Skip to content

rix4uni/medium-writeups

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 
 
 
 
 
 
 
 
 

Repository files navigation

Time Title Feed IsNew IsToday
Sun, 11 Jan 2026 05:42:12 GMT What Is a Passkey? security Yes Yes
Sun, 11 Jan 2026 02:51:14 GMT 30 Days of Red Team: Day 14 — Week 2 Integration Lab hacking Yes
Sun, 11 Jan 2026 02:09:30 GMT Manage My Health breach: a practical NZ guide to compensation security Yes
Sun, 11 Jan 2026 05:17:09 GMT VulnOS v2 — VulnHub Walkthrough cybersecurity, penetration-testing Yes
Sun, 11 Jan 2026 04:58:15 GMT I Turned an EXE Into Music (and it actually tells you something) cybersecurity Yes
Sun, 11 Jan 2026 03:28:07 GMT THM-BankGPT Writeup Walkthrough hacking, pentesting Yes
Sun, 11 Jan 2026 00:43:21 GMT Go’s Eternal Dilemma: When Will We Get Proper Enums and Union T... information-technology Yes
Sun, 11 Jan 2026 03:17:54 GMT TryHackMe: Iron Corp Writeup pentesting, information-security Yes
Sun, 11 Jan 2026 02:45:54 GMT Threat Management as Frontend Engineer — XSS security, xss-attack, xss-vulnerability Yes
Sun, 11 Jan 2026 05:37:29 GMT Man-in-the-Middle Attacks: The Invisible Eavesdropper Between You... cybersecurity Yes
Sun, 11 Jan 2026 05:02:25 GMT First Learn, Then Earn: My Day 1 Journey into Bug Bounty Hunting bug-bounty, cybersecurity, ethical-hacking Yes
Sun, 11 Jan 2026 03:01:20 GMT 100 Everyday Security Risks People Don’t Realize Can Compromise... information-technology, information-security Yes
Sun, 11 Jan 2026 04:02:50 GMT How AI is Used in Cybersecurity cybersecurity Yes
Sun, 11 Jan 2026 02:50:57 GMT Unlocking the Power of CeWL: Advanced Recon & Wordlist Engineerin... security, hacking, information-security Yes
Sun, 11 Jan 2026 00:46:54 GMT Wgel CTF TryHackMe Write UP infosec, pentesting Yes
Sun, 11 Jan 2026 01:29:47 GMT Google Dorking: A Powerful Search Technique information-security, ethical-hacking Yes
Sun, 11 Jan 2026 01:51:33 GMT WireGuard VPN on Raspberry Pi: Your Personal Secure Gateway security Yes
Sun, 11 Jan 2026 00:28:36 GMT Pilots Suck information-technology Yes
Sun, 11 Jan 2026 05:02:46 GMT AWS Security Hub cybersecurity Yes
Sun, 11 Jan 2026 04:54:40 GMT I Trust Math, But I Don’t Trust People: Why I Built ROOM-39 security, cybersecurity Yes
Sun, 11 Jan 2026 04:42:01 GMT Bypassing SSRF Protections: A $10,000 Lesson from Slack bug-bounty, hacking, infosec, bug-bounty-tips, ssrf Yes
Sun, 11 Jan 2026 02:22:01 GMT Dare to Live in an Era Where Private Data Is Endlessly Recycled T... hacking Yes
Sun, 11 Jan 2026 05:32:48 GMT 7 iPhone Security Settings You Should Turn on Right Now security Yes
Sun, 11 Jan 2026 03:58:32 GMT ClickFix Is Rising — And It’s Scarily Brilliant cybersecurity, hacking, information-technology Yes
Sun, 11 Jan 2026 02:40:04 GMT Same God, New Year. vulnerability Yes
Sun, 11 Jan 2026 04:35:29 GMT The Architecture of Zero Trust: Why We Built ROOM-39 as an iOS PW... security, cybersecurity, information-technology Yes
Sun, 11 Jan 2026 03:59:52 GMT Cyber Sherlock Weekly Update: 11 January 2026 security, cybersecurity, hacking Yes
Sun, 11 Jan 2026 02:50:00 GMT Getting Started with CeWL: Build Custom Wordlists Like a Cybersec... security, hacking, information-security Yes
Sun, 11 Jan 2026 00:20:13 GMT Android Services Attack Surface penetration-testing Yes
Sun, 11 Jan 2026 02:14:31 GMT Otters and GraphQL — Bugforge Daily hacking Yes
Sun, 11 Jan 2026 02:55:23 GMT Can an Average Student Learn Ethical Hacking in 2026? ethical-hacking Yes
Thu, 18 Dec 2025 09:40:45 GMT DOM XSS Using Web Messages and Javascript URL (window.postMessag... cross-site-scripting
Thu, 13 Feb 2025 03:29:37 GMT ZoomEye Meets DeepSeek: AI-Powered Cyberspace Intelligence zoomeye
Thu, 11 Dec 2025 17:36:39 GMT ️ Digital Archaeology: How to Unearth Hidden Technical Manuals ... google-dork
Sat, 06 Dec 2025 06:43:54 GMT The Midnight Pwn: How a News Alert Led to a Critical Bounty vulnerability-disclosure
Sat, 27 Dec 2025 22:36:41 GMT CodePartTwo HTB Walkthrough rce
Mon, 29 Dec 2025 23:14:04 GMT Deep Dive Into CVE-2025–66478: Understanding React Server Compo... remote-code-execution
Thu, 04 Dec 2025 00:58:22 GMT Zero In on Targets: Automating the Modern Attack Surface with Ze... bug-bounty-hunting
Tue, 22 Apr 2025 10:38:20 GMT Trump’s Tariffs Cut Out Censys — ZoomEye Steps In Strong! zoomeye
Fri, 19 Dec 2025 18:16:46 GMT Information disclosure, but not in the way you might expect information-disclosure
Fri, 02 Jan 2026 04:23:21 GMT WordPress Plugin LFI Vuln Lab 1 local-file-inclusion
Thu, 21 Aug 2025 19:05:59 GMT Cracking GeneQuest: Two Critical Bugs and My 19th Place Finish at... bug-bounty-hunting
Sun, 04 Jan 2026 17:27:40 GMT Neighbour — THM Walkthrough idor
Sat, 10 Jan 2026 05:28:06 GMT Security Mistakes Frontend Engineers Make (Even at Senior Level) web-security
Fri, 02 Jan 2026 09:59:04 GMT 2 Years of Silence, 1 Critical Exploit: My Return to the Leaderbo... bugcrowd
Sat, 06 Dec 2025 08:29:35 GMT The Midnight Epiphany: How a News Notification Cracked My Stubbor... vulnerability-disclosure
Tue, 06 Jan 2026 06:05:21 GMT AlphaArena AI Model Battle: A Hands-On Guide to Replicating DeepS... api-key
Tue, 06 Jan 2026 13:33:45 GMT Why Frontend Bugs Only Appear After Deployment bugs
Sat, 10 Jan 2026 06:29:07 GMT What the Internet Sees Before an Attacker Strikes: Lessons from E... application-security
Sun, 28 Dec 2025 08:13:44 GMT Subzy Tool subdomain-takeover
Tue, 18 Nov 2025 21:32:05 GMT How I Received an Appreciation Letter from NASA for Identifying a... bounties
Sat, 10 Jan 2026 18:23:01 GMT Creating a Flexible IT Strategy That Keeps Up With Change information-technology
Wed, 17 Dec 2025 07:44:54 GMT Intro to Vulnerability Scanners: What They Tell You and What They... cybersecurity-tools
Sat, 27 Dec 2025 19:47:42 GMT Inside the Hacker Toolkit: Devices That Shape Modern Cybersecurit... security-research
Fri, 17 Oct 2025 12:35:12 GMT Fortifying Your Fortress: Securing API Keys with Android NDK api-key
Sat, 10 Jan 2026 18:52:08 GMT Aseel alternatives to GoFundMe,FundRaisup,Muslimi and Etsy information-technology
Tue, 06 Jan 2026 13:09:42 GMT Server Side Request Forgery (SSRF) ssrf
Wed, 09 Jul 2025 05:05:20 GMT ZoomEye Dorking with Nuclei zoomeye
Sat, 10 Jan 2026 23:58:08 GMT Hacking the ‘Disaster Prepper’ Paradigm: Ep. #4 — When ... hacking
Sat, 10 Jan 2026 22:39:32 GMT TOP WEB challenge || FahemSec xss-vulnerability
Sat, 10 Jan 2026 09:03:04 GMT Your CEO’s Password Is Probably in a Stealer Log Right Now infosec, bug-bounty-tips
Sat, 27 Dec 2025 16:40:19 GMT From Nobody to Admin: A Short, Practical Guide to Privilege Escal... bugbounty-writeup
Mon, 24 Nov 2025 02:45:22 GMT The art of google dorking google-dork
Thu, 08 Jan 2026 14:51:06 GMT Trust Wallet, Port3, Gana Payment: $10.3M exploit
Wed, 31 Dec 2025 09:03:44 GMT Prototype Pollution → Template Injection → RCE The Vulnerable... rce
Tue, 07 Oct 2025 04:21:28 GMT Fastly Subdomain Takeover leading to $$$$ Bounty Reward subdomain-takeover
Sat, 10 Jan 2026 17:59:58 GMT Why Sharing State Is the Real Performance Bug bugs
Wed, 07 Jan 2026 11:48:47 GMT DOM XSS Lab 3 & 4: Anatomy of document.write and innerHTML Attack... xss-attack, xss-vulnerability
Sat, 10 Jan 2026 00:09:56 GMT Common Security Bugs in Go — Part 2: Filesystem & Input Han... application-security
Tue, 15 Jul 2025 18:57:57 GMT ZoomEye Dorking | JSON Endpoints zoomeye
Sat, 10 Jan 2026 10:06:35 GMT Secure the Glue 1: Rapid risk Assessment for N8N workflow application-security
Sat, 10 Jan 2026 17:42:14 GMT How End-to-End Encryption Works in WhatsApp ? cyber-security-awareness
Fri, 09 Jan 2026 10:36:30 GMT : … exploit
Mon, 08 Dec 2025 14:10:35 GMT Manual and Periodic Security Scanning with Trivy vulnerability-scanning
Wed, 24 Dec 2025 09:32:39 GMT Why Modern Web Pentesting Is Testing the Wrong Things vapt
Tue, 18 Nov 2025 13:26:47 GMT GitHub Dorking: The Hunter’s Guide to Finding Secrets in Public... github-dorking
Sat, 10 Jan 2026 10:07:19 GMT ❌ Why Most People Fail in Cybersecurity Even After Learning Too... web-security
Thu, 25 Dec 2025 20:44:15 GMT This Is What Happens When You Expose a System to the Internet security-research
Thu, 28 Sep 2023 23:05:39 GMT Archangel — TryHackMe log-poisoning
Sat, 10 Jan 2026 19:11:11 GMT AWS Privilege Escalation Walkthrough penetration-testing, ethical-hacking
Tue, 15 Jul 2025 08:14:04 GMT Level Up Your Bounties: How to Choose the Best Bug Bounty Program... bug-bounty-program
Thu, 27 Mar 2025 23:46:11 GMT Make Break and Betrayal web-pentest
Wed, 19 Nov 2025 19:44:02 GMT The Pulse of Liquidity: How DorkFi’s Interest Rates Adapt in Re... dorks
Fri, 09 Jan 2026 17:47:11 GMT How I Hacked My College’s Website and Found a CVE Affecting 100... cve
Tue, 23 Dec 2025 07:43:20 GMT Integrating Shodan with HexStrike-AI Using Gemini-CLI shodan
Mon, 22 Dec 2025 12:02:58 GMT Guide 001 | Getting Started in Bug Bounty Hunting.. bug-bounty-hunter
Sat, 23 Aug 2025 09:23:31 GMT URLScan Dorking to find WordPress Registration Endpoint dorking
Fri, 12 Dec 2025 06:49:56 GMT How Variable Data Technology is Transforming Postcard & Brochure ... vdp
Mon, 11 Aug 2025 07:41:16 GMT How I Found an XSS Vulnerability in the KPK Website and Earned a ... vdp
Fri, 09 Jan 2026 16:42:57 GMT You wouldn’t wanna escape this security ni8mare: Exploiting n8n... exploit
Wed, 16 Jul 2025 12:07:42 GMT Hackers Love This 1979 Protocol (Because It Can’t Defend Itself... censys
Mon, 15 Dec 2025 12:59:16 GMT Modat Magnify Cyber Dorking dorking
Mon, 03 Nov 2025 00:58:47 GMT Digital Crack: Google’s Tips and Tricks google-dork
Thu, 14 Aug 2025 10:54:38 GMT Unlocking the Hidden Power of Search Engines censys
Sat, 10 Jan 2026 21:33:14 GMT One difficult virtual machine startup Problem: The quest to find ... penetration-testing, ethical-hacking
Wed, 09 Jul 2025 01:02:19 GMT Start with VDPs Before Aiming for Private Bug Bounty Programs vdp
Tue, 16 Dec 2025 13:38:33 GMT SOC170 — Passwd Found in Requested URL — Possible LFI... local-file-inclusion
Sat, 10 Jan 2026 11:09:41 GMT Exposing “myspeedpost.com” India Post Scam cyber-security-awareness
Sun, 28 Dec 2025 22:42:39 GMT Host Header Injection in Password Reset Function Leading to Accou... ssrf
Sat, 03 Jan 2026 03:04:51 GMT IDOR Is Not Just id=123: A Simple Guide to Smarter IDOR Hunting idor
Thu, 08 Jan 2026 11:02:21 GMT Why Reflected XSS Is Still Dangerous (Even When Developers Ignore... xss-vulnerability
Thu, 25 Dec 2025 00:47:15 GMT Subdomain Takeover Explained: Complete Step-by-Step Guide (Recon ... subdomain-takeover
Sat, 10 Jan 2026 11:21:59 GMT The €400 Bug - VPN/Geo Location Bypass bug-bounty, vulnerability, bug-bounty-writeup
Tue, 06 Jan 2026 07:31:47 GMT Why Most Async Code Passes Tests but Can Fail in Production bugs
Sun, 28 Dec 2025 10:15:40 GMT Cross-Site Scripting (XSS) | Vulnerability cross-site-scripting
Thu, 08 Jan 2026 07:21:07 GMT Critical n8n Security Vulnerability (CVE-2026–21858) Demands Im... rce
Sun, 04 Jan 2026 07:56:03 GMT Local File Inclusion lead to Admin Account Takeover local-file-inclusion
Tue, 14 Oct 2025 01:36:00 GMT Hackviser  —  File Inclusion Labs file-inclusion
Wed, 07 Jan 2026 13:06:38 GMT When the default configuration turns you “Super(up)set”? security-research
Sun, 13 Jul 2025 16:32:21 GMT ProConOS Exposed: What ICS Security Teams Need to Know censys
Thu, 08 Jan 2026 17:21:23 GMT Why ORMs Hide Performance Bugs in Spring Boot (And How They Sneak... bugs
Fri, 09 Jan 2026 17:01:14 GMT Truebit Protocol Exploit: How a Silent Overflow Led to a $26M Los... exploit
Wed, 01 Oct 2025 07:48:16 GMT HTB File Inclusion Skills Assessment Write-Up | Sumace Consultin... local-file-inclusion
Tue, 04 Nov 2025 10:31:54 GMT LFI vs RFI — When Your Website Starts Reading the Wrong Fil... lfi
Wed, 03 Dec 2025 22:42:41 GMT Critical Vulnerabilities in React and Next.js: Security Advisory shodan
Sat, 10 Jan 2026 19:47:05 GMT 86% of Organizations Delayed AI Deployments Due to Security information-security, application-security
Fri, 09 Jan 2026 05:07:38 GMT IDOR in 2026: Same Bug, Bigger Damage — 10 GB of Chat Histo... idor
Sat, 10 Jan 2026 18:04:04 GMT Ottergram Writeup (BugForge) information-security
Thu, 11 Sep 2025 22:20:14 GMT It’s Coming: DorkFi Delivers PreFi Rewards Surge dorking
Fri, 24 Jan 2025 00:08:47 GMT A majestic temple opportunity of wellbeing and wellness web-pentest
Mon, 05 Jan 2026 15:16:55 GMT Crypto Attackers Don’t Take Year-End Holidays exploit
Fri, 06 Jun 2025 15:47:21 GMT ️‍♂️ GitHub Dorking for Bug Bounty: Hackers' Hidden Playg... github-dorking
Mon, 05 Jan 2026 14:33:42 GMT Mastering EIP-712: A Practical Hands-on Guide security-research
Fri, 09 Jan 2026 12:03:29 GMT Cyber Security Services for Modern Enterprises vapt
Thu, 11 Sep 2025 19:41:41 GMT Smol thm walkthrough lfi
Sat, 10 Jan 2026 07:02:54 GMT How a Simple Email List Got Me My First Bug Bounty bug-bounty-tips, bugs, bug-bounty-writeup
Mon, 29 Dec 2025 22:31:02 GMT PortSwigger Academy Lab: Information disclosure on debug page information-disclosure
Thu, 08 Jan 2026 10:38:04 GMT Metasploit Framework: Siber’in İsviçre Çakısı ve İlk Roo... exploit
Thu, 08 Jan 2026 13:48:25 GMT Blind Server Side Request Forgery — A Portswigger ssrf
Fri, 09 Jan 2026 14:09:03 GMT CVE-2026-21876: A Short Story of a WAF Bypass Discovery cve
Thu, 08 Jan 2026 17:56:45 GMT CVE-2025–51414:Unrestricted file upload in Online Course Regist... cve
Sat, 10 Jan 2026 19:39:58 GMT The $4.5 Million Hardware Store That Wasn’t: Inside LA’s Augu... information-security
Sat, 10 Jan 2026 15:40:33 GMT How Browsers Track You Without Cookies cyber-security-awareness
Sat, 06 Dec 2025 02:02:13 GMT Before the Breach: Understanding Scanning & Enumeration in Cyber ... vulnerability-scanning
Thu, 25 Dec 2025 14:25:08 GMT How to Find P1 Bugs using Google in your Target — (Part-3) bugbounty-writeup
Wed, 07 Jan 2026 00:58:19 GMT Why Your Cache Rules are Leaking User Data (Web Cache Deception) web-cache-poisoning
Sun, 26 Oct 2025 15:07:57 GMT LFI: A Guide to Exploit It local-file-inclusion, lfi
Wed, 08 Oct 2025 13:36:28 GMT Shodan.io|THM - 100-Day Cyber Exploration Writeup..|Day-1 . shodan
Sun, 21 Sep 2025 07:02:30 GMT Affordable but Vulnerable? The Dark Side of CMORE HMI censys
Mon, 24 Nov 2025 01:14:16 GMT How xxx.com Helped Me Land $10K Bounties in Just 1 Week bounty-program
Fri, 24 Oct 2025 12:05:27 GMT Hackers are hijacking domains via forgotten DNS records subdomain-takeover
Tue, 23 Sep 2025 13:01:51 GMT Why Email Marketing Is the Secret Growth Tool for Directory Websi... directory-listing
Tue, 26 Aug 2025 04:38:54 GMT Why Most Directory Websites Fail (and How to Make Yours Succeed) directory-listing
Thu, 08 Jan 2026 09:24:26 GMT When the Privacy Tool Has a Privacy Problem: Finding My First XSS... xss-vulnerability
Sat, 10 Jan 2026 18:35:06 GMT How Registry Edits Wreck Windows And How To Fix Real Slowdowns information-technology
Tue, 23 Dec 2025 15:55:25 GMT Smuggling Orders Past Business Logic bug-bounty-hunter
Sun, 17 Aug 2025 17:58:45 GMT $$$ How I Exploited a Business Logic Flaw to Slash Product Prices... bug-bounty-program
Fri, 26 Dec 2025 00:33:19 GMT Google Dork and OSINT: Discovering Exposed Systems Through Search... google-dorking
Thu, 18 Dec 2025 20:10:01 GMT Google Dorking Nedir? google-dork
Mon, 29 Dec 2025 20:17:33 GMT PortSwigger Academy Lab: Information disclosure in error messages information-disclosure
Fri, 09 Jan 2026 18:30:51 GMT TryHackMe — Poster: A PostgreSQL Exploitation Journey rce
Thu, 08 Jan 2026 19:35:51 GMT Docker Bug: Docker Desktop Crash on macOS: Understanding the Host... bugs
Sun, 24 Aug 2025 20:18:55 GMT How I found an Account Lockout Vulnerability Without Any Tools bug-bounty-program
Thu, 08 Jan 2026 19:01:16 GMT DOM XSS in jQuery anchor href attribute sink using location.searc... xss-attack, xss-vulnerability
Sat, 10 Jan 2026 10:24:00 GMT What is Zero Trust Architecture ? cyber-security-awareness
Tue, 06 Jan 2026 18:31:45 GMT Ghost in the Machine: Bypassing Authentication to Access Live Shi... vulnerability-disclosure
Sat, 10 Jan 2026 05:03:45 GMT Lab:Web cache poisoning via an unkeyed query parameter | Portswi... web-cache-poisoning
Sun, 22 Oct 2023 19:57:30 GMT Performing a Log Poisoning Attack log-poisoning
Wed, 07 Jan 2026 03:27:29 GMT Automating HackerOne Scope Parsing with qsv for Bug Bounty Recon recon
Wed, 05 Nov 2025 07:19:20 GMT Discovering the Secret Security That Makes Your Favorite Apps Wor... api-key
Mon, 24 Nov 2025 02:22:21 GMT Padelify Writeup lfi
Fri, 04 Jul 2025 09:25:20 GMT Lo-Fi — TryHackMe Writeup file-inclusion
Wed, 03 Dec 2025 18:29:09 GMT How I Discovered a Flaw That Let Me Access Enterprise-Only Featur... bounty-program
Wed, 30 Apr 2025 17:08:29 GMT Exploring Subdomains: What They Are and How to Find Them subdomain-enumeration
Tue, 08 Jul 2025 20:49:53 GMT UpDown-Linux-Medium file-inclusion
Sat, 10 Jan 2026 22:41:53 GMT Document, Don’t Just Experience information-technology
Sun, 04 Jan 2026 16:05:46 GMT How I Found 7 XSS Using a Custom Nuclei Template xss-attack
Sat, 16 Aug 2025 17:33:22 GMT PDF.JS Viewer Endpoint Dorking dorking, zoomeye
Fri, 19 Dec 2025 10:48:46 GMT Lab: Server-side template injection with information disclosure v... information-disclosure
Sat, 27 Dec 2025 15:01:34 GMT Breaking the Team: A Deep Dive into Multi-Stage Linux Exploitatio... lfi
Mon, 05 Jan 2026 06:41:59 GMT Account Takeover via IDOR in GraphQL Invitation Flow idor
Fri, 26 Dec 2025 01:38:29 GMT Exploiting WebSocket Information Disclosure to Achieve Account De... idor
Sat, 10 Jan 2026 16:44:51 GMT Automating HackerOne Program Updates with Telegram Notifications bug-bounty, hackerone
Sat, 10 Jan 2026 09:33:53 GMT Understanding HTTP Status Codes infosec, bug-bounty-tips, bugbounty-writeup
Tue, 06 Jan 2026 05:30:00 GMT (CSP) Common Bypass Techniques fo xss-attack
Thu, 04 Dec 2025 04:45:36 GMT What is Google Dorking? google-dorking, dorking, google-dork
Sat, 27 Dec 2025 07:53:36 GMT DOM XSS Using Web Messages and Javascript URL (window.postMessag... cross-site-scripting
Thu, 08 Jan 2026 23:03:48 GMT When a USB Keyboard Becomes a Root Shell: A Walkthrough of the Ex... exploit
Fri, 02 Jan 2026 06:03:41 GMT Is your Frontend Framework React19 ?Beware of React2Shell Vulner... exploit
Sat, 10 Jan 2026 07:19:51 GMT AI Pentesting Methodology — Tryhackme | BankGPT pentesting
Sat, 10 Jan 2026 06:47:36 GMT Ethical Hacking Roadmap for 2026: From ZERO to PRO pentesting
Thu, 18 Dec 2025 10:06:53 GMT Learn Google Dorking: Arama Motorlarıyla Bilgi Keşfi google-dorking, google-dork
Wed, 17 Dec 2025 09:57:30 GMT The Mother Lode: Hacking with GitHub Dorking github-dorking
Fri, 31 Oct 2025 21:30:34 GMT Simple BOUNTY Bonus Guide — October 2025 bounties
Sat, 10 Jan 2026 10:48:44 GMT Released a book “A Practical Introduction to OSS Bug Hunting” bug-bounty, web-security, cve
Sun, 28 Dec 2025 18:59:18 GMT Google Appspot XSS CTF Walkthrough cross-site-scripting
Thu, 09 Oct 2025 18:33:05 GMT 0-click Account Takeover via Punycode bug-bounty-program
Sat, 20 Dec 2025 18:21:40 GMT N0aziXss SubSpectre: Advanced Subdomain Discovery with Intelligen... subdomain-enumeration
Tue, 21 Oct 2025 03:46:36 GMT The Postal Heist of the Web: An Introduction to HTTP Request Smug... bug-bounty-hunting
Wed, 24 Dec 2025 01:59:35 GMT Stale Admin Invitations Lead to Unauthorized Admin Access security-research
Mon, 18 Aug 2025 18:06:38 GMT The Importance of Legal Directory Listings for Your Practice directory-listing
Sat, 10 Jan 2026 22:30:20 GMT Vulnyx “Exec” CTF Writeup penetration-testing
Fri, 09 Jan 2026 07:24:58 GMT VAPT in 2026: Why “Once a Year” Testing is History for UAE Bu... vapt
Fri, 12 Dec 2025 10:55:06 GMT Top 5 Importance of Cyber Security Tools for Small and Medium Bus... cybersecurity-tools
Mon, 05 Jan 2026 07:17:42 GMT Complete IDOR Guide: Beginner → Advanced idor
Mon, 08 Dec 2025 11:02:43 GMT Comisiones de trading DESACTIVADAS! bounty-program
Fri, 09 Jan 2026 23:19:15 GMT A Simple Shopify Open Redirect That Paid $500 ‍ web-security, application-security
Sat, 10 Jan 2026 00:34:47 GMT Bug Bounty Hunters: Hunt this bug in 2026 bug-bounty-tips, bug-bounty-writeup
Sun, 14 Dec 2025 03:48:47 GMT Lab: Web cache poisoning via ambiguous requests web-cache-poisoning
Tue, 06 Jan 2026 20:31:25 GMT How to Create a Cybersecurity Home Lab: A Beginner Tutorial for S... cybersecurity-tools
Sat, 10 Jan 2026 02:49:28 GMT Assessing Wi-Fi Security with Rogue AP Simulations infosec
Sun, 07 Dec 2025 06:18:32 GMT Breaking the Perimeter: How My Custom Python Tool Bypassed a Fede... vdp
Thu, 16 Oct 2025 19:01:16 GMT Internet Reconnaissance Tools(osint) shodan
Fri, 23 May 2025 06:02:53 GMT Search Skills censys
Tue, 09 Dec 2025 06:49:39 GMT How Free Unlimited Unified AI APIs Are Redefining Development api-key
Tue, 06 Jan 2026 18:21:03 GMT How I found a Race condition on Like Function bug-bounty-hunter
Wed, 07 Jan 2026 19:40:29 GMT n8n RCE 101: Analyzing CVE-2025–68613 remote-code-execution, cve
Sat, 27 Dec 2025 06:42:58 GMT How Resumable Large File Uploads Work on S3 (Without Multipart Up... file-upload
Sun, 20 Jul 2025 18:02:47 GMT New in Town and Need a Makeup Artist? Here’s the Easiest Way to... directory-listing
Tue, 16 Sep 2025 08:32:32 GMT Subdomain Takeover subdomain-takeover
Thu, 04 Dec 2025 10:22:05 GMT The Billion-Naira Blueprint: How SuperteamNG Turned Nigerian Tale... bounties
Sun, 06 Jul 2025 07:51:30 GMT ZoomEye Dorking for API Keys zoomeye
Sat, 25 Oct 2025 17:53:34 GMT How I Found and Claimed a Subdomain Takeover (My First Article) subdomain-takeover
Fri, 09 Jan 2026 15:08:17 GMT IDOR: Insecure Direct Object Reference Writeup TryHackme web-security
Thu, 25 Dec 2025 09:25:04 GMT From Missing Rate Limiting to Account Takeover (ATO) bugbounty-writeup
Sat, 10 Jan 2026 14:12:01 GMT How I Won a $2,000 Bug Bounty Using Only Nmap bug-bounty-writeup, ethical-hacking
Wed, 16 Jul 2025 13:50:36 GMT Bug Bounties, Broken Promises bug-bounty-program
Wed, 17 Dec 2025 12:35:16 GMT Disclosure Day by Spielberg information-disclosure
Sat, 03 Jan 2026 17:51:10 GMT Espelho, espelho meu : Existe alguém mais exposto do que Eu? shodan
Thu, 08 Jan 2026 14:06:29 GMT Akamai WAF Bypass: Escalating SSRF into Internal Port Scanning hackerone
Sun, 04 Jan 2026 13:19:37 GMT How I Got an Easy $100 Bounty in Just 2 Minutes hackerone
Sat, 10 Jan 2026 10:13:32 GMT CISA at a Crossroads: National Security in 2026 cyber-security-awareness
Sun, 21 Sep 2025 03:55:56 GMT Is it easy to discover a critical vulnerability [P1] ? directory-listing
Sat, 20 Apr 2024 17:20:58 GMT TryHackMe — Brute Walkthrough | TheHiker log-poisoning
Mon, 24 Nov 2025 16:40:00 GMT Workflow: speed up visual web based external exposure recon. shodan, recon
Fri, 19 Sep 2025 07:40:16 GMT How I Tracked Our Clients’ Device Versions Without Direct Repor... zoomeye
Thu, 08 Jan 2026 15:16:07 GMT CVE-2025–63611: Stored Cross-Site Scripting(XSS) in Hostel Mana... cve, xss-vulnerability
Sat, 10 Jan 2026 20:46:53 GMT How i was able to delete any user account i wanted from the appli... bug-bounty
Sat, 10 Jan 2026 08:44:19 GMT Writing Penetration Test Reports pentesting, pentest
Tue, 23 Dec 2025 18:32:40 GMT The Night I Found a Backup ZIP File Sitting in Plain Sight —... bug-bounty-hunter, bounties
Wed, 06 Aug 2025 18:09:04 GMT Making dorks from HTML Comment dorking
Wed, 22 Oct 2025 14:11:32 GMT Mastering Subdomain Enumeration: A Beginner’s Guide to Expandin... subdomain-enumeration
Thu, 08 Jan 2026 13:48:42 GMT The use of an Open Redirect in Server Side Request Forgery (SSRF)... ssrf
Fri, 18 Jul 2025 01:35:17 GMT Lo-Fi TryHackMe Walkthrough/Write-up file-inclusion
Fri, 09 Jan 2026 19:34:23 GMT My First Critical Bounty: How I Went From robots.txt to Full Admi... web-security
Sat, 27 Dec 2025 14:27:02 GMT What Happens When You Run a Vulnerability Scan? vulnerability-scanning
Mon, 05 Jan 2026 12:21:30 GMT Realistic Mobile Attack Simulation for Confident Releases pentest
Mon, 10 Nov 2025 22:19:13 GMT The Hunt for a WAF Bypass: A Bug Bounty Story xss-bypass
Sat, 10 Jan 2026 18:04:13 GMT The Dark Web Dump Was Old — The Vulnerability Wasn’t ️ bug-bounty, infosec, bug-bounty-tips
Thu, 08 Jan 2026 06:25:20 GMT Tutorial 4 PortSwigger Lab: Stored XSS into HTML context with not... xss-attack, xss-vulnerability
Wed, 17 Dec 2025 04:39:27 GMT Cross-Site Scripting Via Unsanitized Input In a PHP Endpoint cross-site-scripting
Thu, 04 Dec 2025 16:37:32 GMT How I Discovered a $50,000 Web3 Vulnerability That Exposed Thousa... bugcrowd
Sun, 04 Jan 2026 03:49:09 GMT Intercom Deep Recon Techniques google-dorking
Wed, 26 Nov 2025 08:20:32 GMT $1,500 Recon Secrets: Dorks to Dollars google-dork
Sun, 04 Jan 2026 12:43:39 GMT Patch Management in Cybersecurity: Tools, Strategies, and Benefit... cybersecurity-tools
Sat, 10 Jan 2026 16:28:35 GMT Mr. Robot no TryHackme penetration-testing, ethical-hacking
Mon, 15 Dec 2025 18:46:12 GMT The CGI Script That Should Have Stayed Hidden — How a Forg... bugcrowd
Mon, 15 Dec 2025 04:02:03 GMT [Broken Access Control] Removed members can access any post con... information-disclosure
Wed, 07 Jan 2026 13:44:20 GMT Testing file uploads file-upload
Fri, 09 Jan 2026 11:49:46 GMT Make Contract Collaboration Effortless Across Teams with BoldSign... api-key
Sun, 26 Oct 2025 07:14:54 GMT How AI Media Generation APIs Are Transforming Digital Content api-key
Sun, 16 Nov 2025 11:17:50 GMT Five Bounties, One Bug: Exploiting the Same SSRF via Five Unique ... bounty-program
Sat, 10 Jan 2026 12:56:32 GMT Cobalt Strike Advanced DATA | Red Team Operations + Command & Co... pentesting, pentest
Sat, 10 Jan 2026 09:30:55 GMT The Invisible Breach: Why Your Encrypted Data is Already Being St... cyber-security-awareness
Mon, 26 May 2025 15:44:42 GMT File Upload Vulnerabilities file-inclusion
Sat, 06 Dec 2025 17:05:14 GMT GitHub Pages Subdomain Takeover on aiaa-dpw.larc.nasa.gov (NASA V... subdomain-takeover
Sat, 10 Jan 2026 17:29:24 GMT The Invisible Bouncer: How OAuth 2.0 PKCE Secures Your Modern App... web-security
Tue, 12 Aug 2025 17:24:22 GMT How I Removed Other User`s Uploaded Images in a Few Clicks bug-bounty-program
Tue, 05 Aug 2025 00:19:11 GMT Breaking Recon with AMASS subdomain-enumeration
Fri, 25 Jul 2025 16:41:01 GMT ️ SubDNS-UI: Build Your Own Subdomain + DNS Enumerator with a C... subdomain-enumeration
Mon, 29 Dec 2025 14:55:56 GMT Profesyonel Bir Pentester Gibi Çalışmak(script -nlog.log) pentest
Sat, 10 Jan 2026 19:34:25 GMT Active Directory Attack Path Visualisation & Threat Detection Sy... ethical-hacking
Thu, 18 Dec 2025 23:32:51 GMT React2Shell Shows Us Why JavaScript On The Server Was A Mistake remote-code-execution
Wed, 03 Dec 2025 20:15:27 GMT “Potato Hacks a Machine” — A Fun & Interactive Pentest... lfi
Thu, 18 Dec 2025 11:40:43 GMT Which Tool is Commonly Used For End Point Security? cybersecurity-tools
Sat, 03 Jan 2026 07:17:01 GMT SSRF with Whitelist-Based Input Filter ssrf
Fri, 26 Dec 2025 07:43:53 GMT Beginner's Guide to Claiming BOUNTY Airdrop — Claim Up To $50,0... bounties
Mon, 03 Nov 2025 07:07:04 GMT API Key Rotation Patterns in Spring Boot Security Layers api-key
Fri, 28 Nov 2025 23:28:34 GMT How I Found a Critical SQL Injection in Mercedes-Benz My First W... bugcrowd
Sun, 14 Jul 2024 11:56:11 GMT How I Can Get P1 Nasa easily — Dorking web-pentest
Sun, 28 Dec 2025 01:44:26 GMT Finding My First P3 Bug at NASA in My First Week of Bug Hunting bugbounty-writeup
Wed, 07 Jan 2026 07:03:22 GMT Easy IDOR CTF Challange (Bugforge) idor
Wed, 07 Jan 2026 10:06:39 GMT OTP Bypass in Email Verification via Response Manipulation During... bug-bounty-hunter, bug-bounty-hunting
Sat, 10 Jan 2026 14:18:20 GMT F5 Cyber Attack — 2024/2025 cyber-security-awareness
Fri, 02 Jan 2026 07:30:04 GMT Configuration Leaks and Missing Checks: Capturing the Flag in Int... idor
Mon, 05 Jan 2026 19:18:08 GMT Bypassing File Upload Whitelists to Achieve RCE file-upload
Tue, 05 Dec 2023 07:54:40 GMT LFI via SMTP log poisoning log-poisoning
Mon, 07 Jul 2025 05:15:45 GMT ZoomEye Dorking | Advanced OSINT zoomeye
Fri, 02 Jan 2026 17:49:33 GMT Blind SSRF with Shellshock Exploitation ssrf
Sun, 30 Nov 2025 12:48:56 GMT Beyond Nmap: Building Custom Recon Pipelines recon
Sat, 10 Jan 2026 12:56:17 GMT TheHackersLabs — Mermelada [Write-Up] pentesting
Fri, 29 Aug 2025 04:43:21 GMT 9. The Secret Power of Google Dorking dorking
Sat, 10 Jan 2026 09:44:27 GMT Cybersecurity Isn’t Hard — The Way We Teach It ,Is infosec
Wed, 07 Jan 2026 04:20:30 GMT Tutorial 3 PortSwigger Lab: Reflected XSS into HTML context with ... xss-attack, xss-vulnerability
Sat, 10 Jan 2026 16:37:42 GMT Introduction bug-bounty
Fri, 26 Dec 2025 23:48:17 GMT Understanding Cross-Site Scripting (XSS) Through Hands-On Practic... cross-site-scripting
Thu, 25 Dec 2025 20:15:32 GMT Investigation into MSP Data Breach google-dork
Fri, 07 Feb 2025 05:12:28 GMT Do You Struggle Finding Internal/Hidden Subdomains? Recon part 5 subdomain-enumeration
Sat, 01 Nov 2025 20:09:17 GMT just memecoin — Best Platforms dorks
Tue, 30 Dec 2025 12:14:56 GMT File Uploads in React with Node.js and Multer Backend file-upload
Thu, 25 Dec 2025 17:18:13 GMT From Breaking Scripts to Understanding Systems: My Early Lessons ... security-research
Tue, 23 Dec 2025 16:08:20 GMT React2Shell: The Critical Vulnerability Every Developer Needs to ... remote-code-execution
Thu, 18 Sep 2025 05:45:26 GMT Data Accuracy in Directory Websites: Why Clean Listings = Loyal U... directory-listing
Fri, 10 Nov 2023 03:38:01 GMT Apache error.log advanced Log poisoning RCE log-poisoning
Mon, 05 Jan 2026 12:11:05 GMT CVE 2025: What a Year of Vulnerabilities Reveals About the Modern... cve
Sun, 21 Dec 2025 10:09:54 GMT From “Valid Bug” to “No Bounty”: VRP, VRT, P4, and P5 on ... bugcrowd
Wed, 07 Jan 2026 16:36:17 GMT Hack DJI Mini 3 : L’échec de mes attaques Replay et GPS Spoof... pentest
Fri, 09 Jan 2026 14:03:04 GMT UART Debug Isn’t Harmless: Serial Port Privilege Escalation in ... cve
Fri, 09 Jan 2026 15:11:48 GMT Zomato Ceo Deepinder Goyal and other Billionaires PAN NUMBER Sens... bug-bounty-writeup
Mon, 24 Nov 2025 13:28:01 GMT Building India’s Largest Bug Bounty Platform & Revolutionizing ... bug-bounty-hunting
Mon, 29 Dec 2025 16:44:26 GMT Understanding SSRF: The Hidden Server Vulnerability ssrf
Mon, 05 Jan 2026 13:50:54 GMT I Replaced Every Online File Converter With VERT.sh and I Cannot ... file-upload
Fri, 07 Nov 2025 04:15:45 GMT Secure Flutter Apps — How to Hide API Keys & Use .env File... api-key
Wed, 07 Jan 2026 17:02:47 GMT Twin CVSS 10.0 bugs turn n8n workflows into an attacker’s playg... remote-code-execution
Mon, 05 Jan 2026 13:52:09 GMT Top 15 Kali Linux GUI Tools Every Security Engineer Must Master (... cybersecurity-tools
Sat, 10 Jan 2026 16:23:44 GMT Install & Configure OpenVAS on a MacBook (macOS) Using Docker Des... penetration-testing, application-security
Wed, 15 Oct 2025 05:12:26 GMT Subdomain Takeover: The Forgotten DNS Records Hijacking Your Bran... subdomain-takeover
Wed, 26 Nov 2025 12:34:58 GMT From Control to Confidence: How Information Security Became the L... cyber-sec
Sun, 26 Jan 2025 19:08:11 GMT Matrix strike’s back against honesty from a power stance web-pentest
Wed, 31 Dec 2025 12:19:03 GMT File Uploads Handling using PHP file-upload
Fri, 08 Aug 2025 17:59:47 GMT TryHackMe File Inclusion Challenge walkthrough. file-inclusion
Tue, 16 Dec 2025 07:55:39 GMT CEHv12: Foot Printing and Reconnaissance (Practised)(Module 2) recon
Wed, 19 Nov 2025 21:40:04 GMT Cross Site Scripting (XSS) xss-bypass
Wed, 31 Dec 2025 19:14:30 GMT A New Year Thank You to Everyone Walking This Path Together hackerone
Sat, 10 Jan 2026 19:57:52 GMT Cache Poisoning: The Silent Web Attack You Need to Know About information-security
Sun, 28 Dec 2025 08:29:02 GMT The Illusion of Client-Side Security bugbounty-writeup
Wed, 31 Dec 2025 16:50:18 GMT TryHackMe: MD2PDF Walkthrough local-file-inclusion
Sat, 25 Oct 2025 12:23:25 GMT How to find leaks on GitHub as a beginner. Logic is main key github-dorking
Tue, 16 Dec 2025 09:29:12 GMT Automating ZAP for CI/CD — an MVP vulnerability-scanning
Sat, 22 Nov 2025 06:45:29 GMT Root Me: HTTP — Directory indexing directory-listing
Sat, 10 Jan 2026 19:47:20 GMT The Lopsided Risk Dynamic of AI Agent Deployments information-security, application-security
Wed, 13 Aug 2025 14:19:39 GMT Awesome Hacking & Cybersecurity Learning Path — Your Ultim... bug-bounty-hunting
Tue, 25 Nov 2025 09:25:11 GMT Step-by-Step BOUNTY Rewards Guide — November 2025 bounties
Sat, 10 Jan 2026 14:32:23 GMT Don’t Know What To Do vulnerability
Tue, 30 Dec 2025 03:15:07 GMT I Spent 2 Hours Debugging a 403 error from WSL to Burpsuite MCP, ... security-research
Mon, 05 Jan 2026 15:43:35 GMT End-to-End Reconciliation Solution for Finance Teams recon
Tue, 18 Nov 2025 16:59:02 GMT TryHackMe:Farewell xss-bypass
Thu, 04 Dec 2025 05:32:24 GMT ChainBounty Rewards & Bonus Guide — December 2025 bounties
Thu, 08 Jan 2026 09:02:50 GMT osint-Forgotten Ruins bounty $$ bounties
Wed, 19 Nov 2025 02:35:37 GMT CVE-2025-63872: SVG-Based XSS in DeepSeek Chat V3.2 vulnerability-disclosure
Sat, 03 Jan 2026 18:16:27 GMT The two byte CPDoS web-cache-poisoning
Tue, 19 Aug 2025 11:22:08 GMT How to Get Started with Bug Bounties bug-bounty-hunting
Mon, 11 Dec 2023 18:17:01 GMT Exploiting a Log Poisoning. log-poisoning
Tue, 06 Jan 2026 06:42:57 GMT WHAT IS A SHODAN? shodan
Wed, 10 Dec 2025 06:33:24 GMT “ReconFTW — Unified Reconnaissance Engine for Bug‑Bount... recon
Thu, 20 Nov 2025 09:45:04 GMT Timber Doors in Surrey: Style, Durability, and Value Explained dorking
Sat, 27 Dec 2025 21:06:40 GMT How I Found a Critical RCE Flaw in a Popular JS Sandbox rce
Tue, 25 Nov 2025 14:46:54 GMT Vulnerability Assessment and Exploitation: Leveraging GVM, Nmap, ... vulnerability-scanning
Fri, 11 Jul 2025 16:20:24 GMT PC WORX: The Hidden Risk in Your Industrial Network censys
Tue, 11 Nov 2025 16:43:14 GMT Beyond Google: Navigating the Hidden Internet with Shodan and Cen... shodan, censys
Thu, 20 Nov 2025 17:16:47 GMT The Health Factor: How DorkFi Keeps Your Position Safe dorks
Wed, 07 Jan 2026 05:51:48 GMT Investigating a Cross-Site Scripting (XSS) Attempt in Let’sDefe... xss-attack
Mon, 29 Dec 2025 18:24:18 GMT How I Got My First Bounty hackerone
Sat, 10 Jan 2026 14:36:54 GMT Cybersecurity & Ethical Hacking Roadmap 2026 ethical-hacking
Thu, 18 Dec 2025 21:21:21 GMT Google Dorking: Arama Motorunu Bir Güvenlik Aracına Dönüştü... google-dorking
Wed, 12 Feb 2025 22:46:35 GMT https://www.express.co.uk/life-style/property/2012927/cleaning-ch... web-pentest
Sun, 23 Nov 2025 15:58:33 GMT just memecoin Rewards Eligibility & Claim Guide — November 2025 dorks
Sun, 14 Dec 2025 06:37:06 GMT My Bug Bounty Diary subdomain-enumeration
Sun, 28 Dec 2025 18:05:02 GMT I Was Done With Bug Bounty Until This Single Bug Changed Everythi... hackerone
Thu, 08 Jan 2026 14:22:04 GMT Image XSS ATTACK on Exif.tools | Hacking exif.tools via image in... bugbounty-writeup
Mon, 21 Nov 2022 22:42:17 GMT Explorando XSS no lugar do meu nome. web-pentest
Sat, 01 Feb 2025 06:10:16 GMT How to Create Advanced Custom Wordlist? Dive into Recon Part 4 subdomain-enumeration
Mon, 15 Dec 2025 13:47:44 GMT React2Shell Deep Dive: Unpacking the Remote Code Execution Flaw i... remote-code-execution
Sun, 23 Feb 2025 11:17:25 GMT $1000-$10k worth Leaks via Github Secret Dorks github-dorking
Mon, 05 Jan 2026 15:03:07 GMT OffSec PG: DriftingBlues6 Write-Up pentest
Sun, 09 Nov 2025 14:49:19 GMT Beginner’s BOUNTY Rewards Guide — November 2025 bounties
Thu, 02 Oct 2025 06:59:46 GMT Endless Cashback Glitch:How I Unlocked Unlimited Free Orders with... bug-bounty-program
Fri, 09 Jan 2026 17:42:52 GMT Soft-Fail Security Tips That Protect PHP Without Breaking UX application-security
Sun, 28 Dec 2025 08:33:59 GMT How I Got a CyberSecurity Internship at Airtel vapt
Fri, 28 Nov 2025 12:11:42 GMT How I Pwned Telemetry on Amsterdam.nl bounty-program
Fri, 02 Jan 2026 07:48:25 GMT Top 20 Penetration Testing Companies in Singapore [Updated] vapt
Sat, 10 Jan 2026 19:59:05 GMT The Text Message That Ended the Illusion of “Closeness” vulnerability
Sat, 29 Nov 2025 10:42:26 GMT Bahaya Google Dorking: Data Sensitif Mahasiswa Bocor! google-dorking, google-dork
Sun, 14 Dec 2025 11:53:26 GMT Cross-Site Scripting (XSS) Saldırıları ve Korunma Yöntemleri cross-site-scripting
Mon, 03 Nov 2025 19:42:12 GMT Announcing DorkFi Go-Live Date: Liquidity is Coming dorks
Sat, 10 Jan 2026 19:52:21 GMT From Chaos to Elegance: How Design Patterns Secretly Enforce SOLI... information-technology
Sat, 10 Jan 2026 05:51:18 GMT Multitasking Is Quietly Killing Your Bug Bounty Results bug-bounty-tips, bug-bounty-writeup
Mon, 05 Jan 2026 14:06:03 GMT 600$ For Stealing Podcasts/Show via RSS Feed Manipulation bugs
Wed, 07 Jan 2026 03:42:13 GMT 2026 Techniques to find Hidden Bugcrowd & HackerOne Programs bug-bounty-hunter
Fri, 12 Dec 2025 08:27:15 GMT PwnTillDawn Morty Writeup lfi
Fri, 28 Nov 2025 13:27:17 GMT Lab 1: Web cache poisoning with an unkeyed header web-cache-poisoning
Mon, 29 Dec 2025 10:11:52 GMT How Network Vulnerability Scanners Detect Hidden Attack Surfaces? vulnerability-scanning
Thu, 04 Dec 2025 01:13:50 GMT WordPress Malware Removal | Penetration Testing & Cybersecurity ... recon
Fri, 09 Jan 2026 23:39:33 GMT Breaking Password Reset Logic: A Comprehensive Exploitation Guide web-security, bug-bounty-tips, bug-bounty-writeup
Wed, 10 Dec 2025 12:06:41 GMT Strengthening Web3 Security: Recent Vulnerability Findings from Y... vulnerability-disclosure
Fri, 26 Dec 2025 09:09:16 GMT React2Shell — React Server Components RCE CVE-2025–55182 rce
Thu, 08 Jan 2026 11:48:49 GMT Infinity Learning lab — On-Premise-22: CrushFTP Walk-throug... cve
Thu, 08 Jan 2026 08:37:52 GMT The Pulse: Crypto Risk Review exploit
Fri, 19 Dec 2025 20:23:57 GMT How I Found an Unauthenticated XXE That Allowed Arbitrary File Re... vulnerability-disclosure
Sat, 27 Dec 2025 21:05:15 GMT The Reconnaissance Masterclass: Advanced Information Gathering fo... security-research
Thu, 21 Aug 2025 10:04:08 GMT Dork Like a Demon: FOFA Edition for Hackers & Bug Bounty Hunters dorking
Fri, 26 Dec 2025 09:06:24 GMT CVE-2025–68613: Critical RCE di Platform Otomasi n8n (CVSS 9.9) rce
Sun, 21 Dec 2025 00:51:13 GMT Knife Maintenance Tips for Hunters bug-bounty-hunter
Mon, 29 Dec 2025 19:09:04 GMT How i found Sensitive Data Exposure in NASA Vulnerable Disclosure... google-dorking
Mon, 15 Dec 2025 07:46:53 GMT The Pivot: Hunting Hidden Doors with Fuzzing and Multi-Platform M... google-dorking
Tue, 05 Aug 2025 07:25:48 GMT CXF Service List Endpoint Recon dorking, zoomeye
Thu, 14 Aug 2025 10:08:18 GMT Predictive Analytics and Voice Technology: A Winning Combination ... vdp
Sun, 21 Dec 2025 12:38:03 GMT Fixing Kali Linux apt update Errors (404 / NO_PUBKEY) — Ste... cybersecurity-tools
Tue, 21 Oct 2025 09:47:05 GMT Proactive Third-Party Risk Management with Shodan Intelligence shodan
Fri, 31 May 2024 13:29:16 GMT Map of the worlds best URLs 2025 log-poisoning
Sat, 10 Jan 2026 15:12:13 GMT How a Simple Business Logic Flaw Caused an Account Lockout DoS bug-bounty, infosec, bug-bounty-tips, bug-bounty-writeup
Sun, 07 Dec 2025 06:30:47 GMT Advanced Search Techniques for Exposed Information — By Rej... google-dorking
Tue, 06 Jan 2026 12:27:01 GMT CVE-2025–55184: A pre-authenticated DOS Attack in React Server ... vdp
Mon, 21 Jul 2025 14:07:41 GMT “403 Forbidden? vdp
Wed, 03 Dec 2025 23:26:26 GMT TryHackMe-TakeOver-WriteUp subdomain-takeover
Sun, 04 Jan 2026 07:12:14 GMT Stop Writing Your Own HTML Encoders: A Guide to XSS Prevention in... cross-site-scripting
Tue, 30 Dec 2025 00:17:29 GMT IDOR in Account Update Endpoint hackerone
Thu, 13 Nov 2025 06:32:14 GMT Create the perfect Amazon Wedding & Baby Registry: easy, trusted,... bounty-program
Sun, 05 Oct 2025 07:27:50 GMT DNS Hijacking for Dummies: Why Your API’s Domain Name is a Targ... subdomain-takeover
Wed, 23 Jul 2025 15:15:01 GMT TryHackMe Include walkthrough: SSRF, log poisoning & LFI2RCE, wit... log-poisoning
Sun, 14 Dec 2025 21:35:07 GMT ⚡️Advanced XSS Bypass for Akamai WAF xss-bypass
Wed, 31 Dec 2025 19:12:51 GMT When Time Becomes a Vulnerability: Breaking Chronohack’s Token ... exploit
Tue, 18 Nov 2025 18:12:40 GMT Dork Labs Awarded AWS Activate Startup Grant dorks
Sat, 27 Dec 2025 11:18:11 GMT Reflected XSS using Google Dorking on webmail application powered... cross-site-scripting
Fri, 26 Dec 2025 19:18:43 GMT When OTP Forgets Who You Are hackerone
Fri, 02 Jan 2026 14:24:24 GMT Cross-Site Scripting (XSS) Vulnerability in DeepSeeks AI Input Fi... xss-bypass
Wed, 10 Dec 2025 18:07:22 GMT #xss0r Community — December Gift! xss-bypass
Tue, 06 Jan 2026 06:35:52 GMT Brave Browser Keeps Closing Tabs on You? You Aren’t Crazy. bugs
Mon, 27 Oct 2025 19:05:39 GMT eJPT — 4.1 CTF 1 Web Application Penetration Testing local-file-inclusion
Tue, 30 Dec 2025 15:51:07 GMT picoCTF caas (Cowsay as a Service)- Best Writeup remote-code-execution
Mon, 01 Sep 2025 06:53:22 GMT HTB-LAB Local File Inclusion (LFI) file-inclusion
Sat, 10 Jan 2026 16:20:20 GMT TryHackMe — Blog Room Walkthrough penetration-testing
Sat, 27 Dec 2025 15:52:00 GMT Access Control Vulnerabilities in Smart Contracts bugbounty-writeup
Wed, 24 Dec 2025 19:07:01 GMT The Art of Discovery: Mastering Web Crawlers in Bug Bounty & Pent... bug-bounty-hunter
Thu, 25 Sep 2025 00:00:42 GMT Path Traversal — PortSwigger lfi
Tue, 23 Sep 2025 06:36:22 GMT Mengamankan File Sensitif & Directory Listing website dengan .ht... directory-listing
Tue, 30 Dec 2025 07:53:12 GMT One Mantle DevCard, Three Reward Pools for Mantle Global Hackatho... bounty-program
Tue, 30 Dec 2025 01:21:19 GMT API Keys, Tokens & Secrets: How They Leak and How Developers can ... api-key
Sat, 10 Jan 2026 23:13:35 GMT 15 Seconds to the First Attack: Myth or Reality of Website Launch... penetration-testing
Sat, 10 Jan 2026 20:06:59 GMT How I Bypassed Premium Content to Download Movies for Free Via To... web-security, application-security
Thu, 08 Jan 2026 05:09:29 GMT The Life of a Bug: From “It Works on My Machine” to the Myth ... bugs
Tue, 06 Jan 2026 09:02:35 GMT Bug Bounty Shortcut: Skip Recon and Start With Real Credentials recon
Thu, 01 Jan 2026 14:05:31 GMT Sıfırdan Otomasyona: Kapsamlı Recon Rehberi recon
Tue, 23 Dec 2025 07:55:27 GMT Web Application Penetration Testing Report vapt
Sat, 03 Jan 2026 07:59:36 GMT Mastering Web Cache Deception Bugs: Advanced Bug Hunter’s Guide web-cache-poisoning
Sun, 30 Nov 2025 16:48:30 GMT Lab 2: Web cache poisoning with an unkeyed cookie web-cache-poisoning
Fri, 19 Dec 2025 14:42:48 GMT Arbitrary Code Execution (ACE) vs Remote Code Execution (RCE) remote-code-execution
Tue, 19 Aug 2025 10:37:07 GMT Dari Teori ke Praktik: SSRF, File Inclusion, dan Command Injectio... file-inclusion
Sat, 10 Jan 2026 19:31:45 GMT What Happens When You Let Life Flip You vulnerability
Sat, 10 Jan 2026 04:56:57 GMT [TryHackMe Write-up] Airplane local-file-inclusion
Sun, 21 Dec 2025 10:11:43 GMT SQL INJECTION AT DVWA(HIGH):WHEN ‘HIGH SECURITY’ ISN’T REAL... pentest
Fri, 01 Aug 2025 06:17:06 GMT 15,000 Critical Systems Are Exposed — Thanks to This Outdat... censys
Sun, 21 Dec 2025 21:12:19 GMT I Found My First Bugs in 48 Hours: A Beginner’s Real-World Guid... bugcrowd
Wed, 24 Dec 2025 06:00:48 GMT PortSwigger Web Security Academy: All Information Disclosure Labs... information-disclosure
Sat, 04 Jan 2025 17:20:23 GMT GitHub dork github-dorking
Thu, 08 Jan 2026 07:46:43 GMT I Thought XSS Was Easy…Until Nothing Worked xss-attack, xss-vulnerability
Mon, 27 Jan 2025 16:51:28 GMT The man who suffered 11 years in hell for freedom has now been fr... web-pentest
Mon, 27 Oct 2025 17:30:23 GMT LFI to ATO (Universal ) local-file-inclusion
Thu, 13 Mar 2025 18:09:56 GMT How I Found Sensitive Information using Github Dorks in Bug Bount... github-dorking
Wed, 19 Nov 2025 13:57:21 GMT BurpSuite + Ffuf | Make Your Life Easier lfi
Fri, 14 Nov 2025 07:29:27 GMT ⭐ NMAP COMPLETE BEGINNER → ADVANCED vulnerability-scanning
Sat, 10 Jan 2026 08:51:39 GMT We Are Shipping More Features and Creating Worse Software file-upload
Sat, 10 Jan 2026 02:48:58 GMT How I Started a Bug-Bounty Career in 2026 — A Practical Roa... infosec
Sat, 15 Nov 2025 07:08:39 GMT Netcat Port Scanning Cheatsheet vulnerability-scanning
Sat, 10 Jan 2026 13:13:35 GMT Hack My School: What This Search Really Means For Education and C... ethical-hacking
Tue, 23 Dec 2025 06:58:24 GMT How I Found Vulnerabilities in NASA and Got into the Hall of Fame vulnerability-disclosure
Sun, 09 Nov 2025 22:10:20 GMT TryHackMe — File Inclusion — Walkthrough local-file-inclusion
Sat, 10 Jan 2026 15:02:55 GMT Reino Unido anuncia un plan de fortalecimiento en materia de cibe... cyber-security-awareness
Fri, 21 Nov 2025 20:24:09 GMT Bypassing University Email Verification: A Logical Flaw in a Saud... vulnerability-disclosure
Sat, 20 Dec 2025 14:06:10 GMT I Hacked Microsoft: Remote Code Execution (RCE) via Dependency Co... remote-code-execution
Wed, 10 Dec 2025 03:38:29 GMT Tools That Make ISO 27001 Compliance Easier cybersecurity-tools
Fri, 09 Jan 2026 05:50:02 GMT Caches, Edge, and Exploits bug-bounty-writeup, web-cache-poisoning
Wed, 12 Nov 2025 19:08:55 GMT Atone Bounties opportunity bounty-program
Sat, 10 Jan 2026 15:08:55 GMT The Economics of Silence vulnerability
Tue, 06 Jan 2026 16:40:05 GMT Why Caching Makes Bugs Harder to Find in Spring Boot bugs
Fri, 14 Nov 2025 02:06:42 GMT Cybersecurity: What People See vs. What Really Happens vulnerability-scanning
Thu, 01 Jan 2026 22:41:36 GMT IDOR: Web Uygulamalarının Gizli Tehdidi Anlamak, Önlemek ve Sa... idor
Sun, 12 Oct 2025 14:40:10 GMT Exploring Shodan: The Search Engine for Hackers and Security Rese... shodan
Sat, 08 Nov 2025 12:24:40 GMT Public Exposure of NASA FTP Credentials in CORAL Document (Resuel... google-dork
Tue, 16 Dec 2025 05:31:11 GMT Top Benefits of Using the Best Cybersecurity Tool of India cybersecurity-tools
Fri, 28 Jun 2024 14:51:14 GMT X-Forwarded HTTP header-ləri : Qısa izah log-poisoning
Sat, 10 Jan 2026 09:21:24 GMT PowerShell for Pentesters notes — TryHackMe pentesting
Fri, 02 Jan 2026 22:27:45 GMT El comienzo de algo grande…. bug-bounty-hunter
Thu, 26 Dec 2024 15:23:03 GMT GitHub Dorking List: The Ultimate Guide to Exploring and Securing... github-dorking
Wed, 17 Dec 2025 11:34:25 GMT 10 Best Vulnerable Websites for Penetration Testing and Ethical H... pentest
Tue, 15 Jul 2025 12:15:58 GMT “Secure” OPC UA Setups Are Being Hacked — Here’s Why censys
Wed, 03 Dec 2025 18:57:29 GMT The Three Recon Moves That Almost Always Reveal Something Valuabl... recon
Sun, 09 Nov 2025 08:20:56 GMT Breaking Stored XSS Through Filter Bypass xss-bypass
Mon, 05 Jan 2026 08:37:00 GMT How I Hacked Every Account in 15 Minutes… And Got -1 Points (Th... bugbounty-writeup
Wed, 31 Dec 2025 11:46:08 GMT VAPT - From Planning to Closure vapt
Sat, 25 Jan 2025 23:20:10 GMT Full GitHub Dorking guide: for OSINT and BugBounty (Reconnaissanc... github-dorking
Sun, 06 Jul 2025 06:33:18 GMT Path Traversal part-1 : File path traversal, simple case file-inclusion
Thu, 01 Jan 2026 08:03:59 GMT AI Agent to Find XSS cross-site-scripting
Mon, 17 Nov 2025 23:45:18 GMT DorkFi: The Triumph of a Team You Can Trust dorks
Fri, 09 Jan 2026 15:36:38 GMT SSRF in PDF Generators ssrf
Wed, 07 Jan 2026 01:32:27 GMT FastAPI Streaming Multipart Uploads: Resumable Ingest for Flaky M... file-upload
Tue, 09 Sep 2025 10:14:01 GMT The Psychology of Listings: Why Users Trust Some Directories More... directory-listing
Wed, 07 Jan 2026 11:47:26 GMT New near, new patches for Veeam VBR cve
Wed, 07 Jan 2026 12:17:14 GMT 3500$ Bug: Hacking Akamai ARL bugbounty-writeup
Tue, 04 Nov 2025 07:31:55 GMT Google Dorking google-dorking, dorks
Wed, 31 Dec 2025 16:50:13 GMT PortSwigger Academy Lab: Source code disclosure via backup files information-disclosure
Mon, 29 Dec 2025 04:06:10 GMT Information Disclosure Menggunakan Dirsearch information-disclosure
Wed, 26 Nov 2025 09:01:18 GMT The Future of Vulnerability Scanning is Ephemeral: Why We Built a... vulnerability-scanning
Tue, 06 Jan 2026 10:19:48 GMT Send Large Files Securely Online: The Complete Guide to Modern Fi... file-upload
Mon, 29 Dec 2025 09:04:26 GMT Automate SSRF Hunting Like a Pro: From Discovery to Escalation vapt
Mon, 05 Jan 2026 10:36:54 GMT Privilege Escalation: How Broken Access Control Led to Full Accou... idor
Sat, 10 Jan 2026 19:57:47 GMT $22,300 Bug Bounty: Cloning Private GitLab Repositories via Impor... bug-bounty, vulnerability, penetration-testing, web-security
Sat, 10 Jan 2026 01:40:58 GMT Which Bugs to Hunt for in 2026 bug-bounty-tips, bug-bounty-writeup
Mon, 01 Dec 2025 19:38:31 GMT Bugcrowd for Ethical Hackers: A Complete Framework to Build Reput... bugcrowd
Sun, 23 Nov 2025 13:28:34 GMT When IP Whitelisting Isn’t What It Seems: A Real-World Case Stu... bugcrowd, vulnerability-disclosure
Sun, 14 Sep 2025 14:10:27 GMT Can Bug Bounty Hunting Make One A Millionaire? bug-bounty-hunting
Tue, 06 Jan 2026 15:29:55 GMT Lab: Web cache poisoning via a fat GET request | Portswigger web-cache-poisoning
Tue, 30 Dec 2025 09:36:22 GMT How I Found an SSRF on a University Website as a Beginner ssrf
Fri, 07 Nov 2025 22:36:09 GMT How I Found a MASSIVE XSS Vulnerability on a Karting Site in 10 M... xss-bypass
Wed, 31 Dec 2025 20:01:16 GMT What is VAPT? Vulnerability Assessment and Penetration Testing Ex... vapt
Tue, 04 Nov 2025 16:00:15 GMT Lo-Fi Writeup (TryHackMe Easy Machine) lfi
Wed, 07 Jan 2026 13:48:15 GMT OffSec PG: Inclusiveness Write-Up pentest
Sat, 02 Aug 2025 14:15:23 GMT The Silent Risk in Your ICS: Why S7 Protocol Needs Security Atten... censys
Thu, 27 Nov 2025 13:53:54 GMT xss0r Black Friday Special Offer — 50% OFF ALL PLANS! xss-bypass
Wed, 26 Nov 2025 13:15:53 GMT How i earned $100 in one minute bounty-program
Tue, 18 Nov 2025 08:33:41 GMT A Chain of Vulnerabilities Leading to Critical Information Disclo... bug-bounty-program
Sun, 17 Aug 2025 19:26:05 GMT bug-bounty-program
Fri, 24 Jan 2025 09:34:52 GMT A new Holistic temple opening InLeeds web-pentest
Tue, 06 Jan 2026 22:29:01 GMT Deploying Wazuh SIEM: A Hands-On SOC Project for Cybersecurity Fr... vapt
Tue, 30 Dec 2025 13:37:13 GMT Epstein Files Explained: What the Newly Released Documents Really... file-upload
Fri, 02 Jan 2026 18:22:47 GMT How “Simple Recon” Led to a High-Severity Microsoft Vulnerabi... security-research
Fri, 25 Jul 2025 15:34:20 GMT Discover Top Local Businesses Effortlessly with List & Post directory-listing
Sat, 06 Dec 2025 23:06:15 GMT Big News from DorkFi — PreFi Rewards Drop + Contest Live! dorks
Sat, 10 Jan 2026 08:02:49 GMT Samba Active Directory Domain Controller (Linux): What to Do When... infosec, pentesting, pentest
Wed, 31 Dec 2025 20:27:03 GMT After More Than 2 Years in Bug Bounty: Here’s My Methodology hackerone
Fri, 19 Dec 2025 15:17:01 GMT Outlawed / Banned from the Fraudulent Bug Bounty World: The Story... bug-bounty-hunter
Fri, 09 Jan 2026 13:45:07 GMT JWT and PASETO: Choosing the Right Token for Secure Authenticatio... application-security
Sat, 10 Jan 2026 06:15:55 GMT Password Kita atau Password Kamu?: Realita di Balik Kebiasaan Ber... cyber-security-awareness
Mon, 17 Nov 2025 09:27:29 GMT 200 reports, 11 valid bugs, 0 critical issues. Here’s everythin... vdp, vulnerability-disclosure
Sat, 10 Jan 2026 17:29:52 GMT React2Shell (CVE-2025–55182): From React Server Components to U... rce
Tue, 06 Jan 2026 17:26:38 GMT The Future of Cybersecurity: Emerging Technologies, Evolving Thre... cybersecurity-tools
Sun, 04 Jan 2026 10:33:02 GMT The return to blogging and a blind SQL injection security-research
Sun, 04 Jan 2026 16:14:50 GMT XSS Attack: Panduan Lengkap Cross Site Scripting Untuk Ethical Ha... xss-attack
Wed, 05 Nov 2025 12:42:46 GMT How I Hacked Bank’s Admin Portal vdp
Mon, 05 Jan 2026 16:28:35 GMT Lab: Web cache poisoning with multiple headers | Portswigger web-cache-poisoning