Skip to content

rix4uni/medium-writeups

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

46,407 Commits
 
 
 
 
 
 
 
 

Repository files navigation

Time Title Feed IsNew IsToday
Sun, 31 May 2026 20:48:34 GMT Tracking threat actors through AsyncRAT client emulation cybersecurity Yes Yes
Sun, 31 May 2026 20:53:35 GMT 09370673570#شماره خاله تهران# شماره خاله Ø... cybersecurity Yes Yes
Sun, 31 May 2026 21:34:10 GMT May 2026 List Of Fraudulent Cryptocurrency Investment Platforms cybersecurity Yes Yes
Sun, 31 May 2026 20:54:45 GMT Applying Credit Risk Models to Vulnerability Prioritization information-security Yes Yes
Sun, 31 May 2026 20:45:56 GMT Videos from “CVE/FIRST VulnCon 2026� Now Available vulnerability, cybersecurity, information-technology, infosec, information-security Yes Yes
Sun, 31 May 2026 21:35:42 GMT Sysprep.exe UAC Bypass via AppID Hijack cybersecurity, hacking Yes Yes
Sun, 31 May 2026 21:01:31 GMT Claude AI: How Smart Teams Cut AI Costs by 80% Without Sacrificin... cybersecurity Yes Yes
Sun, 31 May 2026 20:54:17 GMT 09370673570#شماره خاله تهران# شماره خاله Ø... cybersecurity Yes Yes
Sun, 31 May 2026 21:08:19 GMT Mitigating Mass Data Poisoning in AI Ecosystems via the Multi-Age... information-technology Yes Yes
Sun, 31 May 2026 19:56:11 GMT THE_HATE C2: Hiding Command & Control Inside DNS + Image Hosting infosec Yes
Sun, 31 May 2026 18:20:47 GMT What AI-Powered Security Systems Really Mean in 2026: Security In... security Yes
Sun, 31 May 2026 06:49:51 GMT Subdomain Takeover: The Silent Killer of Web Security — Tryhack... subdomain-takeover Yes
Sun, 31 May 2026 14:21:39 GMT Salesforce MFA Just Got Serious : A Practical Guide to Phishing-R... security Yes
Sun, 31 May 2026 20:16:15 GMT Metasploit: The Basics (THM) Tryhackme Walkthrough cybersecurity, hacking Yes
Sun, 31 May 2026 18:13:32 GMT 從寫功能到設計 Framework:我如何把新模組開發時... information-technology Yes
Sun, 31 May 2026 04:19:43 GMT Vigolium: The Open Source Vulnerability Scanner Bringing AI Power... vulnerability-scanning Yes
Sun, 31 May 2026 13:47:38 GMT Metasploitable 2 — What a Fully Compromised System Actually Loo... penetration-testing Yes
Sun, 31 May 2026 13:18:55 GMT CISSP Chapter 3 — Part 4: A Plan Is Only Real When It Is Approv... information-technology, cyber-security-awareness Yes
Sun, 31 May 2026 15:06:03 GMT A Critical OAuth Vulnerability in a Data Visualization Platform: ... bug-bounty, web-security, ethical-hacking Yes
Sun, 31 May 2026 15:23:42 GMT Detection Rules That Matter: Writing Bad, Good, and Great Sigma/Y... security, information-security Yes
Sun, 31 May 2026 08:58:57 GMT Password Cracking | TryHackMe pentesting Yes
Sun, 31 May 2026 20:03:32 GMT Your EC2 Instances Are Probably Exposed Right Now security Yes
Sun, 31 May 2026 17:32:31 GMT The 2026 Cybersecurity Certification Trap: Why Paper Credentials ... bug-bounty, penetration-testing, infosec Yes
Sun, 31 May 2026 15:55:31 GMT The Sociology of My Own Life. vulnerability Yes
Sun, 31 May 2026 18:05:07 GMT When Your AI Security Becomes the Attack Surface: The Rise of Pro... information-security Yes
Sun, 31 May 2026 17:35:53 GMT AI SecOps: A Weekend’s Hackathon against the MCP tools and refl... bug-bounty Yes
Sun, 31 May 2026 00:42:20 GMT I Am 17. I Built a Free Security Scanner Because the Industry Lef... infosec Yes
Sun, 31 May 2026 07:12:32 GMT TryHackMe — Jr Penetration Tester Learning Path pentesting Yes
Sun, 31 May 2026 17:31:59 GMT pwning Reactor penetration-testing, web-security, information-security, ethical-hacking Yes
Sun, 31 May 2026 05:23:10 GMT The Pursuit of Curiosity: Why I’m Choosing to Build and Secure ... vapt Yes
Sun, 31 May 2026 17:55:21 GMT Check My Links Browser Extension: A Hidden Weapon for OSINT and ... security, hacking, information-security Yes
Sun, 31 May 2026 13:00:31 GMT Splunk Architecture Explained: How Data Travels from Source to In... cyber-security-awareness Yes
Sun, 31 May 2026 14:43:34 GMT Nightmare-Eclipse Vs Microsoft, Hacker finds 6 Vulnerabilities in... ethical-hacking Yes
Sun, 31 May 2026 13:07:10 GMT The Vendor Door: How Third Parties Become the Weakest Link in Hea... cyber-security-awareness Yes
Sun, 31 May 2026 16:10:05 GMT The Bug That Took 6 Months to Fix: My Journey to NASA's Hall of F... penetration-testing, bugbounty-writeup, ethical-hacking Yes
Sun, 31 May 2026 15:08:33 GMT Still paying 4 years for tech skills? information-technology Yes
Sun, 31 May 2026 14:22:36 GMT Unauthorized Role Assignment via Registration using OPTIONS Metho... bug-bounty, bug-bounty-tips, hackerone, bug-bounty-writeup Yes
Sun, 31 May 2026 08:14:40 GMT LLM Red Teaming, AI Security & Vibe Coding Security: How Hackers ... ethical-hacking Yes
Sun, 31 May 2026 10:50:03 GMT ProFTPD 1.3.5 Remote Code Execution (CVE-2015–3306) | Hackvise... vulnerability Yes
Sun, 31 May 2026 15:34:58 GMT Your Firewall Is Lying to You: UFW, Docker, and the Ports You Tho... application-security Yes
Sun, 31 May 2026 20:28:39 GMT Bitskrieg: Nightmare Eclipse Just Recruited Microsoft’s Own Blu... cybersecurity, information-security Yes
Sun, 31 May 2026 15:39:20 GMT Why Certifications Still Matter security, information-security Yes
Sun, 31 May 2026 08:58:57 GMT Web Server Attacks — II | TryHackMe pentesting Yes
Sun, 31 May 2026 13:32:51 GMT The Dark Web Is Not a Haunted House. It’s a Back Alley With Rec... cyber-security-awareness Yes
Sun, 31 May 2026 16:37:18 GMT Why We Trust People Who’ve Seen Us Fall Apart vulnerability Yes
Sun, 31 May 2026 11:55:21 GMT When Middleware Becomes the Weapon: Chaining File Upload to Serve... penetration-testing Yes
Sun, 31 May 2026 18:51:35 GMT WAF Bypass Methods bug-bounty Yes
Sun, 31 May 2026 17:50:46 GMT Big Tech Is Suddenly Impacting a Niche Market for U.S. Dividends information-technology Yes
Sun, 31 May 2026 17:42:36 GMT Mastering OpenDoor: Context-Aware Web Recon Beyond Directory Brut... web-security Yes
Sun, 31 May 2026 14:33:41 GMT When “We’ll Look Into It� Means “We’ll Upload It to the... bug-bounty, vulnerability, information-security, cyber-security-awareness Yes
Sun, 31 May 2026 00:36:24 GMT JS Analysis Leads to Information disclosure hackerone Yes
Sun, 31 May 2026 18:26:08 GMT Why Backup Internet Is a Small Business Essential in 2026 cyber-security-awareness Yes
Sun, 31 May 2026 14:02:05 GMT #NowIKnowThat: It’s Not Just Us, Technostress Is Real information-technology Yes
Sun, 31 May 2026 17:47:02 GMT Securing Azure Functions Solutions: A Practical Guide for .NET De... security Yes
Sun, 31 May 2026 19:34:25 GMT 5 Cybersecurity Threats That Will Hit Your Organization in 2026 â... infosec Yes
Sun, 31 May 2026 16:21:13 GMT The Hacking Myth vs. The Boring Reality cyber-security-awareness Yes
Sun, 31 May 2026 17:52:19 GMT Intro to Detection Engineering Tryhackme Walkthrough. penetration-testing Yes
Sun, 31 May 2026 11:49:56 GMT Tempest Projesi nedir? Tempest UyumluluÄŸu ve Sertifikasyonu Nedi... pentesting Yes
Sun, 31 May 2026 18:38:37 GMT The Art of Letting Someone Know Me vulnerability Yes
Sun, 31 May 2026 08:48:27 GMT The Denial-of-Attention Attack infosec Yes
Sun, 31 May 2026 19:39:10 GMT How I Hacked My Way Through the eMAPT Exam pentesting Yes
Sun, 31 May 2026 12:33:34 GMT #Gdbreviews: “Plurality� – The Book That Proves Technology ... information-technology Yes
Sun, 31 May 2026 02:23:34 GMT How I built a simple Python vulnerability scanner with native uv.... vulnerability Yes
Sun, 31 May 2026 20:07:30 GMT Why AI will not fully replace Human Pentesters and Red Teamers (I... penetration-testing, pentesting Yes
Sun, 31 May 2026 07:13:59 GMT The Cost of the Click: What I Wish I Knew Before I Started Bloggi... vulnerability Yes
Sun, 31 May 2026 14:34:25 GMT iPhone 18: What We Know So Far And What Actually Matters information-technology Yes
Sun, 31 May 2026 20:12:06 GMT The Cortex Search Vulnerability: Preventing Vector Privilege Esca... cybersecurity Yes
Sun, 31 May 2026 06:48:25 GMT Building a Detection Lab for ATT&CK T1190: Monitoring SQLi, XSS, ... web-security Yes
Sun, 31 May 2026 20:21:00 GMT Your CI/CD Pipeline Is the Attack Surface Now security Yes
Sun, 31 May 2026 16:36:33 GMT Learn to Hack AWS by Hacking AWS. infosec, ethical-hacking Yes
Sun, 31 May 2026 08:29:51 GMT Write-Up: BugForge Daily Challenge — Ottergram with Mass assign... pentesting Yes
Sun, 31 May 2026 16:33:49 GMT TryHackMe GoldenEye Walkthrough: From Enumeration to Root penetration-testing Yes
Sun, 31 May 2026 19:23:39 GMT I Escaped a Docker Container Running as Root — Here’s How cyber-security-awareness Yes
Sun, 31 May 2026 13:36:56 GMT This Recon Tool Automates Everything | MAXMAP bug-bounty, hacking Yes
Sun, 31 May 2026 12:27:52 GMT What Happens in the First 60 Seconds After a Hacker Targets You? ethical-hacking Yes
Sun, 31 May 2026 13:18:06 GMT Network Pusulası #5 — VLAN Hopping: Switch’i Kendi Kuralıyl... hacking Yes
Sun, 31 May 2026 07:14:13 GMT Completely Stuck? Here’s How I Got Out of a Three-Week Dry Spel... bug-bounty-tips, bugbounty-writeup, bug-bounty-writeup, bug-bounty-hunter Yes
Sun, 31 May 2026 15:51:31 GMT Come spiare WhatsApp eludendo la crittografia End-to-End hacking Yes
Sun, 31 May 2026 14:29:38 GMT How Enterprise Email Security Gateways Detect GoPhish Campaigns cyber-security-awareness Yes
Sun, 31 May 2026 13:18:41 GMT Fake Party Invite Scam: How to Stay Safe Before You Click hacking Yes
Sun, 31 May 2026 16:07:43 GMT Privilege Escalation: How Cybercriminals Steal the Keys to the Ki... cyber-security-awareness Yes
Sun, 31 May 2026 08:59:59 GMT Why Most Web3 Projects Launch Without Real User Testing (And Pay ... bug-bounty Yes
Sun, 31 May 2026 02:25:11 GMT On Vulnerability vulnerability Yes
Sun, 31 May 2026 16:53:17 GMT Write-Up: BugForge Daily Challenge — Galaxy Dash with Arbitrary... pentesting Yes
Sun, 31 May 2026 18:15:13 GMT Active Reconnaissance TryHackMe Walkthrough penetration-testing Yes
Sun, 31 May 2026 16:54:45 GMT File Upload Attacks: Bypassing Blacklist Filters bug-bounty, pentesting Yes
Sun, 31 May 2026 11:44:03 GMT Best Institute for Cybersecurity Summer Internship After 12th hacking, ethical-hacking Yes
Sun, 31 May 2026 15:08:45 GMT You Have 10 Seconds: Can You Spot This Cyber Attack? information-security Yes
Sun, 31 May 2026 19:52:37 GMT Beyond Antivirus: Using Hardware Signals to Monitor Edge AI Syste... security Yes
Sun, 31 May 2026 03:25:09 GMT Machine Speed, Human Speed, and the Gap That Is Breaking Cybersec... application-security Yes
Sun, 31 May 2026 18:17:24 GMT The Art of SSTI security, web-security, pentesting Yes
Sun, 31 May 2026 07:43:08 GMT Day 7 — Enumerating Applications on Web Servers web-security Yes
Sun, 31 May 2026 16:35:54 GMT AI vs. Cybersecurity: Who’s Actually Winning? ethical-hacking Yes
Sun, 31 May 2026 11:36:28 GMT Testing File Upload Vulnerability in web applications!!! rce, ssrf, xss-vulnerability Yes
Sun, 31 May 2026 11:13:24 GMT Investigation Breakdown — Part 1 hacking Yes
Sun, 31 May 2026 15:48:16 GMT SSRF with filter bypass via open redirection vulnerability hacking, ssrf Yes
Sun, 31 May 2026 15:08:10 GMT 為什麼我們創立唄粉智能:讓創作者行銷從一次æ€... information-technology Yes
Wed, 27 May 2026 12:44:31 GMT RevEng.AI Secures $15 Million to Strengthen Software Binary Secur... application-security
Fri, 24 Apr 2026 06:09:47 GMT Is Web Filtering Quietly Controlling Your Online Experience Witho... cybersecurity-tools
Sat, 30 May 2026 02:24:56 GMT The Dumbest Bug I Ever Found (And Why Complexity Is Overrated) bug-bounty-tips, bugbounty-writeup, bug-bounty-writeup, bug-bounty-hunter
Thu, 21 May 2026 07:45:55 GMT How to completely remove/uninstall VS Code from my Mac? [Tutoria... exploit
Sat, 09 May 2026 10:01:40 GMT Shodan.io | TryHackMe shodan
Sat, 04 Apr 2026 05:31:01 GMT Shodan + Censys Internet Ka X-Ray: Bina Scan Kiye Sab Kuch Dekho!... shodan
Wed, 29 Apr 2026 14:14:58 GMT Part 2 : Cross-Site Scripting (XSS) xss-bypass
Mon, 25 May 2026 08:02:31 GMT Lock Down Your APIs: A Guide to API Key Authentication api-key
Wed, 20 May 2026 14:26:33 GMT Your Agent Doesn’t Need an API Key api-key
Wed, 05 Nov 2025 12:42:46 GMT How I Hacked Bank’s Admin Portal vdp
Tue, 26 May 2026 16:36:15 GMT The Importance of Vulnerability Assessment & Penetration Testing ... vapt
Sun, 12 Apr 2026 10:48:18 GMT Ubah Keterampilan Anda Menjadi ALPH: Panduan Hadiah Alphland bounty-program
Fri, 22 May 2026 08:30:52 GMT Bug bounty : l’IA fait bondir les signalements de 76% hackerone, bugcrowd
Tue, 21 Apr 2026 17:44:36 GMT TuesdayTool 44: ThreatCaddy: A Modern Approach to Threat Intellig... cybersecurity-tools
Fri, 29 May 2026 18:01:00 GMT Your Test Suite Is Green. Your Bug Is Already in Production. bugs
Fri, 08 May 2026 17:51:46 GMT Exploiting ProFTPD 1.3.5 Remote Code Execution (CVE-2015–3306) ... remote-code-execution
Sat, 25 Oct 2025 12:23:25 GMT How to find leaks on GitHub as a beginner. Logic is main key github-dorking
Thu, 30 Apr 2026 22:03:21 GMT How to learn Autopsy quickly to pass any exams cybersecurity-tools
Wed, 22 Apr 2026 13:21:41 GMT Pickle Rick Challenge — A Short Comprehension pentest
Fri, 15 May 2026 14:29:03 GMT The MCP package looked clean. The installed tree did not. security-research
Thu, 09 Apr 2026 15:25:42 GMT The Real AI Concern Is Not Art or Jobs, It Is Cybersecurity cyber-sec
Sat, 30 May 2026 14:01:03 GMT Threat Hunting for DNS Attacks -LetsDefend bug-bounty-writeup
Wed, 13 May 2026 22:00:19 GMT The Mathematics of the Other information-disclosure
Sat, 11 Apr 2026 09:59:14 GMT The Symmetry of Recon: Active vs. Passive Discovery in Bug Bounty shodan
Fri, 06 Feb 2026 06:33:08 GMT 5 Ways to Bypass Email Verification Without Using Any Tool bug-bounty-program
Fri, 01 May 2026 09:40:56 GMT Excessive Data Exposure Leading to Unauthorized Access to Paid Fe... vulnerability-disclosure
Mon, 03 Nov 2025 19:42:12 GMT Announcing DorkFi Go-Live Date: Liquidity is Coming dorks
Sat, 20 Dec 2025 18:21:40 GMT N0aziXss SubSpectre: Advanced Subdomain Discovery with Intelligen... subdomain-enumeration
Mon, 30 Mar 2026 06:03:13 GMT Why Business Directory Listings Are the Secret Weapon of Off-Page... directory-listing
Sun, 21 Sep 2025 07:02:30 GMT Affordable but Vulnerable? The Dark Side of CMORE HMI censys
Tue, 26 May 2026 23:44:37 GMT Intigriti May 2026 Challenge: XSS via Stored Payload & SCA Shield... xss-attack, xss-bypass
Thu, 28 May 2026 11:44:53 GMT Unique OAuth Misconfiguration That Could Lead to Account Takeover hackerone
Thu, 28 May 2026 14:34:23 GMT Dirty Frag: Universal Linux LPE Through Page Cache Corruption exploit, cve
Mon, 18 May 2026 18:07:32 GMT SYMFONOS: 1 local-file-inclusion
Sun, 03 May 2026 09:14:45 GMT The Ghost in the Machine: A Bug Bounty Short Story recon
Thu, 28 May 2026 19:46:52 GMT Go Debugging — From Zero to Hero: Master the Art of Finding Bug... bugs
Sun, 19 Apr 2026 11:31:54 GMT Search Engine Discovery & Google Dorking: Turning Google into a R... google-dorking
Thu, 14 May 2026 02:21:00 GMT Exploiting Samba RCE (CVE-2017–7494) | Hackviser Labs Walkthro... remote-code-execution
Sat, 02 May 2026 16:49:25 GMT Beyond the Ping: Mastering Nmap for Network Reconnaissance in 202... vulnerability-scanning
Sun, 15 Feb 2026 09:26:13 GMT TryHackMe Walkthrough -Subdomain Enumeration subdomain-enumeration
Sat, 30 May 2026 18:26:55 GMT Negative Seven Days cve
Thu, 28 May 2026 04:58:44 GMT The One GraphQL Query That Finds IDORs in Seconds (And Why Most H... bug-bounty-tips, bugbounty-writeup
Sat, 30 May 2026 20:20:09 GMT Developer-Friendly DevSecOps: How to Build Security That Develope... application-security
Sun, 05 Apr 2026 20:11:41 GMT I Tried Logging In… and Accidentally Did Responsible Disclosure... vdp
Sun, 15 Mar 2026 16:45:35 GMT Web Security Series #4 — Discovering Unauthorized Resources via... bug-bounty-hunting
Wed, 06 May 2026 22:28:25 GMT The New Architecture of Trust in an Era of Persistent Cyber Warfa... pentest
Tue, 15 Jul 2025 12:15:58 GMT “Secure� OPC UA Setups Are Being Hacked — Here’s Why censys
Wed, 06 May 2026 11:30:53 GMT How Local Business Directory Listing Helps Attract Local Customer... directory-listing
Mon, 16 Mar 2026 18:05:08 GMT xss0r V6 is Finally Released! xss-bypass
Thu, 28 May 2026 10:37:14 GMT How I Found a Publicly Exposed Internal Media Platform Running Cr... bugbounty-writeup
Thu, 02 Oct 2025 06:59:46 GMT Endless Cashback Glitch:How I Unlocked Unlimited Free Orders with... bug-bounty-program
Sat, 16 May 2026 07:52:10 GMT Information disclosure on debug page information-disclosure
Wed, 06 May 2026 23:46:09 GMT HTB File Inclusion Skills Assessment — From LFI to RCE (Full Wa... local-file-inclusion
Fri, 17 Apr 2026 16:11:01 GMT Mirage (LFI) WebVerse lfi
Sat, 09 May 2026 01:31:00 GMT Your Server Is Showing Everything It Shouldn’t -The Apache Dire... directory-listing
Sat, 20 Apr 2024 17:20:58 GMT TryHackMe — Brute Walkthrough | TheHiker log-poisoning
Wed, 01 Apr 2026 09:33:58 GMT How to earn VDS in Vadeus Network [Rewards Center] bounty-program
Sun, 24 Aug 2025 20:18:55 GMT How I found an Account Lockout Vulnerability Without Any Tools bug-bounty-program
Tue, 12 May 2026 09:55:50 GMT Critical PHP SOAP Vulnerabilities Put Web Applications at Risk of... remote-code-execution
Thu, 14 Aug 2025 10:54:38 GMT Unlocking the Hidden Power of Search Engines censys
Fri, 20 Mar 2026 05:45:47 GMT Cloudflare WAF Bypass Leading to Reflected XSS via SVG Injection xss-bypass
Thu, 28 May 2026 15:28:07 GMT How i find a valid bug in NASA bugs
Thu, 28 May 2026 03:30:32 GMT ReportVerse (Medium) — SSRF via PDF Renderer | Webverse Labs W... ssrf
Mon, 18 May 2026 07:01:05 GMT InterLink Migration Vote Begins | Active Bounty Season 3 bounty-program
Wed, 25 Feb 2026 01:47:45 GMT How I Found a Path Traversal in the Rancher Dashboard via HAR Rep... web-pentest
Mon, 25 May 2026 14:19:37 GMT Look at this, we created this bounties
Thu, 07 May 2026 23:40:39 GMT A Critical IDOR That Allowed Me to Delete Any User Account bugcrowd
Fri, 22 May 2026 13:53:52 GMT Craft HTB — Full Walkthrough: From RCE to Root via Vault SSH OT... rce
Thu, 28 May 2026 07:15:06 GMT ¡Únete y hazte con uno de los más de 400 premios! bounty-program
Mon, 18 May 2026 13:05:18 GMT Subdomain Takeover subdomain-takeover
Wed, 30 Apr 2025 17:08:29 GMT Exploring Subdomains: What They Are and How to Find Them subdomain-enumeration
Mon, 18 May 2026 08:13:48 GMT Why Every Business Needs a Vulnerability Scanning Service in 2026 vulnerability-scanning
Tue, 26 May 2026 18:31:01 GMT Deleting any user’s account from the platform via exposed /admi... idor
Mon, 25 May 2026 15:27:30 GMT CVE-2021-21735: How a ZTE ZXHN H168N "Info Leak" Could Expose Adm... cve
Fri, 29 May 2026 14:35:13 GMT Blind SSRF that Leads To Port Scaning And Descover The Infrastrac... ssrf
Wed, 13 May 2026 08:34:01 GMT Cross-Site Scripting(XSS- A Web Application Vulnerability) cross-site-scripting
Sun, 15 Mar 2026 17:49:52 GMT TryHackMe — Takeover Writeup subdomain-takeover
Thu, 14 May 2026 00:18:27 GMT The Story of 45+ Stored XSS Bugs cross-site-scripting
Wed, 06 May 2026 11:36:01 GMT Google Dorking google-dorking, dorking
Fri, 08 May 2026 20:28:49 GMT The UFO Files Were Never the Real Story information-disclosure
Tue, 21 Apr 2026 13:33:52 GMT Kioptrix: 2014 — VulnHub Walkthrough pChart LFI + PhpTax RCE to... lfi
Mon, 25 May 2026 22:30:05 GMT Kaizero-Building a Privacy-First File Toolkit That Never Sees You... file-upload
Sat, 11 Apr 2026 05:12:45 GMT Pentester Labs Recon 02 Writeup recon
Fri, 29 May 2026 17:39:38 GMT Four-Way PHP Domino-Fall: Unchecked Input to Full Root Compromise bug-bounty-writeup
Fri, 08 May 2026 09:52:18 GMT When Bug Bounty Hunting Hit Me Back: How Losing $500 Led Me to a ... web-cache-poisoning
Sun, 03 May 2026 11:10:19 GMT Sistemleri Savunmak İçin Saldırmak – Pentest 101 pentest
Mon, 16 Feb 2026 14:31:00 GMT BOUNTY | HTB | Windows |Walkthrough | Write up bounties
Sun, 24 May 2026 17:16:28 GMT A Secret Key in Plain Sight: How I Earned My First $200 Finding a... api-key
Fri, 22 May 2026 14:42:31 GMT Script Tersembunyi: Memahami XSS dan Dampaknya terhadap Keamanan ... cross-site-scripting
Fri, 22 May 2026 09:32:51 GMT Shadow in the Index: Escalating Elasticsearch SSRF to Full System... exploit
Fri, 22 May 2026 21:10:59 GMT Recruit TryHackMe walkthrough lfi
Tue, 21 Apr 2026 15:05:26 GMT Web Security Series #17 — Exploiting Local File Inclusion (LFI)... file-inclusion
Sun, 05 Apr 2026 13:27:30 GMT The Vault Sentry — A Startup’s Strategic Edge in Cybersecurit... api-key
Thu, 30 Apr 2026 02:04:17 GMT From Recon to Letter of Recognition | NASA VDP bugcrowd
Fri, 22 May 2026 07:57:55 GMT Understanding Cross-site Scripting (XSS) Through Hands-On Practic... xss-attack, cross-site-scripting
Fri, 29 May 2026 18:01:00 GMT Bill’s Steak House (RCE) (WebVerse-pro.com) rce
Mon, 04 May 2026 18:31:01 GMT Nmap: How Hackers “See� Your Network Before Attacking It vulnerability-scanning
Tue, 21 Apr 2026 10:47:26 GMT Validating My External Attack Surface: A Production-Ready Nuclei ... vulnerability-scanning
Thu, 23 Apr 2026 14:41:01 GMT Stop Learning — Start Mastering These Cybersecurity Tools in 20... cybersecurity-tools
Sun, 28 Dec 2025 08:13:44 GMT Subzy Tool subdomain-takeover
Wed, 13 May 2026 03:56:29 GMT Cross-Tenant Authorization Bypass bug-bounty-hunter
Wed, 27 May 2026 08:05:29 GMT Your Android App’s FileProvider Might Be Exposing Your Entire F... application-security
Wed, 13 May 2026 23:11:19 GMT The Lethal Trifecta: How AI Agents With Tool Access Turn Prompt I... rce, cyber-sec
Fri, 29 May 2026 20:09:27 GMT Analysing AgentTesla: A Full Infection Chain Walkthrough vapt
Sat, 02 May 2026 14:24:34 GMT Analytic Tools cyber-sec
Wed, 25 Mar 2026 08:34:09 GMT Improper Input Handling Leading to Client Side Code Execution and... vulnerability-disclosure
Mon, 25 May 2026 22:43:37 GMT Support Writeup for Jr.Pentester Path — TryHackMe/THM local-file-inclusion
Sun, 14 Dec 2025 06:37:06 GMT My Bug Bounty Diary subdomain-enumeration
Fri, 27 Mar 2026 03:29:10 GMT TryHackMe — File Inclusion (Walkthrough) file-inclusion
Mon, 11 Dec 2023 18:17:01 GMT Exploiting a Log Poisoning. log-poisoning
Thu, 21 May 2026 00:39:12 GMT From Org Switcher to Org Takeover: An IDOR Story idor
Mon, 04 May 2026 11:34:52 GMT How I Found XSS by Understanding Context xss-vulnerability
Tue, 14 Apr 2026 17:24:57 GMT PAM Cleanup in Practice: Discovery, Risk Triage and Lifecycle Gov... cyber-sec
Thu, 20 Nov 2025 09:45:04 GMT Timber Doors in Surrey: Style, Durability, and Value Explained dorking
Thu, 28 May 2026 13:06:32 GMT Gitea Vulnerability Highlights Growing Risks in Software Developm... application-security
Fri, 29 May 2026 06:48:49 GMT Race Conditions Are Simpler Than You Think (Here’s How I Test f... bug-bounty-tips, bugbounty-writeup, bug-bounty-writeup
Sat, 23 May 2026 13:33:23 GMT File Upload Vulnerabilities Explained: A Step-by-Step DVWA Securi... file-upload
Tue, 03 Feb 2026 17:12:47 GMT My First Week: 3 Business Logic Bugs in Major E-Commerce bug-bounty-program
Thu, 21 May 2026 11:26:49 GMT Durable Nonces on Solana: Sign Now, Send Later exploit
Wed, 06 May 2026 10:26:18 GMT Upload Vulnerabilities | TryHackMe remote-code-execution
Sat, 30 May 2026 11:25:12 GMT Cross-Site Scripting (XSS) via Client-Side Filter Bypass xss-attack, xss-vulnerability, xss-bypass
Mon, 25 May 2026 04:57:09 GMT The “Noise Filter� Method – How I Stop Wasting Hours on Fal... bug-bounty-hunter
Sat, 30 May 2026 05:37:02 GMT Digital Forensics Services in Qatar: Protecting Businesses Agains... vapt
Thu, 29 Jan 2026 05:03:15 GMT Subdomain Takeover: Understanding, Detecting, and Recovering from... subdomain-takeover
Thu, 28 May 2026 08:00:35 GMT Chaining CSRF and XSS to Remote Code Execution in a WordPress Plu... xss-attack
Thu, 14 May 2026 16:21:22 GMT How a Simple Search Parameter Exposed a Potential XSS Vulnerabili... cross-site-scripting, xss-vulnerability
Sun, 12 Apr 2026 12:29:45 GMT პირ�ვნების ძიების სრული... google-dork
Wed, 01 Apr 2026 18:43:56 GMT Lab: SQL injection attack, listing the database contents on Oracl... web-pentest
Sun, 15 Mar 2026 11:14:38 GMT Local File Inclusion (LFI) in Leave Application System (PHP & SQL... lfi
Mon, 06 Apr 2026 18:35:09 GMT Manual vs Automated Security Testing in the Age of AI: A Security... vulnerability-scanning
Sat, 04 Apr 2026 09:10:35 GMT We’ve messed up, a lot. Here’s Why Scribble Still Exists to c... bounties
Thu, 09 Oct 2025 18:33:05 GMT 0-click Account Takeover via Punycode bug-bounty-program
Wed, 08 Apr 2026 13:31:24 GMT Hunting on Flipkart: When Product Specs Become Payloads google-dork
Tue, 05 May 2026 22:06:03 GMT LFI Automated Scanning: Finding and Fuzzing with ffuf local-file-inclusion
Mon, 04 May 2026 17:36:51 GMT The Complete Guide to Managed Cyber Defense: Protecting Your Busi... cyber-sec
Tue, 26 May 2026 05:37:14 GMT Advanced Cybersecurity & VAPT Solutions in Qatar vapt
Fri, 29 May 2026 16:04:39 GMT I Spent 8 Hours Debugging a Bug Caused by One Line bugs
Wed, 27 May 2026 14:47:39 GMT Denaria Finance Exploit: $166K Lost to Asymmetric Rounding and an... exploit
Sat, 06 Dec 2025 23:06:15 GMT Big News from DorkFi — PreFi Rewards Drop + Contest Live! dorks
Fri, 22 May 2026 21:14:01 GMT From Org Takeover to Pre-Auth Org Takeover: The Bypass idor
Fri, 22 May 2026 15:18:36 GMT XXE’den SSRF’e: Sunucunun Gizli Dünyasına Adım Adım SızÄ... xss-attack
Sat, 16 May 2026 13:59:51 GMT I’ll Catch a Grenade for You — Dirty Frag Telemetry Walkthrou... exploit
Mon, 18 May 2026 21:30:18 GMT The Regex Said Safe. The Parser Disagreed, NASA Earth Science Pla... ssrf
Mon, 06 Apr 2026 21:45:53 GMT Cookie(Çerez) Türleri ve Pentest Açısından Önemi web-pentest
Wed, 27 May 2026 01:37:59 GMT How Hackers Exploit Misconfigured CORS — And How to Fix It exploit
Wed, 11 Mar 2026 08:12:14 GMT The Bug Bounty Hunter Roadmap (2026): From Curious Beginner to Re... bug-bounty-hunting
Mon, 11 May 2026 04:05:55 GMT Four Pillars, One Platform: How Cybrium Unifies Code, Cloud, AI, ... pentest
Wed, 27 May 2026 08:21:37 GMT My First CVE! The Journey to Discovering CVE-2026–46620 in e107... cve
Wed, 22 Apr 2026 23:39:11 GMT Authentication bypass via unauthenticated JWT generation on a tel... shodan
Sat, 09 May 2026 04:29:21 GMT How an “Out-of-Scope� XSS Led to a 300 CHF Bounty xss-vulnerability
Thu, 13 Feb 2025 03:29:37 GMT ZoomEye Meets DeepSeek: AI-Powered Cyberspace Intelligence zoomeye
Thu, 29 Jan 2026 21:21:39 GMT Turning Fuzzing Into $2,550: How a Simple Bug Gave Me Access to E... bounties
Wed, 27 May 2026 14:58:26 GMT The LEFT JOIN Bug That Quietly Deletes Your Rows bugs
Fri, 24 Apr 2026 10:26:01 GMT ¿Estás emocionado por el próximo partido entre FC Barcelona y ... bounty-program
Mon, 25 May 2026 09:49:05 GMT Guided Pentest: Web | TryHackMe remote-code-execution, idor
Sat, 23 May 2026 06:13:35 GMT Best Cyber Security Course in Delhi vapt
Wed, 27 May 2026 19:58:43 GMT ReportVerse (Official Writeup) WebVerse-pro.com ssrf
Tue, 12 May 2026 17:55:36 GMT Wild Bounty Showdown PG Soft: Rahsia Maxwin Cowboy & Pola Gacor T... bounties
Sun, 08 Mar 2026 11:01:01 GMT I Paid $500 for AI Directory Listings. Here Is My Honest ROI Brea... directory-listing
Wed, 20 May 2026 11:18:33 GMT Me Before Digiss vs Me Now in Digiss: How My Cybersecurity Learni... cyber-sec
Sat, 11 Apr 2026 14:24:38 GMT � SOC287 — Arbitrary File Read on Checkpoint Security Gateway... lfi
Sun, 24 May 2026 21:06:27 GMT How I Found a Permanent Account Takeover Through SSO Account Link... bugcrowd
Wed, 27 May 2026 10:53:04 GMT How I Discovered Critical Bugs in an Android Employee Management ... bugbounty-writeup
Tue, 12 May 2026 23:12:26 GMT Atlantis Technology Beneath the Sphinx? information-disclosure
Mon, 16 Feb 2026 08:42:31 GMT Lab: Exploiting HTTP request smuggling to perform web cache poiso... web-cache-poisoning
Wed, 13 May 2026 13:53:40 GMT Cloudinary PDF “Blocked for Delivery� file-upload
Thu, 02 Apr 2026 12:05:48 GMT IoT Cihazlar: Evinizde ki Yabancı shodan
Tue, 28 Apr 2026 07:09:41 GMT owockibot: The Bounty Board Powering the Agent Economy bounty-program
Fri, 10 Apr 2026 12:32:22 GMT How Soroban’s CAP-0066 Killed My LayerZero Finding bounty-program
Thu, 19 Feb 2026 12:53:45 GMT Lab: Web cache poisoning via HTTP/2 request tunnelling | Portswi... web-cache-poisoning
Fri, 22 May 2026 15:09:35 GMT Lab: SSRF with blacklist-based input filter | SSRF #lab4 ssrf
Sat, 30 May 2026 19:24:41 GMT HiveAir CTF HIVE CONSULT idor
Wed, 27 May 2026 19:50:08 GMT Why Your Directory Listing Service Isn’t Working — And the Fr... directory-listing
Fri, 01 May 2026 20:23:15 GMT Shodan Facet Searches That Read Like Threat Intel Poetry shodan
Sat, 30 May 2026 23:40:59 GMT How I Automated Open Redirect Vulnerability Hunting Using a Singl... vulnerability
Sun, 22 Mar 2026 10:40:15 GMT DVWA: File Inclusion Vulnerability (Low Security) file-inclusion
Wed, 27 May 2026 13:10:46 GMT Modern Web Stacks | TryHackMe cve
Fri, 22 May 2026 00:33:59 GMT XSS Testing Checklist: 12 Important Test Cases Every Security Tes... xss-attack
Mon, 17 Nov 2025 09:27:29 GMT 200 reports, 11 valid bugs, 0 critical issues. Here’s everythin... vdp
Wed, 13 May 2026 16:01:01 GMT Mapleton (LFI to RCE) WebVerse rce, lfi
Wed, 29 Apr 2026 14:47:41 GMT The Dorking Manifesto: Uncovering the Hidden Web google-dorking
Sat, 30 May 2026 13:40:53 GMT A YouTube Video Scared Me Into Learning SQL Injection. Here’s W... web-security
Fri, 15 May 2026 15:53:56 GMT Walkthrough: Remediating Vulnerabilities Found with OpenVAS and N... vulnerability-scanning
Fri, 10 Nov 2023 03:38:01 GMT Apache error.log advanced Log poisoning RCE log-poisoning
Wed, 16 Jul 2025 12:07:42 GMT Hackers Love This 1979 Protocol (Because It Can’t Defend Itself... censys
Wed, 27 May 2026 22:03:41 GMT DNS Pentesting Guide For Beginners: How Hackers Exploit Port 53 hackerone
Mon, 04 May 2026 19:18:14 GMT LFI to RCE: Log Poisoning via PHP Sessions and Apache Logs local-file-inclusion
Sat, 30 May 2026 22:37:01 GMT My First Exploits Accepted on Exploit-DB: From Idea to Publicatio... infosec
Thu, 14 May 2026 00:58:58 GMT XSS to Database Exfiltration cross-site-scripting
Tue, 18 Nov 2025 08:33:41 GMT A Chain of Vulnerabilities Leading to Critical Information Disclo... bug-bounty-program
Fri, 13 Mar 2026 02:31:00 GMT How I Use Google Dorking to Find Hidden Vulnerabilities google-dork
Sat, 25 Apr 2026 14:46:05 GMT File Inclusion— Skills Assesment (HTB) file-inclusion
Sun, 13 Jul 2025 16:32:21 GMT ProConOS Exposed: What ICS Security Teams Need to Know censys
Thu, 05 Mar 2026 21:41:26 GMT Finding a P1 in NASA: The Power of Google Dorking google-dork
Fri, 29 May 2026 15:26:55 GMT Guided Pentest: Infrastructure (TryHackMe) pentest
Mon, 18 May 2026 14:37:14 GMT File Inclusion - Challenge Part | TryHackMe Walkthrough file-inclusion
Tue, 23 Sep 2025 06:36:22 GMT Mengamankan File Sensitif & Directory Listing website dengan .ht... directory-listing
Wed, 20 May 2026 12:58:33 GMT Get API Key from Google AI Studio api-key
Mon, 27 Apr 2026 07:12:30 GMT One Weird Query String That Let Anyone Hijack Any Account in Roc... bounties
Sat, 11 Apr 2026 18:05:11 GMT Ha0ker is the online identity of Gagandeep Singh, a professional ... bugcrowd
Tue, 19 May 2026 23:05:49 GMT GOOGLE AI FORENSIC PROOF: r/PromptEngineering ATTACK POST EXPOSED... exploit
Wed, 27 May 2026 10:48:28 GMT OWASP Top 10 2021 #10 — Server-Side Request Forgery (SSRF) vapt, ssrf
Thu, 20 Nov 2025 17:16:47 GMT The Health Factor: How DorkFi Keeps Your Position Safe dorks
Fri, 22 May 2026 05:40:40 GMT Mengamankan “Pipa Penghubung� Digital: Pentingnya VAPT dalam ... pentest
Tue, 26 May 2026 11:02:11 GMT How I Used Burp Suite to Discover a $6,000 XSS Vulnerability Thro... hackerone
Tue, 28 Apr 2026 13:18:20 GMT 25 Open-Source Cybersecurity Tools That Work Even When Your Budge... cybersecurity-tools
Sun, 03 May 2026 15:05:29 GMT File Upload and Download in Spring Boot (MultipartFile + Resource... file-upload
Wed, 27 May 2026 18:39:35 GMT MAXMAP: Your automated recon sidekick. recon
Thu, 28 May 2026 11:53:24 GMT Advanced Client Side Injection Secrets Leads To (SSRF , Prev Esc) bug-bounty-tips
Wed, 29 Apr 2026 13:59:27 GMT Finding an IDOR in Tesla From the Outside bugcrowd
Wed, 13 May 2026 07:37:16 GMT How to Find Subdomains Using Shodan and the Favicon Hash Trick subdomain-enumeration, shodan, recon
Fri, 13 Mar 2026 14:55:26 GMT Web Security Series #2 — Bypassing Authentication via MFA Tampe... bug-bounty-hunting
Sun, 24 May 2026 10:43:45 GMT Streaming Multi-GB Files Directly to S3 — Without Storing Them ... file-upload
Thu, 28 May 2026 13:47:13 GMT CVE-2026–42945: Understanding NGINX Rift cve
Wed, 20 May 2026 06:45:24 GMT How I Discovered Account Takeover (ATO) via XSS and Open redirect bug-bounty-hunter
Mon, 25 May 2026 18:31:00 GMT Credentials Leaked in JS: Inspect Element, Then Exfiltrate information-disclosure
Wed, 28 Jan 2026 07:31:37 GMT Lab: Targeted web cache poisoning using an unknown header | Port... web-cache-poisoning
Sun, 23 Feb 2025 11:17:25 GMT $1000-$10k worth Leaks via Github Secret Dorks github-dorking
Mon, 13 Apr 2026 22:31:01 GMT The Cost of Trusting My Own Fingers bounties
Sun, 03 May 2026 18:55:57 GMT LFI to RCE: Remote File Inclusion and How Servers Execute Your Sh... local-file-inclusion
Fri, 22 May 2026 11:58:58 GMT From Root to Burp: A Comprehensive Guide to Bypassing Protectt.ai vapt
Sun, 24 May 2026 11:41:56 GMT Lab: Blind SSRF with Shellshock exploitation | SSRF #lab6 ssrf
Mon, 17 Nov 2025 23:45:18 GMT DorkFi: The Triumph of a Team You Can Trust dorks
Wed, 18 Mar 2026 10:03:26 GMT Web Security Series #7 — Exploiting Blind SQL Injection via Ses... bug-bounty-hunting
Sat, 14 Mar 2026 18:06:12 GMT Web Security Series #3 — Discovering Credentials Using Cluster ... bug-bounty-hunting
Sat, 30 May 2026 15:05:12 GMT GhostSecure CTF: A Walkthrough of Manual Asset Analysis and Direc... web-security
Thu, 14 May 2026 17:14:47 GMT Prompt Injection in a Brazilian Courtroom: When the Attack Left t... pentest
Sat, 02 Aug 2025 14:15:23 GMT The Silent Risk in Your ICS: Why S7 Protocol Needs Security Atten... censys
Wed, 27 May 2026 05:47:14 GMT GKeyhunter Pro: Revolutionizing Gemini API Key Reconnaissance and... bug-bounty-tips
Fri, 29 May 2026 11:25:05 GMT The Weird Things Nobody Tells You When You Start Learning QA bugs
Thu, 12 Mar 2026 18:11:47 GMT A Simple P4 Bug That Ended as Duplicate bug-bounty-hunting
Sat, 30 May 2026 16:29:38 GMT I Found a P1 IDOR. They Closed It as Duplicate. The Timeline Tel... idor
Fri, 28 Jun 2024 14:51:14 GMT X-Forwarded HTTP header-ləri : Qısa izah log-poisoning
Mon, 04 May 2026 14:48:00 GMT I Found 150+ Vulnerabilities in DeFi Protocols. Here’s Why I C... bounties
Tue, 12 May 2026 01:31:25 GMT UltraVNC < 1.8.1.2- Unsafe CreateProcess Call Enables Arbitrary E... remote-code-execution
Thu, 09 Apr 2026 17:40:41 GMT I Got Tired of Running 15 Different Nmap Commands. So I Built My ... vulnerability-scanning
Tue, 05 Dec 2023 07:54:40 GMT LFI via SMTP log poisoning log-poisoning
Sun, 17 Aug 2025 19:26:05 GMT ï·½ bug-bounty-program
Fri, 29 Aug 2025 04:43:21 GMT 9. The Secret Power of Google Dorking dorking
Fri, 17 Apr 2026 15:51:57 GMT The 2026 Shodan Dork Bible: Finding Exposed Jenkins, Grafana, and... google-dork, shodan
Sat, 16 May 2026 13:59:29 GMT I’ll Catch a Grenade for You — Detecting Dirty Frag exploit
Mon, 04 May 2026 07:35:39 GMT CPDoS via Content Negotiation Mechanism web-cache-poisoning
Mon, 18 May 2026 00:04:46 GMT GOOGLE DORK İLE BİLGİYİ HIZLI VE DOĞRU BULMA google-dorking, google-dork, github-dorking
Thu, 21 May 2026 07:55:19 GMT Issue 0x01: Echo Protocol eBTC mint exploit exploit
Thu, 07 May 2026 08:48:21 GMT Driving Operational Value Through Multi Agent Orchestration cybersecurity-tools
Mon, 26 Jan 2026 07:25:06 GMT How Forgotten DNS Records Lead to Subdomain Takeovers subdomain-takeover
Fri, 29 May 2026 07:57:09 GMT From Zero to System Root: The Power of Vulnerability Chaining in ... application-security, remote-code-execution
Tue, 23 Sep 2025 13:01:51 GMT Why Email Marketing Is the Secret Growth Tool for Directory Websi... directory-listing
Thu, 28 Sep 2023 23:05:39 GMT Archangel — TryHackMe log-poisoning
Sat, 30 May 2026 07:44:36 GMT CoralSentinel — One Coral SQL Query to Stop Your AI Stack From ... cve
Fri, 06 Mar 2026 12:01:01 GMT Salí de compras y terminé en Roma bounty-program
Sat, 30 May 2026 15:29:20 GMT How to Choose a Target That Won’t Waste Your Time bug-bounty-tips, bugbounty-writeup, bug-bounty-writeup, bug-bounty-hunter
Fri, 08 May 2026 10:26:57 GMT Cross-site Scripting (XSS) in detail.. cross-site-scripting
Thu, 07 May 2026 06:41:01 GMT Github Dorking dorking, github-dorking
Tue, 22 Apr 2025 10:38:20 GMT Trump’s Tariffs Cut Out Censys — ZoomEye Steps In Strong! zoomeye
Tue, 14 Apr 2026 09:57:40 GMT Pentester Lab 06 Writeup recon
Wed, 20 May 2026 15:01:03 GMT Breaking AI Platforms: How an SSRF in Open WebUI Enabled Internal... ssrf
Sat, 23 May 2026 12:17:56 GMT Two Signatures, One Nonce, Zero Secrets: A FROST Crypto Bug Story security-research
Fri, 01 Aug 2025 06:17:06 GMT 15,000 Critical Systems Are Exposed — Thanks to This Outdat... censys
Fri, 17 Apr 2026 15:39:41 GMT Bug Bounty 2026: Why the “End of the World� is Actually a $50... bounties
Thu, 07 May 2026 15:59:11 GMT CTF Solution: Information Disclosure and Privilege Escalation on ... information-disclosure
Fri, 23 May 2025 06:02:53 GMT Search Skills censys
Fri, 17 Apr 2026 19:01:54 GMT The Ultimate Guide to Wayback Machine Dorking for Deleted Leaks dorking
Thu, 04 Dec 2025 04:45:36 GMT What is Google Dorking? dorking
Tue, 10 Mar 2026 09:59:23 GMT I Thought I Found 259 Exposed Systems in Bengaluru… I Was Wrong shodan
Wed, 08 Apr 2026 19:31:38 GMT Pentester Labs Recon 00 write up recon
Mon, 02 Mar 2026 00:00:27 GMT TakeOver | TryHackMe Write-up subdomain-takeover
Wed, 20 May 2026 15:59:38 GMT ⚙� 02. — Stored XSS into HTML context with nothing encoded xss-attack
Tue, 21 Apr 2026 14:42:50 GMT Web Security Series # 16— Exploiting Local File Inclusion (LFI) file-inclusion
Fri, 11 Jul 2025 16:20:24 GMT PC WORX: The Hidden Risk in Your Industrial Network censys
Sun, 17 May 2026 02:56:19 GMT The 3 Bug Hunting Habits That Made Me Go From $0 to $5k (And None... bug-bounty-hunter, bug-bounty-program
Fri, 08 May 2026 08:02:20 GMT Unauthenticated RCE via WebLogic WLS-WSAT (CVE-2019–2725) remote-code-execution
Tue, 05 Aug 2025 00:19:11 GMT Breaking Recon with AMASS subdomain-enumeration
Tue, 19 May 2026 11:05:00 GMT Understanding Cross-Site Scripting (XSS): The Silent Killer of We... xss-vulnerability
Tue, 26 May 2026 13:15:48 GMT The Zero-Day That Could Hand Attackers the Keys to Millions of Ho... cve
Sat, 30 May 2026 23:54:28 GMT The Hidden Danger Behind Systems: Memory and Type Safety infosec
Sat, 30 May 2026 23:38:20 GMT Après-climb: the Security + Privacy Weekend Magazine for May 30â... infosec
Sun, 10 May 2026 08:12:20 GMT Why Hunter × Hunter Is Still One of the Greatest Anime Ever bug-bounty-hunter
Fri, 06 Jun 2025 15:47:21 GMT ��♂� GitHub Dorking for Bug Bounty: Hackers' Hidden Playg... github-dorking
Tue, 26 May 2026 15:21:29 GMT File Uploads in Python APIs — From Broken to Bulletproof file-upload
Fri, 27 Mar 2026 11:01:08 GMT Finding XSS Through HTML Injection — Without Fuzzing Tools xss-bypass
Thu, 28 May 2026 17:05:11 GMT Stack Crash Investigations: Load Balancer Betrayal bugs
Mon, 11 May 2026 04:25:50 GMT Google Dorking for Beginners: Ghosting the Network google-dorking
Mon, 13 Apr 2026 03:31:01 GMT Google Dorks Google Ko Bana Do Apna Hacking Tool: Free Mein Bugs ... google-dork, github-dorking
Sun, 10 May 2026 06:59:45 GMT When a Simple ‘git push’ Becomes Dangerous: Lessons from the ... remote-code-execution
Tue, 12 May 2026 14:49:27 GMT Side Quest: “Copy Fail� security-research
Mon, 04 May 2026 23:53:49 GMT Break The Syntax CTF — Web Challenge 2 Writeup lfi
Tue, 17 Mar 2026 09:18:53 GMT Web Security Series #6 — Exploiting SQL Injection to Extract Se... bug-bounty-hunting
Sun, 24 May 2026 14:24:24 GMT How i found an ATTACK CHAIN and got CVE-2026–42558 xss-attack
Fri, 22 May 2026 06:26:36 GMT Modern threats move faster than traditional security tools. vapt
Fri, 22 May 2026 01:24:22 GMT From a Simple Profile Endpoint to a 100k+ User IDOR on HackerRank idor
Wed, 27 May 2026 07:13:49 GMT XSS Introduction Walkthrough Notes | TryHackMe xss-vulnerability
Wed, 21 Jan 2026 15:09:15 GMT Lab: Weak isolation on dual-use endpoint | Portswigger web-cache-poisoning
Sat, 14 Mar 2026 01:59:36 GMT LFI/RFI lfi
Thu, 02 Apr 2026 17:35:36 GMT How I Found a Subdomain Takeover via BetterUptime subdomain-takeover
Thu, 28 May 2026 06:06:51 GMT Improving User Experience Through Quality Assurance bugs
Wed, 27 May 2026 08:42:26 GMT Open Source Transparency Was a Moat — AI Is Turning It Into a L... vulnerability-disclosure
Tue, 05 May 2026 09:32:07 GMT Google Dorks — Advanced Search google-dorking, google-dork
Sat, 23 May 2026 13:28:01 GMT What Transmission Channels Secretly Do to Your Documents file-upload
Tue, 19 May 2026 17:44:55 GMT Day 5: Footprinting & Reconnaissance -How Attackers Know Everythi... google-dorking
Thu, 11 Sep 2025 22:20:14 GMT It’s Coming: DorkFi Delivers PreFi Rewards Surge dorking
Sun, 10 May 2026 13:23:04 GMT Google XSS game report xss-vulnerability
Tue, 05 May 2026 22:10:53 GMT LFI Prevention: How to Actually Fix File Inclusion Vulnerabilitie... local-file-inclusion
Fri, 29 May 2026 05:12:37 GMT How I Found an Exposed CBI Banking Panel security-research
Wed, 18 Feb 2026 21:56:48 GMT Chapter 14: Subdomain Takeover subdomain-takeover
Tue, 14 Apr 2026 04:51:21 GMT Top Cybersecurity Tools Experts Use cybersecurity-tools
Thu, 21 May 2026 02:58:01 GMT HTB Web Attacks - Skill Assessment idor
Fri, 31 May 2024 13:29:16 GMT Map of the worlds best URLs 2025 log-poisoning
Tue, 28 Apr 2026 20:00:52 GMT Official Blind XSS Platform Update (2026) xss-bypass
Fri, 29 May 2026 18:23:16 GMT CSRF Account Takeover: Rejected by the Security Team, Rewarded by... bug-bounty-writeup
Tue, 10 Feb 2026 23:04:46 GMT Effective Dorking Tools dorking
Wed, 11 Feb 2026 21:37:40 GMT From Course Notes to CVE: How a GXPN Study Session Uncovered a 40... vulnerability-disclosure
Fri, 01 May 2026 12:41:01 GMT How I Found Sensitive Data Exposure on Screenly’s API — A Bug... information-disclosure
Wed, 22 Oct 2025 14:11:32 GMT Mastering Subdomain Enumeration: A Beginner’s Guide to Expandin... subdomain-enumeration
Mon, 04 May 2026 12:16:22 GMT Upload file and fill up HTML form with express multer backend file-upload
Sun, 03 May 2026 14:59:22 GMT Your secrets deserve better than plaintext: why I designed Keyden... api-key
Sat, 30 May 2026 18:19:20 GMT Admin Dashboard Accessible Without Authentication web-security, vulnerability-disclosure
Sun, 26 Apr 2026 16:31:24 GMT ��♂� How I Find Critical Data Leaks Using Just Google Sea... google-dork
Tue, 14 Apr 2026 13:07:05 GMT My “Gemini� Is Named Mike dorks
Tue, 04 Nov 2025 07:31:55 GMT Google Dorking dorks
Fri, 29 May 2026 13:15:09 GMT How to install and configure Vigolium for vulnerability scanning vulnerability-scanning
Mon, 16 Mar 2026 14:32:42 GMT Web Security Series #5 — Exploiting Broken Access Control via T... bug-bounty-hunting
Wed, 27 May 2026 18:31:00 GMT 24 Characters to Super Admin idor
Tue, 26 May 2026 18:45:16 GMT Wazuh: CVE-2026–25769 Walkthrough — TryHackMe Lab cve
Thu, 16 Apr 2026 11:14:18 GMT Finance in Nigeria Just Moved to WhatsApp bounty-program
Wed, 27 May 2026 11:56:41 GMT Anthropic Security Plugin-Catch Security Issues as Claude Writes ... application-security
Tue, 24 Mar 2026 17:48:00 GMT The Ultimate Bug Bounty Course: From Zero to Advanced Hacker 1 bug-bounty-hunting
Sat, 16 May 2026 13:28:19 GMT Cross-Site Scripting (XSS) Explained: A Simple Guide cross-site-scripting
Fri, 15 May 2026 22:38:31 GMT XSS Discovery: How Hackers Actually Find Cross-Site Scripting Vul... cross-site-scripting
Mon, 27 Apr 2026 20:32:13 GMT When Features Do More Than They Should bugcrowd
Thu, 30 Apr 2026 15:04:04 GMT I Almost Scrolled Past This URL… Then I Got Curious local-file-inclusion, lfi
Mon, 25 May 2026 03:22:06 GMT My Experience With H&M’s Bug Bounty Program bug-bounty-hunter
Thu, 14 May 2026 15:38:47 GMT NGINX Rift (CVE-2026-42945): The Bug That’s Been Hiding Since 2... remote-code-execution
Fri, 12 Dec 2025 06:49:56 GMT How Variable Data Technology is Transforming Postcard & Brochure ... vdp
Mon, 20 Apr 2026 05:11:01 GMT Stop Hardcoding Your API Keys api-key
Fri, 29 May 2026 17:22:37 GMT Cracking SameSite for a $2,000 Web Cache Deception hackerone, bug-bounty-writeup, web-cache-poisoning
Sat, 30 May 2026 20:11:55 GMT How to Reduce False Positives in Security Scanning Pipelines application-security
Sat, 23 May 2026 14:42:00 GMT The Subdomain Discovery Method That Actually Finds Forgotten Serv... recon
Sun, 24 May 2026 22:51:29 GMT How I Used a Race Condition to Get Unlimited Subscriptions from O... hackerone
Sun, 07 Dec 2025 06:18:32 GMT Breaking the Perimeter: How My Custom Python Tool Bypassed a Fede... vdp
Tue, 18 Nov 2025 18:12:40 GMT Dork Labs Awarded AWS Activate Startup Grant dorks
Sat, 28 Mar 2026 08:13:46 GMT How Exposed n8n Webhooks Become an Attack Surface shodan
Sat, 30 May 2026 16:19:26 GMT JWT Security Risks: Common Vulnerabilities and How to Prevent The... web-security, application-security
Sat, 09 May 2026 02:26:22 GMT How I Discovered a Reflected XSS Vulnerability on a Major German ... cross-site-scripting, xss-vulnerability, xss-bypass
Sat, 02 May 2026 01:22:29 GMT Penetration Testing Report: Authorized Security Assessment of Bit... pentest
Wed, 08 Apr 2026 22:09:58 GMT How I Discovered a Blind SQL Injection in a Private program bugcrowd
Tue, 12 May 2026 07:31:21 GMT DarkSword: Building a Browser-Based C2 for iOS Research security-research
Mon, 11 May 2026 18:49:45 GMT Six locks on a 256-byte secret: reverse-engineering an Android fa... security-research
Mon, 04 May 2026 12:56:26 GMT Beyond alert(1): Advanced XSS Payload Crafting, Filter Bypasses &... xss-bypass
Thu, 26 Mar 2026 00:32:02 GMT Révolution Lumière lfi
Mon, 11 May 2026 10:10:03 GMT Is This The End of Cybersecurity? security-research
Sun, 22 Oct 2023 19:57:30 GMT Performing a Log Poisoning Attack log-poisoning
Thu, 28 May 2026 20:52:27 GMT Crate & Sleeve (SXSS) (WebVerse-pro.com) xss-vulnerability
Sun, 19 Apr 2026 15:57:12 GMT XSS Bypass urlparse filter evasion in Python xss-bypass
Sun, 24 May 2026 15:03:53 GMT Support | TryHackMe | Walkthrough local-file-inclusion
Sun, 17 May 2026 19:43:14 GMT Business Logic Vulnerability Leading to Negative Cart Values and ... security-research
Sun, 26 Apr 2026 23:11:15 GMT From Data Dumping to Bug Hunting: Building a Recon Pipeline That ... recon
Thu, 28 May 2026 16:33:00 GMT CONTENT DISCOVERY-TRYHACKME WALKTHROUGH google-dorking
Mon, 13 Apr 2026 06:37:51 GMT File Inclusion on DVWA file-inclusion
Tue, 19 May 2026 15:18:30 GMT Securing OpenClaw: Removing Plaintext Credentials from Config Fil... api-key
Wed, 13 May 2026 13:34:08 GMT HackTheBox — Kobold Writeup | CVE-2026–23520|MCPJam RCE|Do... rce
Mon, 27 Apr 2026 09:39:12 GMT Top Cyber Security Tools Every Beginner Should Learn in 2026 cybersecurity-tools
Thu, 28 May 2026 12:51:00 GMT Why Simpler Document Workflows Create Better Operations file-upload
Tue, 11 Nov 2025 16:43:14 GMT Beyond Google: Navigating the Hidden Internet with Shodan and Cen... censys
Fri, 08 May 2026 22:01:34 GMT AI Is Breaking the Two Rules That Kept the Internet Safe — And ... vulnerability-disclosure
Wed, 27 May 2026 23:02:16 GMT CVE-2025–54123 Hoverfly ≤1.11.3 Command Injection (RCE) Case ... rce
Wed, 17 Dec 2025 09:57:30 GMT The Mother Lode: Hacking with GitHub Dorking github-dorking
Wed, 27 May 2026 01:27:45 GMT The File Upload Check That 90% of Hunters Forget (And How I Got $... bug-bounty-tips, bugbounty-writeup
Thu, 28 May 2026 15:59:28 GMT File Inclusion Vulnerability Assessment file-inclusion
Sun, 24 May 2026 16:30:06 GMT Easy Way To Get Your First Vulnerability hackerone
Thu, 09 Apr 2026 17:39:27 GMT From 401 to BAC: How a Refresh Broke Workspace Authorization vulnerability-disclosure
Wed, 19 Nov 2025 19:44:02 GMT The Pulse of Liquidity: How DorkFi’s Interest Rates Adapt in Re... dorks
Wed, 20 May 2026 20:47:25 GMT FINDING INFORMATION QUICKLY AND ACCURATELY WITH GOOGLE DORK google-dorking, google-dork, github-dorking
Tue, 19 May 2026 14:13:53 GMT Guildford to Box Hill dorking
Thu, 14 Aug 2025 10:08:18 GMT Predictive Analytics and Voice Technology: A Winning Combination ... vdp
Mon, 02 Feb 2026 17:05:37 GMT Lab: Web cache poisoning to exploit a DOM vulnerability via a cac... web-cache-poisoning
Tue, 28 Apr 2026 11:47:05 GMT What Tools Do Cyber Security Experts Actually Use Every Day? (And... cybersecurity-tools
Sat, 25 Apr 2026 23:23:58 GMT How to Avoid Hardcoding API Keys in mcp.json api-key
Sun, 17 May 2026 12:03:55 GMT Remote Code Execution (RCE) from a Secure Code Review Perspective rce
Thu, 13 Mar 2025 18:09:56 GMT How I Found Sensitive Information using Github Dorks in Bug Bount... github-dorking
Tue, 13 Jan 2026 13:27:13 GMT Hacking “Time�: When Critical Infrastructure Forgets to Set a... vulnerability-disclosure
Mon, 04 May 2026 19:01:35 GMT LFI to RCE: Weaponizing File Uploads with PHP Shells local-file-inclusion
Mon, 18 May 2026 22:07:24 GMT Back to the Labs ~ Quick Update Before the Real Content Drops pentest
Wed, 23 Jul 2025 15:15:01 GMT TryHackMe Include walkthrough: SSRF, log poisoning & LFI2RCE, wit... log-poisoning
Sun, 10 May 2026 04:47:12 GMT The Mathematics of the Other information-disclosure
Sun, 17 May 2026 15:50:44 GMT Web Cache Poisoning web-cache-poisoning
Tue, 24 Mar 2026 07:41:00 GMT How I Built a Directory Listing Site (ToolIndex.net) and What I L... directory-listing
Mon, 20 Apr 2026 13:01:27 GMT AI-Driven Penetration Testing: Integrating Kali Linux Arsenal wit... pentest
Wed, 20 May 2026 16:13:27 GMT Stored XSS via Markdown URL Attribute Injection — How I Earned ... xss-attack
Mon, 25 May 2026 09:26:41 GMT Web Önbelleği Zehirlenmesi web-cache-poisoning
Fri, 25 Jul 2025 16:41:01 GMT � SubDNS-UI: Build Your Own Subdomain + DNS Enumerator with a C... subdomain-enumeration
Thu, 02 Apr 2026 18:59:50 GMT File Inclusion (LFI/RFI) — Extracting Sensitive Data from confi... file-inclusion
Sat, 23 May 2026 17:17:42 GMT Why My 100% Proof Met a 0% Bounty: The WordPress REST API Trap hackerone
Tue, 14 Apr 2026 10:19:13 GMT Pentester Lab Recon 07 Writeup recon
Thu, 28 May 2026 16:30:30 GMT Waiting for the Words bugs
Fri, 19 Sep 2025 07:40:16 GMT How I Tracked Our Clients’ Device Versions Without Direct Repor... zoomeye
Mon, 25 May 2026 18:25:06 GMT I Put an XSS Payload as My Contact Name, and a Bank Paid the Pric... xss-attack
Thu, 21 May 2026 15:16:28 GMT How to Bypass LinkedIn Commercial Use Limit in 2026 (Without Payi... google-dorking
Wed, 27 May 2026 12:54:11 GMT How Hackers Break Mobile Apps (And How You Can Too) vapt
Mon, 06 Apr 2026 13:55:29 GMT The 7 Golden Rules of Vulnerability Scanning vulnerability-scanning
Sat, 11 Apr 2026 13:56:44 GMT Top Cybersecurity Tools for Beginners: A Complete List (2026) |K... cybersecurity-tools
Tue, 19 May 2026 14:59:33 GMT AI vulnerability scanning needs an attacker story security-research
Sat, 30 May 2026 12:19:40 GMT Race condition on add 1 free domain bugs
Tue, 23 Dec 2025 06:58:24 GMT How I Found Vulnerabilities in NASA and Got into the Hall of Fame vulnerability-disclosure
Tue, 18 Nov 2025 13:26:47 GMT GitHub Dorking: The Hunter’s Guide to Finding Secrets in Public... github-dorking
Thu, 21 May 2026 02:49:34 GMT How I Hunt Broken Access Control idor
Wed, 18 Mar 2026 14:34:33 GMT File Inclusion Zafiyetleri: LFI ve RFI Nedir, Nasıl Çalışır ... file-inclusion
Sat, 09 May 2026 23:55:54 GMT Earn Up To $200 Creating Content About Crypto Payments With Kivor... bounty-program
Fri, 17 Apr 2026 04:53:23 GMT How I Found an Exposed Google Maps API Key on a Global Brand’s ... vdp
Sat, 11 Apr 2026 05:28:40 GMT Pentester Recon 03 Write Up recon
Sat, 18 Apr 2026 05:07:38 GMT We’re About to Stop Trusting What We See Online — And AI Is t... cyber-sec