58 GMT Understanding VAPT (Vulnerability Assessment and Penetration Test... vapt
Mon, 06 Apr 2026 18:35:09 GMT Manual vs Automated Security Testing in the Age of AI: A Security... vulnerability-scanning
Sat, 02 May 2026 14:24:34 GMT Analytic Tools cyber-sec
Sat, 04 Apr 2026 17:32:35 GMT How I Earned $200 in 5 Minutes Using a Simple Broken Link Hijack... bug-bounty-hunter
Sun, 03 May 2026 18:55:57 GMT LFI to RCE: Remote File Inclusion and How Servers Execute Your Sh... local-file-inclusion
Sat, 04 Apr 2026 04:41:46 GMT OpenTofu Security Scanner: How to Catch Misconfigurations Before ... vulnerability-scanning
Fri, 20 Mar 2026 23:01:01 GMT How I Automated Google Dorking with a Simple Bookmarklet google-dorking
Fri, 15 May 2026 15:53:56 GMT Walkthrough: Remediating Vulnerabilities Found with OpenVAS and N... vulnerability-scanning
Tue, 05 May 2026 18:07:02 GMT LAB: Insecure Direct Object References (IDOR) idor
Wed, 08 Apr 2026 08:46:11 GMT Practical JavaScript Recon for Bug Bounty: A Real-World Passive-F... recon
Fri, 20 Mar 2026 11:44:04 GMT #Searchlight OSINT Writeup google-dorking
Thu, 30 Apr 2026 02:04:17 GMT From Recon to Letter of Recognition | NASA VDP bugcrowd
Thu, 13 Mar 2025 18:09:56 GMT How I Found Sensitive Information using Github Dorks in Bug Bount... github-dorking
Fri, 15 May 2026 14:47:17 GMT Laporan Praktikum Struktur Data : Graph information-technology
Sun, 15 Mar 2026 11:14:38 GMT Local File Inclusion (LFI) in Leave Application System (PHP & SQL... lfi
Thu, 09 Apr 2026 17:40:41 GMT I Got Tired of Running 15 Different Nmap Commands. So I Built My ... vulnerability-scanning
Sun, 22 Oct 2023 19:57:30 GMT Performing a Log Poisoning Attack log-poisoning
Fri, 15 May 2026 12:48:09 GMT When .. Costs You Everything: A Path Traversal in Gemini CLI's Sk... bug-bounty
Fri, 01 May 2026 17:43:46 GMT TryHackMe (THM) MD2PDF Walkthrough ssrf
Wed, 29 Apr 2026 12:52:39 GMT Build a Simple File Upload Website Using Azure Blob Storage file-upload
Thu, 02 Apr 2026 18:59:50 GMT File Inclusion (LFI/RFI) — Extracting Sensitive Data from confi... file-inclusion
Sun, 10 May 2026 13:23:04 GMT Google XSS game report xss-vulnerability
Thu, 14 May 2026 14:26:29 GMT How I Turned a ‘Low Severity’ Reflected XSS into Full Account... bug-bounty-writeup
Fri, 01 May 2026 16:26:26 GMT ️ 什麼是 Cross-Site Scripting (XSS)? cross-site-scripting
Fri, 06 Feb 2026 06:33:08 GMT 5 Ways to Bypass Email Verification Without Using Any Tool bug-bounty-program
Thu, 14 Aug 2025 10:08:18 GMT Predictive Analytics and Voice Technology: A Winning Combination ... vdp
Mon, 17 Nov 2025 23:45:18 GMT DorkFi: The Triumph of a Team You Can Trust dorks
Sat, 20 Dec 2025 18:21:40 GMT N0aziXss SubSpectre: Advanced Subdomain Discovery with Intelligen... subdomain-enumeration
Tue, 28 Apr 2026 13:18:20 GMT 25 Open-Source Cybersecurity Tools That Work Even When Your Budge... cybersecurity-tools
Mon, 27 Apr 2026 02:31:01 GMT AI for Frontend Developers — Day 37 file-upload
Wed, 06 May 2026 11:30:53 GMT How Local Business Directory Listing Helps Attract Local Customer... directory-listing
Sun, 10 May 2026 04:47:12 GMT The Mathematics of the Other information-disclosure
Fri, 15 May 2026 14:28:46 GMT Why Most IT Problems Are Actually Coordination Problems information-technology
Tue, 10 Feb 2026 23:04:46 GMT Effective Dorking Tools dorking
Sat, 06 Dec 2025 23:06:15 GMT Big News from DorkFi — PreFi Rewards Drop + Contest Live! dorks
Tue, 04 Nov 2025 07:31:55 GMT Google Dorking dorks
Thu, 12 Mar 2026 18:11:47 GMT A Simple P4 Bug That Ended as Duplicate bug-bounty-hunting
Tue, 12 May 2026 07:31:21 GMT DarkSword: Building a Browser-Based C2 for iOS Research security-research, cve
Sun, 21 Sep 2025 07:02:30 GMT Affordable but Vulnerable? The Dark Side of CMORE HMI censys
Thu, 14 May 2026 16:21:22 GMT How a Simple Search Parameter Exposed a Potential XSS Vulnerabili... xss-attack, cross-site-scripting, xss-vulnerability
Tue, 23 Dec 2025 06:58:24 GMT How I Found Vulnerabilities in NASA and Got into the Hall of Fame vulnerability-disclosure
Mon, 20 Apr 2026 13:01:27 GMT AI-Driven Penetration Testing: Integrating Kali Linux Arsenal wit... pentest
Fri, 15 May 2026 09:04:08 GMT The ABCs of Cybersecurity: Everything You Need to Know About CVE,... cve
Fri, 15 May 2026 20:45:19 GMT TeraBox Downloader Extension (2026) Complete Guide for Faster Clo... information-technology
Fri, 15 May 2026 01:51:43 GMT AdStrike v5.0: The AI Agent That Automates the Full Active Direct... pentesting
Sun, 03 May 2026 15:05:29 GMT File Upload and Download in Spring Boot (MultipartFile + Resource... file-upload
Mon, 16 Feb 2026 14:31:00 GMT BOUNTY | HTB | Windows |Walkthrough | Write up bounties
Mon, 11 May 2026 22:00:29 GMT I found a secret door into an admin panel — and got paid $750 f... bug-bounty-tips
Fri, 15 May 2026 13:38:01 GMT Identity-Based Attacks and Incident Response: What Security Teams... cyber-security-awareness
Tue, 12 May 2026 01:31:25 GMT UltraVNC < 1.8.1.2- Unsafe CreateProcess Call Enables Arbitrary E... remote-code-execution
Fri, 31 May 2024 13:29:16 GMT Map of the worlds best URLs 2025 log-poisoning
Fri, 01 May 2026 20:23:15 GMT Shodan Facet Searches That Read Like Threat Intel Poetry shodan
Thu, 02 Apr 2026 12:05:48 GMT IoT Cihazlar: Evinizde ki Yabancı shodan
Fri, 15 May 2026 17:01:39 GMT Will AI Create the Next Generation of Malware? ethical-hacking, cyber-security-awareness
Fri, 15 May 2026 12:14:09 GMT Penetration Testing Training Guide for Cyber Security Careers penetration-testing
Wed, 29 Apr 2026 18:17:30 GMT The Rise of Hackbots: How AI Is Transforming Cybersecurity hackerone
Fri, 15 May 2026 16:03:15 GMT Secure by Design: Building Cybersecurity Into Technology From the... application-security
Fri, 09 Jan 2026 05:50:02 GMT Caches, Edge, and Exploits web-cache-poisoning
Tue, 14 Apr 2026 13:07:05 GMT My “Gemini” Is Named Mike dorks
Thu, 19 Mar 2026 22:19:50 GMT Vulnerability Scanning 101: How to Manage Your Vulnerabilities vulnerability-scanning
Sun, 26 Apr 2026 23:11:15 GMT From Data Dumping to Bug Hunting: Building a Recon Pipeline That ... recon
Fri, 15 May 2026 19:33:29 GMT Open Redirect: The underestimated vulnerability that turns your t... bug-bounty
Wed, 13 May 2026 12:50:43 GMT Effective Pest Control Services in Varanasi: Protecting Your Home... bugs
Tue, 12 May 2026 06:20:20 GMT Why VAPT Testing Is Essential for Protecting Businesses Against M... vapt
Tue, 21 Apr 2026 13:33:52 GMT Kioptrix: 2014 — VulnHub Walkthrough pChart LFI + PhpTax RCE to... lfi
Fri, 15 May 2026 05:33:58 GMT POST, PUT, DELETE: Building Custom Requests from Zero web-security
Tue, 12 May 2026 17:56:53 GMT How a Hidden GraphQL Endpoint Turned Into a Serious Data Leak bug-bounty-writeup
Sat, 25 Apr 2026 02:19:00 GMT Yellow Cockatoo RAT (Jupyter’s Bro)Write-Up (CyberDefenders) remote-code-execution
Wed, 13 May 2026 06:51:16 GMT IMDS: The Hidden Door to AWS Credentials ssrf
Thu, 14 May 2026 17:14:47 GMT Prompt Injection in a Brazilian Courtroom: When the Attack Left t... pentest
Tue, 28 Apr 2026 12:31:02 GMT How to Upload Files in Next.js (Images & Documents) file-upload
Sat, 04 Apr 2026 05:31:01 GMT Shodan + Censys Internet Ka X-Ray: Bina Scan Kiye Sab Kuch Dekho!... shodan
Fri, 15 May 2026 08:33:14 GMT Insecure Direct Object Reference (IDOR) in Dataset Creation Endpo... bugbounty-writeup
Tue, 31 Mar 2026 08:17:14 GMT Exploiting OData Wildcards: How I Scraped Tesla’s Internal Empl... bugcrowd
Fri, 08 May 2026 08:14:59 GMT How a Bus That Left 2 Minutes Early Led Me to an IDOR Exposing Th... idor
Wed, 13 May 2026 13:53:40 GMT Cloudinary PDF “Blocked for Delivery” file-upload
Thu, 14 May 2026 17:00:33 GMT CVE-2025–68600: The Ronin’s Path Breaking WordPress Security ... cve
Sat, 25 Apr 2026 23:23:58 GMT How to Avoid Hardcoding API Keys in mcp.json api-key
Tue, 13 Jan 2026 13:27:13 GMT Hacking “Time”: When Critical Infrastructure Forgets to Set a... vulnerability-disclosure
Fri, 15 May 2026 06:13:06 GMT Android App Pentesting for Beginners: Your First Mobile Hack in 2... infosec, pentesting
Fri, 15 May 2026 11:01:50 GMT JWT JSON Web Token web-security, pentesting
Wed, 22 Apr 2026 23:39:11 GMT Authentication bypass via unauthenticated JWT generation on a tel... shodan
Fri, 24 Apr 2026 10:26:01 GMT ¿Estás emocionado por el próximo partido entre FC Barcelona y ... bounty-program
Fri, 15 May 2026 20:03:06 GMT Developers Get Fired. Become a Plumber. information-technology
Wed, 29 Apr 2026 20:01:01 GMT The Form Is Soft. The Substance Is Not. information-disclosure
Sat, 25 Jan 2025 23:20:10 GMT Full GitHub Dorking guide: for OSINT and BugBounty (Reconnaissanc... github-dorking
Sat, 11 Apr 2026 14:24:38 GMT ⭐ SOC287 — Arbitrary File Read on Checkpoint Security Gateway... lfi
Thu, 14 May 2026 23:47:11 GMT The Bug Investigation Workflow That Changed How I Think About Deb... bugs
Fri, 08 May 2026 17:51:46 GMT Exploiting ProFTPD 1.3.5 Remote Code Execution (CVE-2015–3306) ... remote-code-execution
Mon, 27 Apr 2026 09:39:12 GMT Top Cyber Security Tools Every Beginner Should Learn in 2026 cybersecurity-tools
Fri, 13 Mar 2026 00:00:04 GMT File Inclusion | TryHackMe Write-up file-inclusion
Wed, 08 Apr 2026 19:31:38 GMT Pentester Labs Recon 00 write up recon
Thu, 09 Apr 2026 15:25:42 GMT The Real AI Concern Is Not Art or Jobs, It Is Cybersecurity cyber-sec
Fri, 15 May 2026 18:11:25 GMT HTTP, Burp Suite and Attack Surface: My AppSec Foundations application-security
Mon, 04 May 2026 09:31:01 GMT Love Letter Locker | TryHackMe Write-up idor
Mon, 17 Nov 2025 09:27:29 GMT 200 reports, 11 valid bugs, 0 critical issues. Here’s everythin... vdp
Wed, 11 Mar 2026 08:12:14 GMT The Bug Bounty Hunter Roadmap (2026): From Curious Beginner to Re... bug-bounty-hunting
Thu, 23 Apr 2026 19:21:01 GMT Security Assessment: 23andMe Web Platform security-research
Tue, 22 Apr 2025 10:38:20 GMT Trump’s Tariffs Cut Out Censys — ZoomEye Steps In Strong! zoomeye
Thu, 14 May 2026 14:46:35 GMT XSS Nedir ve Neden Hâlâ Tehlikeli? | Bir Siber Güvenlik Öğr... xss-attack
Wed, 13 May 2026 05:44:15 GMT Setting Up My Mobile Application Testing Lab: What Worked, What F... vapt
Sat, 09 May 2026 04:29:21 GMT How an “Out-of-Scope” XSS Led to a 300 CHF Bounty xss-vulnerability
Mon, 13 Apr 2026 22:31:01 GMT The Cost of Trusting My Own Fingers bounties
Fri, 15 May 2026 23:01:08 GMT AI coding assistants are building the same app 10 million times cybersecurity
Tue, 03 Feb 2026 17:12:47 GMT My First Week: 3 Business Logic Bugs in Major E-Commerce bug-bounty-program
Tue, 21 Apr 2026 15:05:26 GMT Web Security Series #17 — Exploiting Local File Inclusion (LFI)... file-inclusion
Sun, 26 Apr 2026 22:37:30 GMT Running a virtual iPhone for security research, no Jailbreak Requ... security-research
Wed, 15 Apr 2026 22:10:26 GMT All It Took Was a Negative Number: A Price Manipulation Story | ... bug-bounty-hunter
Tue, 11 Nov 2025 16:43:14 GMT Beyond Google: Navigating the Hidden Internet with Shodan and Cen... censys
Sat, 28 Feb 2026 09:31:10 GMT Google Dork’un Pentest Yaşam Döngüsündeki Yeri google-dork
Sat, 28 Mar 2026 06:56:48 GMT The Definitive Guide to Secret Management in Python AI Projects api-key
Mon, 20 Apr 2026 05:11:01 GMT Stop Hardcoding Your API Keys api-key
Fri, 17 Apr 2026 16:11:01 GMT Mirage (LFI) WebVerse lfi
Sat, 28 Feb 2026 14:32:47 GMT TryHackMe CTF Walkthrough- Love at First Breach 2026: Valenfind lfi
Mon, 27 Apr 2026 07:12:30 GMT One Weird Query String That Let Anyone Hijack Any Account in Roc... bounties
Thu, 14 May 2026 00:58:58 GMT XSS to Database Exfiltration cross-site-scripting
Wed, 06 May 2026 18:35:55 GMT Your Order Number Was the Only Thing Between Your Data and Anyone... idor
Wed, 22 Oct 2025 14:11:32 GMT Mastering Subdomain Enumeration: A Beginner’s Guide to Expandin... subdomain-enumeration
Thu, 16 Apr 2026 18:45:06 GMT PENTEST: A arte da invasão ética e o caminho para a Segurança ... pentest
Wed, 23 Jul 2025 15:15:01 GMT TryHackMe Include walkthrough: SSRF, log poisoning & LFI2RCE, wit... log-poisoning
Sun, 15 Mar 2026 17:49:52 GMT TryHackMe — Takeover Writeup subdomain-takeover
Wed, 22 Apr 2026 13:21:41 GMT Pickle Rick Challenge — A Short Comprehension pentest
Thu, 14 May 2026 12:40:18 GMT Full Disclosure: How Bugcrowd Marked a TEE Authentication Bypass ... bugcrowd
Mon, 11 May 2026 11:39:09 GMT Find IDOR with Zwink course idor
Fri, 03 Apr 2026 08:19:32 GMT Why API Key Security Should Be Your Startup’s First Priority api-key
Tue, 12 May 2026 18:52:00 GMT Bug Bounty Roadmap: $0 → $1,000 |Part-2 bugs
Thu, 14 Aug 2025 10:54:38 GMT Unlocking the Hidden Power of Search Engines censys
Sun, 08 Mar 2026 06:50:53 GMT XSS Inbound Attack: I Didn’t Steal Your Cookie. I Stole Your So... xss-bypass
Fri, 03 Apr 2026 07:21:16 GMT Why API Key Security Should Be Your Startup’s First Priority api-key
Tue, 14 Apr 2026 04:51:21 GMT Top Cybersecurity Tools Experts Use cybersecurity-tools