Skip to content

rix4uni/medium-writeups

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

46,611 Commits
 
 
 
 
 
 
 
 

Repository files navigation

Time Title Feed IsNew IsToday
Mon, 22 Jun 2026 09:04:04 GMT Cyber Security Course in Kerala: Preparing for One of Tech’s Mo... hacking, ethical-hacking, cyber-security-awareness Yes Yes
Mon, 22 Jun 2026 11:31:12 GMT Best AI Development Companies for Enterprise Applications in 2026 information-technology Yes Yes
Mon, 22 Jun 2026 12:35:42 GMT CVE-2025–53770 (ToolShell) — SharePoint RCE Case Investigatio... cybersecurity Yes Yes
Mon, 22 Jun 2026 09:17:08 GMT SOC Analyst Course in India. information-technology Yes Yes
Mon, 22 Jun 2026 07:21:49 GMT The Recon Workflow I Built After 10 Rejections bug-bounty, penetration-testing, hacking Yes Yes
Mon, 22 Jun 2026 09:54:44 GMT The Biggest Decision is a Complete Lie infosec, cyber-security-awareness Yes Yes
Mon, 22 Jun 2026 12:26:20 GMT CISSP Chapter 5 — Part 2: Handling Rules Matter Most When Data ... cybersecurity, infosec, information-security, cyber-security-awareness Yes Yes
Mon, 22 Jun 2026 08:32:11 GMT VAPT Explained: How It Helps Identify Security Weaknesses Before ... vapt Yes Yes
Mon, 22 Jun 2026 09:52:13 GMT Stop Calling Security a Priority if it’s the First Thing you Co... infosec, cyber-security-awareness Yes Yes
Mon, 22 Jun 2026 07:31:00 GMT Some People Appear Strong Because They Don’t Feel Safe Being Vu... vulnerability Yes Yes
Mon, 22 Jun 2026 12:01:01 GMT The Dark Web: The Internet’s Most Misunderstood Shadow cyber-security-awareness Yes Yes
Mon, 22 Jun 2026 08:22:47 GMT Ethical Hacking After 10th and 12th: Career Roadmap for Indian St... ethical-hacking Yes Yes
Mon, 22 Jun 2026 12:02:50 GMT Where Is Your IP Address Located? information-technology Yes Yes
Mon, 22 Jun 2026 11:27:53 GMT AI Chatbot Development: Features That Improve User Experience information-technology Yes Yes
Mon, 22 Jun 2026 10:14:43 GMT Shell Payload Generation & Delivery Walkthrough Part 2 | TryHack... pentesting Yes Yes
Mon, 22 Jun 2026 08:56:04 GMT Offensive Security Tooling — part 1 infosec, ethical-hacking, cyber-security-awareness Yes Yes
Mon, 22 Jun 2026 12:45:26 GMT As 5 melhores empresas de Segurança, Portaria e Controle de Aces... security Yes Yes
Mon, 22 Jun 2026 12:29:38 GMT Secure Coding Practices — Writing Code That Doesn’t Break cyber-security-awareness Yes Yes
Mon, 22 Jun 2026 11:48:44 GMT When Anyone Can Be Admin: The Boat Booking App That Left the Back... cve Yes Yes
Mon, 22 Jun 2026 12:16:32 GMT Detection Engineering Fundamentals for SOC Analysts cybersecurity Yes Yes
Mon, 22 Jun 2026 07:48:39 GMT Still Confused by Amass or Can’t Understand Its Results, This I... recon Yes Yes
Mon, 22 Jun 2026 09:49:16 GMT Unicorn Wins Top IT Honors for Zero-Downtime ENTSO-E Migration information-technology Yes Yes
Mon, 22 Jun 2026 11:27:54 GMT Why More Sacramento Business Owners Are Investing in Professional... security Yes Yes
Mon, 22 Jun 2026 12:04:15 GMT Is a VPN Legal in the UAE? What Residents and Tourists Should Act... security Yes Yes
Mon, 22 Jun 2026 12:31:01 GMT TryHackMe Pre Security (SEC0) & Cyber Security 101 (SEC1) — Exa... cybersecurity, information-security, ethical-hacking Yes Yes
Mon, 22 Jun 2026 08:04:46 GMT Preventing “Vibe Coding� Infrastructure Failures: Building Pr... hacking, ethical-hacking Yes Yes
Mon, 22 Jun 2026 11:21:51 GMT I Hacked a Recruitment Portal From Zero to Root : Here’s Exactl... pentesting Yes Yes
Mon, 22 Jun 2026 12:43:01 GMT The Internet Never Forgets: Freedom, Responsibility, and Accounta... cybersecurity Yes Yes
Mon, 22 Jun 2026 12:01:02 GMT The Zero Trust Stack: Application Allowlisting infosec, application-security Yes Yes
Mon, 22 Jun 2026 12:53:59 GMT The Five Stages of CTEM Explained for Security Leaders cybersecurity Yes Yes
Mon, 22 Jun 2026 07:37:44 GMT From Enumeration to Root: My First Internal Network Penetration T... penetration-testing Yes Yes
Mon, 22 Jun 2026 12:30:45 GMT Part 4: Enterprise Active Directory Structure and Security Policy... cybersecurity Yes Yes
Mon, 22 Jun 2026 10:27:53 GMT Preventing Vehicle Theft and Liability Issues with Effective Park... security Yes Yes
Mon, 22 Jun 2026 12:24:19 GMT Building Trust and Protection with AI Security in Mortgage Softwa... information-security Yes Yes
Mon, 22 Jun 2026 11:01:01 GMT The Next Cyber Battlefield Isn’t in the Cloud information-security Yes Yes
Mon, 22 Jun 2026 08:41:56 GMT Shell Payload Generation & Delivery Walkthrough Part 1| TryHackM... pentesting Yes Yes
Mon, 22 Jun 2026 08:25:16 GMT Why Cloud Misconfigurations Remain a Top Cause of Data Exposure information-security Yes Yes
Mon, 22 Jun 2026 10:21:42 GMT A Complete Guide to Red Hat Certifications Under the Summer Offer ethical-hacking Yes Yes
Mon, 22 Jun 2026 07:05:41 GMT Introducing PenTest Toolkit v2.0.0: A Modern AI-Powered Penetrati... bug-bounty, penetration-testing Yes Yes
Mon, 22 Jun 2026 11:29:41 GMT Lab: Flawed enforcement of business rules (Business logic Vulnera... hacking Yes Yes
Mon, 22 Jun 2026 12:14:06 GMT Python SAST: Automate It in Your CI cybersecurity Yes Yes
Mon, 22 Jun 2026 11:30:28 GMT Anatomy of a Full Compromise: From Information Disclosure to Remo... penetration-testing, hacking, information-security, remote-code-execution Yes Yes
Mon, 22 Jun 2026 09:45:37 GMT Do You Really Need a VPN for iPhone? Complete Guide (2026) cyber-security-awareness Yes Yes
Mon, 22 Jun 2026 12:21:50 GMT Electronic Lock vs Smart Lock in India — The Difference That De... security Yes Yes
Mon, 22 Jun 2026 11:31:01 GMT JWT Attacks — Breaking the Token hacking, bug-bounty-writeup, ethical-hacking Yes Yes
Mon, 22 Jun 2026 08:50:14 GMT Penetration Testing Course in India. information-technology Yes Yes
Mon, 22 Jun 2026 08:57:02 GMT Become a First Responder — part 2 information-security, ethical-hacking, cyber-security-awareness Yes Yes
Mon, 22 Jun 2026 11:22:17 GMT I Thought Phishing Emails Were Easy to Spot. Then I Saw a Real On... information-security Yes Yes
Mon, 22 Jun 2026 12:08:03 GMT All Star Security Corp security Yes Yes
Mon, 22 Jun 2026 10:58:48 GMT Cybersecurity Novel Series — THE HERD infosec Yes Yes
Mon, 22 Jun 2026 12:14:19 GMT Email Domain Reputation vs IP Reputation: The Difference That Det... security Yes Yes
Mon, 22 Jun 2026 11:38:03 GMT They Told Me to Open Up, Then They Handed Me a Cage vulnerability Yes Yes
Mon, 22 Jun 2026 11:54:08 GMT Why CCNA Continues to Be One of the Smartest IT Certifications in... information-technology Yes Yes
Mon, 22 Jun 2026 08:15:28 GMT 5 Cybersecurity Terms Beginners Always Mix Up infosec Yes Yes
Mon, 22 Jun 2026 09:04:21 GMT PortSwigger Lab Write-Up: Insecure Direct Object References web-security Yes Yes
Mon, 22 Jun 2026 09:22:45 GMT Exposure Management in 2026: Strengthening Cybersecurity Through ... information-technology Yes Yes
Mon, 22 Jun 2026 11:20:53 GMT The Three Critical Vulnerabilities — A Security Researcher’s ... cyber-security-awareness Yes Yes
Mon, 22 Jun 2026 12:01:22 GMT Top Data Recovery Services in India: Recover Lost Data Safely information-technology Yes Yes
Mon, 22 Jun 2026 09:28:57 GMT Panneau de brassage : l’épine dorsale d’une infrastructure r... information-technology Yes Yes
Mon, 22 Jun 2026 08:58:14 GMT What Is a Cyber Security Degree? A Complete Beginner’s Guide ethical-hacking Yes Yes
Mon, 22 Jun 2026 11:27:28 GMT TryHackMe write-up: Pickle Rick information-security Yes Yes
Mon, 22 Jun 2026 12:15:30 GMT How Wireless Window Alarms Are Changing Everyday Home Safety security Yes Yes
Mon, 22 Jun 2026 11:50:21 GMT CVE-2026–10692: When a Search Feature Can Take Down Your AI Cod... cve Yes Yes
Mon, 22 Jun 2026 12:54:36 GMT � AI Threat Modeling Isn’t Optional Anymore: Understanding ST... cybersecurity Yes Yes
Mon, 22 Jun 2026 12:21:45 GMT Hiding My Tears, Because It’s What Men Do vulnerability Yes Yes
Mon, 22 Jun 2026 11:48:39 GMT Email Unsubscribe Best Practices: How to Reduce Churn Without Dam... security Yes Yes
Mon, 22 Jun 2026 08:57:33 GMT Client-Side Path Traversal (CSPT): I Found It, Chained It, and Wi... bug-bounty, bug-bounty-writeup Yes Yes
Mon, 22 Jun 2026 11:01:01 GMT Writeup for CyLab/picoCTF challenge “Obedient Cat� hacking Yes Yes
Mon, 22 Jun 2026 12:19:06 GMT After Years on Factory Floors, I Realised Most Security Audits Mi... security Yes Yes
Mon, 22 Jun 2026 12:18:11 GMT EU AI Act vs NIST AI RMF: Rights-Based vs Risk-Based AI Governanc... cybersecurity Yes Yes
Mon, 22 Jun 2026 07:32:38 GMT How AI Fights AI-Powered Cyberattacks in 2026 hacking Yes Yes
Mon, 22 Jun 2026 09:27:36 GMT Two Frameworks in Your Hands: SANS or CSA AI Security Maturity Mo... information-security Yes Yes
Mon, 22 Jun 2026 09:52:38 GMT How to Build a Cybersecurity Portfolio That Gets Interviews infosec Yes Yes
Mon, 22 Jun 2026 05:01:01 GMT Unpacking CVE-2026–0257: The GlobalProtect Authentication Bypas... infosec Yes
Mon, 22 Jun 2026 05:30:24 GMT How I Automated My Bug Bounty Recon Pipeline Using Nmap + Nuclei ... bug-bounty, penetration-testing, infosec Yes
Mon, 22 Jun 2026 06:45:31 GMT Uncover the Real MSISDN | SS7 Telecom Security Research Tool hacking Yes
Mon, 22 Jun 2026 05:50:22 GMT What is this OWASP - Explained Like I’m 5 Years Old pentesting Yes
Mon, 22 Jun 2026 00:52:50 GMT Long Life Is Not Indefinite vulnerability Yes
Mon, 22 Jun 2026 01:45:46 GMT The Quiet Devastation of Being Dismissed When You’re Vulnerable vulnerability Yes
Mon, 22 Jun 2026 05:41:11 GMT The OSCP Is a Mental Game penetration-testing Yes
Mon, 22 Jun 2026 05:52:02 GMT File Size Restriction Bypass via MAX_FILE_SIZE Parameter Manipula... bug-bounty, penetration-testing, vapt Yes
Mon, 22 Jun 2026 05:26:04 GMT Bypassing Rate Limits: Known Techniques bug-bounty, penetration-testing, vapt Yes
Mon, 22 Jun 2026 06:09:14 GMT Cloud Storage Misconfigurations: When Your Data Becomes Public Wi... bug-bounty, web-security Yes
Mon, 22 Jun 2026 02:37:47 GMT Accidental RCE: How I Found a Working Exploit in a Live CTF (and ... web-security Yes
Mon, 22 Jun 2026 06:35:01 GMT Cybercrime Investigation in 2026: A Complete Guide for Beginners ... hacking Yes
Mon, 22 Jun 2026 05:50:59 GMT Vulnerability Assessment and Penetration Testing Services: Comple... vulnerability, penetration-testing, vapt Yes
Mon, 22 Jun 2026 01:16:21 GMT PortSwigger : DOM XSS in jQuery Anchor href Attribute Sink Using ... web-security, cross-site-scripting Yes
Mon, 22 Jun 2026 01:55:36 GMT Portswigger web-security, cross-site-scripting Yes
Mon, 22 Jun 2026 06:46:28 GMT [First Blood] Write-Up: BugForge Weekly Challenge — Vaultly w... pentesting Yes
Mon, 22 Jun 2026 01:18:22 GMT PortSwigger Lab Write-Up: User ID Controlled by Request Parameter... web-security Yes
Mon, 22 Jun 2026 06:51:54 GMT Find exposed sensitive data in AWS, Google Cloud, and other platf... bug-bounty, dorks Yes
Mon, 22 Jun 2026 05:21:26 GMT Well, It’s Okay to Start Over! pentesting, pentest Yes
Mon, 22 Jun 2026 05:41:12 GMT Recon & OSINT: The Skill That Separates Beginners from Profession... bug-bounty Yes
Mon, 22 Jun 2026 03:58:48 GMT DevSecOps for APIs: How to Secure APIs Before and After Deploymen... application-security Yes
Mon, 22 Jun 2026 05:57:02 GMT Unlimited Coupon Abuse → A Critical Business Logic Flaw bug-bounty, pentesting Yes
Mon, 22 Jun 2026 02:31:00 GMT XSS, CSRF, SQL Injection, and SSRF Explained with Real Stories web-security, xss-attack Yes
Mon, 22 Jun 2026 04:22:38 GMT Subdomain Takeover: A Complete Guide from Beginner to Advanced bug-bounty-tips, subdomain-takeover Yes
Mon, 22 Jun 2026 06:08:57 GMT Host & Network Penetration Testing: The Metasploit Framework CTF ... penetration-testing Yes
Mon, 22 Jun 2026 05:23:42 GMT LLMs and Vulnerabilities: What This Means for Engineers Building ... vulnerability Yes
Mon, 15 Jun 2026 04:57:05 GMT Unlimited account Creation Without Verification + Email Flooding bugbounty-writeup
Sat, 13 Jun 2026 20:31:30 GMT I Found a Vulnerability on a Government Web Portal. Here’s What... information-disclosure
Tue, 09 Jun 2026 18:06:16 GMT Gaadi Info — Check Vehicle Details, RC Status & Challan rce
Wed, 27 May 2026 23:02:16 GMT CVE-2025–54123 Hoverfly ≤1.11.3 Command Injection (RCE) Case ... rce
Thu, 18 Jun 2026 12:40:33 GMT Going “Extra Mile�. Making an in person drop. cve
Fri, 19 Jun 2026 07:59:04 GMT Diving into the DOM: My Third XSS Lab on PortSwigger xss-vulnerability
Sun, 14 Jun 2026 12:09:22 GMT How a Simple Google Dork Earned Me My First Bounty from Bugcrowdâ... bugcrowd
Sat, 25 Apr 2026 14:46:05 GMT File Inclusion— Skills Assesment (HTB) file-inclusion
Sun, 15 Mar 2026 17:49:52 GMT TryHackMe — Takeover Writeup subdomain-takeover
Fri, 19 Jun 2026 01:45:58 GMT How I Found a Server-Side Entitlement Issue That Allowed Free Use... hackerone
Fri, 12 Dec 2025 06:49:56 GMT How Variable Data Technology is Transforming Postcard & Brochure ... vdp
Fri, 12 Jun 2026 21:45:49 GMT TryHackMe Walkthrough: Support local-file-inclusion
Fri, 27 Mar 2026 03:29:10 GMT TryHackMe — File Inclusion (Walkthrough) file-inclusion
Sat, 04 Apr 2026 09:10:35 GMT We’ve messed up, a lot. Here’s Why Scribble Still Exists to c... bounties
Fri, 10 Nov 2023 03:38:01 GMT Apache error.log advanced Log poisoning RCE log-poisoning
Sat, 06 Jun 2026 16:15:29 GMT Complete Guide: Network Reconnaissance and Exploiting MS17–010 ... exploit
Tue, 16 Jun 2026 15:54:37 GMT READING The JavaScript Gave Me a Cross-Tenant Write + SSRF bugs, ssrf
Sun, 14 Jun 2026 15:56:43 GMT I Found a High-Severity Bug by Reading a JavaScript File for 10 M... bugs
Tue, 16 Jun 2026 11:31:01 GMT SQL Injection for Absolute Beginners hackerone
Sat, 20 Jun 2026 20:35:12 GMT From a Simple Input Field to Stored XSS — A Realistic Bug Bount... bug-bounty-writeup
Sat, 13 Jun 2026 10:44:47 GMT Passive Vulnerability Assessment of a Government Enterprise Web A... information-disclosure
Tue, 28 Apr 2026 13:18:20 GMT 25 Open-Source Cybersecurity Tools That Work Even When Your Budge... cybersecurity-tools
Sat, 30 May 2026 11:25:12 GMT Cross-Site Scripting (XSS) via Client-Side Filter Bypass xss-vulnerability, xss-bypass
Tue, 24 Mar 2026 17:48:00 GMT The Ultimate Bug Bounty Course: From Zero to Advanced Hacker 1 bug-bounty-hunting
Tue, 09 Jun 2026 12:47:33 GMT IDOR allows non-group members to add any group to favorites on th... idor
Thu, 18 Jun 2026 15:00:04 GMT Bore-dom, IP Pools, and a Nation’s Water Control: How I Breache... cyber-sec
Wed, 25 Mar 2026 08:34:09 GMT Improper Input Handling Leading to Client Side Code Execution and... vulnerability-disclosure
Wed, 03 Jun 2026 11:36:12 GMT When “One-Time� Isn’t Enough: The Case of the Reusable Magi... bugcrowd
Tue, 13 Jan 2026 13:27:13 GMT Hacking “Time�: When Critical Infrastructure Forgets to Set a... vulnerability-disclosure
Wed, 18 Mar 2026 10:03:26 GMT Web Security Series #7 — Exploiting Blind SQL Injection via Ses... bug-bounty-hunting
Tue, 24 Mar 2026 07:41:00 GMT How I Built a Directory Listing Site (ToolIndex.net) and What I L... directory-listing
Wed, 29 Apr 2026 14:47:41 GMT The Dorking Manifesto: Uncovering the Hidden Web google-dorking
Tue, 11 Nov 2025 16:43:14 GMT Beyond Google: Navigating the Hidden Internet with Shodan and Cen... censys
Mon, 15 Jun 2026 09:21:49 GMT Why Most Bug Bounty Beginners Fail — And How to Avoid It bug-bounty-hunter
Wed, 27 May 2026 08:42:26 GMT Open Source Transparency Was a Moat — AI Is Turning It Into a L... vulnerability-disclosure
Sun, 14 Dec 2025 06:37:06 GMT My Bug Bounty Diary subdomain-enumeration
Fri, 19 Jun 2026 10:41:20 GMT My Cybersecurity Learning Journey at TECHRISE (LEARN FACTORY) cybersecurity-tools
Fri, 19 Sep 2025 07:40:16 GMT How I Tracked Our Clients’ Device Versions Without Direct Repor... zoomeye
Sat, 20 Jun 2026 15:50:42 GMT Stop Ignoring Brakeman Warnings: The Hidden Meaning Behind CWE Co... application-security
Sat, 20 Jun 2026 16:54:28 GMT AI Red Teaming Will Need Qualified Human Pentester pentest
Mon, 11 Dec 2023 18:17:01 GMT Exploiting a Log Poisoning. log-poisoning
Sun, 13 Jul 2025 16:32:21 GMT ProConOS Exposed: What ICS Security Teams Need to Know censys
Wed, 27 May 2026 14:47:39 GMT Denaria Finance Exploit: $166K Lost to Asymmetric Rounding and an... exploit
Wed, 17 Jun 2026 07:58:42 GMT CISA Warns of Actively Exploited Joomla JCE Flaw: Why CVE-2026–... bugs
Fri, 24 Apr 2026 06:09:47 GMT Is Web Filtering Quietly Controlling Your Online Experience Witho... cybersecurity-tools
Wed, 17 Jun 2026 00:00:50 GMT When the main app is clean, go count the URL fetchers ssrf
Sat, 09 May 2026 02:26:22 GMT How I Discovered a Reflected XSS Vulnerability on a Major German ... xss-bypass
Mon, 27 Apr 2026 07:12:30 GMT One Weird Query String That Let Anyone Hijack Any Account in Roc... bounties
Sun, 21 Jun 2026 03:01:47 GMT Bug Bounty Nightmare: Company Banned Me to Avoid Paying bug-bounty-tips, bugbounty-writeup
Fri, 12 Jun 2026 11:31:00 GMT IDOR — The Easiest Critical Bug You’ll Ever Find hackerone, idor
Thu, 18 Jun 2026 02:30:14 GMT Authentication Bypass via Insecure redirect_url Parameter Leading... bugbounty-writeup
Fri, 12 Jun 2026 19:54:38 GMT From a Google Image to a Live Device: Building OSINT Signatures w... security-research
Sun, 08 Mar 2026 11:01:01 GMT I Paid $500 for AI Directory Listings. Here Is My Honest ROI Brea... directory-listing
Thu, 29 Jan 2026 05:03:15 GMT Subdomain Takeover: Understanding, Detecting, and Recovering from... subdomain-takeover
Tue, 09 Jun 2026 14:21:12 GMT How to Find Your First Bug Bounty In Vulnerability: Step-by-Step ... bug-bounty-hunter
Tue, 10 Feb 2026 23:04:46 GMT Effective Dorking Tools dorking
Mon, 08 Jun 2026 09:48:02 GMT XSS WAF Bypass: The Ultimate Deep Dive xss-vulnerability, xss-bypass
Sun, 21 Jun 2026 19:56:58 GMT The samsara of love vulnerability
Thu, 30 Apr 2026 22:03:21 GMT How to learn Autopsy quickly to pass any exams cybersecurity-tools
Mon, 18 May 2026 22:07:24 GMT Back to the Labs ~ Quick Update Before the Real Content Drops pentest
Fri, 19 Jun 2026 20:02:36 GMT TryHackMe: Support Ops Platform Walkthrough lfi
Tue, 09 Jun 2026 07:00:48 GMT Costa Rica Beaches: Which Ones Are Worth the Drive directory-listing
Mon, 15 Jun 2026 18:23:17 GMT I Spy a Spotted Lanternfly bugs
Wed, 12 Feb 2025 22:46:35 GMT https://www.express.co.uk/life-style/property/2012927/cleaning-ch... web-pentest
Fri, 24 Jan 2025 09:34:52 GMT A new Holistic temple opening InLeeds web-pentest
Sat, 13 Jun 2026 17:04:51 GMT The $500,000 Prompt: How an AI-Driven Hack Penetrated Google’s ... exploit
Thu, 11 Jun 2026 05:41:48 GMT Shodan: The Search Engine Hackers Don’t Want You to Know About shodan
Sat, 02 Aug 2025 14:15:23 GMT The Silent Risk in Your ICS: Why S7 Protocol Needs Security Atten... censys
Sun, 21 Jun 2026 19:47:02 GMT I Spent 4 Hours Testing HubSpot’s AI Assistant for Prompt Injec... bug-bounty-writeup
Wed, 19 Nov 2025 19:44:02 GMT The Pulse of Liquidity: How DorkFi’s Interest Rates Adapt in Re... dorks
Wed, 03 Jun 2026 17:17:42 GMT Nmap Basics: A Beginner’s Guide to Network Scanning in Cybersec... vulnerability-scanning
Thu, 04 Dec 2025 04:45:36 GMT What is Google Dorking? dorking
Sat, 11 Apr 2026 09:59:14 GMT The Symmetry of Recon: Active vs. Passive Discovery in Bug Bounty shodan
Fri, 19 Jun 2026 22:47:46 GMT How I Found CVE-2026–50131: An Incomplete SSRF Fix in Fedify ssrf, cve
Fri, 01 May 2026 20:23:15 GMT Shodan Facet Searches That Read Like Threat Intel Poetry shodan
Sun, 14 Jun 2026 11:31:00 GMT Stored XSS — The Dangerous Cousin hackerone
Mon, 15 Jun 2026 09:03:06 GMT The Comment That Handed Me a Secret Key bug-bounty-hunter
Fri, 19 Jun 2026 18:59:43 GMT SSRF Explained Like You Are Five (For Bug Bounty Beginners) ssrf
Wed, 27 May 2026 19:50:08 GMT Why Your Directory Listing Service Isn’t Working — And the Fr... directory-listing
Sat, 20 Jun 2026 19:01:43 GMT DOM XSS in document.write xss-attack, application-security
Sun, 21 Jun 2026 19:49:39 GMT Reflected XSS into HTML context with nothing encoded| Shiv Kumar... xss-attack, application-security
Sun, 21 Jun 2026 12:43:35 GMT Breaking Out of the Attribute: My Seventh XSS Lab on PortSwigger xss-attack
Mon, 15 Jun 2026 08:03:09 GMT How Building My Own Linktree Clone Led Me to a CSS Injection Disc... exploit
Sun, 21 Jun 2026 06:29:06 GMT Business Logic Attacks Explained Using a Banking App bug-bounty-tips, application-security
Mon, 04 May 2026 23:53:49 GMT Break The Syntax CTF — Web Challenge 2 Writeup lfi
Sun, 21 Jun 2026 16:00:48 GMT How I Found My First Bug bug-bounty-writeup
Thu, 18 Jun 2026 18:45:38 GMT Cross-site scripting 9 (APPRENTICE) xss-attack, cross-site-scripting
Thu, 14 May 2026 02:21:00 GMT Exploiting Samba RCE (CVE-2017–7494) | Hackviser Labs Walkthro... remote-code-execution
Wed, 03 Jun 2026 12:02:47 GMT PortSwigger Lab: Unprotected admin functionality idor
Thu, 04 Jun 2026 05:38:31 GMT Building a Cloud-Native File Upload and Analytics Platform Using ... file-upload
Mon, 18 May 2026 14:37:14 GMT File Inclusion - Challenge Part | TryHackMe Walkthrough file-inclusion
Sun, 21 Jun 2026 00:45:05 GMT Atdork google-dorking, google-dork
Wed, 25 Feb 2026 01:47:45 GMT How I Found a Path Traversal in the Rancher Dashboard via HAR Rep... web-pentest
Fri, 05 Jun 2026 04:49:28 GMT Price Manipulation in Payment Gateway / Shopping Cart vdp
Fri, 06 Feb 2026 06:33:08 GMT 5 Ways to Bypass Email Verification Without Using Any Tool bug-bounty-program
Tue, 09 Jun 2026 03:36:01 GMT The Art of Asking “What If?� bug-bounty-hunter
Sun, 21 Jun 2026 14:43:25 GMT TryHackMe Guided Pentest: Infrastructure (versão em português) pentest
Thu, 28 May 2026 12:51:00 GMT Why Simpler Document Workflows Create Better Operations file-upload
Tue, 05 Dec 2023 07:54:40 GMT LFI via SMTP log poisoning log-poisoning
Tue, 26 May 2026 23:44:37 GMT Intigriti May 2026 Challenge: XSS via Stored Payload & SCA Shield... xss-bypass
Sun, 21 Jun 2026 10:32:59 GMT The Quote That Opened the Whole Store bug-bounty-tips, bugbounty-writeup
Thu, 18 Jun 2026 04:31:03 GMT The Bug That Only Showed Up After Midnight. Welcome to Timezones bugs
Wed, 17 Dec 2025 09:57:30 GMT The Mother Lode: Hacking with GitHub Dorking github-dorking
Wed, 20 May 2026 11:18:33 GMT Me Before Digiss vs Me Now in Digiss: How My Cybersecurity Learni... cyber-sec
Mon, 25 May 2026 09:49:05 GMT Guided Pentest: Web | TryHackMe remote-code-execution
Sun, 21 Jun 2026 23:25:13 GMT Reflected XSS into a JavaScript string with angle brackets HTML e... xss-attack
Tue, 22 Apr 2025 10:38:20 GMT Trump’s Tariffs Cut Out Censys — ZoomEye Steps In Strong! zoomeye
Mon, 18 May 2026 07:01:05 GMT InterLink Migration Vote Begins | Active Bounty Season 3 bounty-program
Mon, 25 May 2026 14:19:37 GMT Look at this, we created this bounties
Fri, 12 Jun 2026 12:39:46 GMT [Nvidia AI API] Nvidia �費AI API 申請 api-key
Sun, 21 Jun 2026 11:31:00 GMT BOLA — The API Version of IDOR idor
Sat, 20 Jun 2026 06:11:01 GMT From Zero to Security Researcher: How I Found a Critical IDOR Vul... security-research
Tue, 16 Jun 2026 13:11:36 GMT Understanding Web Cache Poisoning via Unkeyed Headers: A PortSwig... web-cache-poisoning
Tue, 28 Apr 2026 20:00:52 GMT Official Blind XSS Platform Update (2026) xss-bypass
Mon, 16 Feb 2026 14:31:00 GMT BOUNTY | HTB | Windows |Walkthrough | Write up bounties
Sat, 02 May 2026 14:24:34 GMT Analytic Tools cyber-sec
Thu, 04 Jun 2026 13:06:14 GMT OneDrive API Integration Using Microsoft Graph: A Developer Notes... file-upload
Wed, 06 May 2026 11:36:01 GMT Google Dorking google-dorking, dorking
Sat, 13 Jun 2026 15:28:09 GMT Cómo detectar sitios gubernamentales comprometidos con Spam SEO ... google-dork
Mon, 27 Jan 2025 16:51:28 GMT The man who suffered 11 years in hell for freedom has now been fr... web-pentest
Sun, 21 Jun 2026 23:49:47 GMT Join AstralGuard Discord Community web-security
Fri, 11 Jul 2025 16:20:24 GMT PC WORX: The Hidden Risk in Your Industrial Network censys
Wed, 20 May 2026 12:58:33 GMT Get API Key from Google AI Studio api-key
Mon, 17 Nov 2025 23:45:18 GMT DorkFi: The Triumph of a Team You Can Trust dorks
Thu, 18 Jun 2026 10:17:41 GMT PortSwigger : DOM XSS in innerHTML Sink Using Source location.sea... cross-site-scripting
Wed, 10 Jun 2026 02:01:02 GMT CVE-2026–48778 分�:Notepad++�洞�許攻擊者執行任... rce
Tue, 16 Jun 2026 14:43:11 GMT I Wrote 30 Lines of C and Watched My CPU Leak Secrets security-research
Tue, 16 Jun 2026 16:56:08 GMT How Parameter Tampering Exposed 4,700 Agents and Tons of PII information-disclosure, xss-vulnerability
Thu, 11 Jun 2026 04:45:57 GMT Discover printers during an internal penetration testing engageme... recon
Fri, 22 May 2026 21:10:59 GMT Recruit TryHackMe walkthrough lfi
Sun, 15 Mar 2026 16:45:35 GMT Web Security Series #4 — Discovering Unauthorized Resources via... bug-bounty-hunting
Thu, 18 Jun 2026 11:31:01 GMT Broken Access Control — 2026’s #1 Bug bugcrowd
Tue, 21 Apr 2026 13:33:52 GMT Kioptrix: 2014 — VulnHub Walkthrough pChart LFI + PhpTax RCE to... lfi
Sun, 21 Jun 2026 00:32:02 GMT Insecure Direct Object Reference (IDOR) — TryHackMe IDOR Room idor
Fri, 12 Jun 2026 10:04:19 GMT ATDORK google-dork
Thu, 07 May 2026 06:41:01 GMT Github Dorking dorking, github-dorking
Mon, 06 Apr 2026 21:45:53 GMT Cookie(Çerez) Türleri ve Pentest Açısından Önemi web-pentest
Fri, 17 Apr 2026 16:11:01 GMT Mirage (LFI) WebVerse lfi
Thu, 18 Jun 2026 01:29:56 GMT The MFA Bypass That Wasn’t an MFA Problem: A Lesson in Broken A... security-research
Wed, 23 Jul 2025 15:15:01 GMT TryHackMe Include walkthrough: SSRF, log poisoning & LFI2RCE, wit... log-poisoning
Fri, 31 May 2024 13:29:16 GMT Map of the worlds best URLs 2025 log-poisoning
Sun, 21 Jun 2026 15:02:18 GMT Cross-site scripting 6 (APPRENTICE) xss-attack, cross-site-scripting
Thu, 11 Jun 2026 04:44:15 GMT AtDork dorking tools google-dork
Fri, 19 Jun 2026 07:03:40 GMT InvoiceHub CTF:HIVE CONSULT information-disclosure
Wed, 17 Jun 2026 09:53:34 GMT Solving YWH Dojo #51 — DeadBolt: From Zip Slip to Remote Code E... rce
Tue, 16 Jun 2026 04:26:17 GMT How to Install Nuclei on Your Machine The Open-Source Vulnerabili... vulnerability-scanning
Thu, 14 Aug 2025 10:08:18 GMT Predictive Analytics and Voice Technology: A Winning Combination ... vdp
Wed, 11 Feb 2026 21:37:40 GMT From Course Notes to CVE: How a GXPN Study Session Uncovered a 40... vulnerability-disclosure
Tue, 16 Jun 2026 14:46:35 GMT Research On No Rate Limit Issues vapt
Tue, 16 Jun 2026 14:09:01 GMT Research On Parameter Tampering vapt
Sun, 17 May 2026 02:56:19 GMT The 3 Bug Hunting Habits That Made Me Go From $0 to $5k (And None... bug-bounty-program
Wed, 17 Jun 2026 00:49:02 GMT PortSwigger : Reflected XSS into HTML Context with Nothing Encode... cross-site-scripting
Sun, 19 Apr 2026 15:57:12 GMT XSS Bypass urlparse filter evasion in Python xss-bypass
Sat, 20 Jun 2026 11:13:31 GMT When a Link Becomes a Weapon: My Fifth XSS Lab on PortSwigger xss-attack
Wed, 17 Jun 2026 08:46:38 GMT Cross-site scripting 7 (APPRENTICE) cross-site-scripting
Thu, 09 Apr 2026 17:39:27 GMT From 401 to BAC: How a Refresh Broke Workspace Authorization vulnerability-disclosure
Mon, 16 Feb 2026 08:42:31 GMT Lab: Exploiting HTTP request smuggling to perform web cache poiso... web-cache-poisoning
Fri, 19 Jun 2026 09:41:16 GMT 206 Flaws, One Tuesday: Inside Microsoft’s Largest-Ever Patch T... vapt
Wed, 13 May 2026 07:37:16 GMT How to Find Subdomains Using Shodan and the Favicon Hash Trick subdomain-enumeration, shodan
Wed, 06 May 2026 11:30:53 GMT How Local Business Directory Listing Helps Attract Local Customer... directory-listing
Sat, 06 Dec 2025 23:06:15 GMT Big News from DorkFi — PreFi Rewards Drop + Contest Live! dorks
Sat, 20 Jun 2026 11:04:15 GMT Scanning: The Second Stage of Penetration Testing — Turning Inf... vulnerability-scanning
Sun, 22 Mar 2026 10:40:15 GMT DVWA: File Inclusion Vulnerability (Low Security) file-inclusion
Thu, 18 Jun 2026 08:51:00 GMT I Opened a Settings Page… and Found Everyone’s Personal Data ... security-research
Sun, 21 Sep 2025 07:02:30 GMT Affordable but Vulnerable? The Dark Side of CMORE HMI censys
Sat, 20 Jun 2026 07:25:20 GMT PortSwigger: Information Disclosure ( on debug page) information-disclosure
Mon, 30 Mar 2026 06:03:13 GMT Why Business Directory Listings Are the Secret Weapon of Off-Page... directory-listing
Fri, 19 Jun 2026 07:59:45 GMT Still in the DOM: My Fourth XSS Lab on PortSwigger xss-vulnerability
Fri, 13 Mar 2026 14:55:26 GMT Web Security Series #2 — Bypassing Authentication via MFA Tampe... bug-bounty-hunting
Fri, 24 Apr 2026 10:26:01 GMT ¿Estás emocionado por el próximo partido entre FC Barcelona y ... bounty-program
Sun, 21 Jun 2026 19:01:28 GMT How one line of JavaScript let me walk into an admin panel bug-bounty-writeup
Wed, 13 May 2026 23:11:19 GMT The Lethal Trifecta: How AI Agents With Tool Access Turn Prompt I... cyber-sec
Sun, 14 Jun 2026 22:00:33 GMT La sémantique de l’esquive : Analyse lexicologique du discours... lfi
Fri, 12 Jun 2026 05:01:01 GMT Flutter File Uploads Made Easy: Working with Multipart APIs file-upload
Wed, 18 Feb 2026 21:56:48 GMT Chapter 14: Subdomain Takeover subdomain-takeover
Mon, 08 Jun 2026 08:50:12 GMT Huggingface’den Api Key Alma İçeriği (2026) api-key
Sat, 18 Apr 2026 05:07:38 GMT We’re About to Stop Trusting What We See Online — And AI Is t... cyber-sec
Fri, 24 Jan 2025 00:08:47 GMT A majestic temple opportunity of wellbeing and wellness web-pentest
Sun, 21 Jun 2026 18:54:02 GMT From Hydra to RCE: Breaking Down TryHackMe’s Support Machine web-pentest
Wed, 17 Jun 2026 19:02:16 GMT TryHackMe Lo-Fi Writeup lfi
Sun, 21 Jun 2026 21:11:00 GMT Making CrowdSec and Shorewall Work Together Without Breaking Each... pentesting
Sun, 26 Jan 2025 19:08:11 GMT Matrix strike’s back against honesty from a power stance web-pentest
Tue, 02 Jun 2026 08:35:29 GMT Lab: Authentication bypass via information disclosure information-disclosure
Mon, 16 Mar 2026 14:32:42 GMT Web Security Series #5 — Exploiting Broken Access Control via T... bug-bounty-hunting
Wed, 10 Jun 2026 19:29:41 GMT File Upload API Patterns for Production-Ready Apps file-upload
Sat, 20 Jun 2026 11:14:22 GMT Exploiting the Event Listener: My Sixth XSS Lab on PortSwigger xss-vulnerability
Sun, 23 Feb 2025 11:17:25 GMT $1000-$10k worth Leaks via Github Secret Dorks github-dorking
Sat, 20 Jun 2026 04:56:52 GMT Understanding OWASP Top 10: A Beginner's Guide to Web Application... vapt
Wed, 17 Jun 2026 11:30:30 GMT A walk-through of a High-severity cross-company account-takeover ... idor, cve
Thu, 18 Jun 2026 18:29:00 GMT 5 Docker Mistakes That Are Killing Your Laptop’s Battery bug-bounty-hunter
Tue, 09 Jun 2026 20:32:47 GMT Your Software Is Already Under Attack exploit
Sun, 31 May 2026 11:36:28 GMT Testing File Upload Vulnerability in web applications!!! rce, xss-vulnerability
Tue, 16 Jun 2026 16:16:56 GMT How to Find IDOR Vulnerabilities in a Laravel App idor
Thu, 28 Sep 2023 23:05:39 GMT Archangel — TryHackMe log-poisoning
Wed, 22 Apr 2026 23:39:11 GMT Authentication bypass via unauthenticated JWT generation on a tel... shodan
Tue, 28 Apr 2026 07:09:41 GMT owockibot: The Bounty Board Powering the Agent Economy bounty-program
Thu, 16 Apr 2026 11:14:18 GMT Finance in Nigeria Just Moved to WhatsApp bounty-program
Fri, 06 Jun 2025 15:47:21 GMT ��♂� GitHub Dorking for Bug Bounty: Hackers' Hidden Playg... github-dorking
Mon, 13 Apr 2026 03:31:01 GMT Google Dorks Google Ko Bana Do Apna Hacking Tool: Free Mein Bugs ... google-dork, github-dorking
Sun, 21 Jun 2026 12:21:00 GMT How a Missing GraphQL Authorization Check Exposed a HealthTech Un... bug-bounty-tips
Wed, 10 Jun 2026 11:54:28 GMT The Zero-Day Exploit Clock Is Ticking exploit
Fri, 29 May 2026 13:15:09 GMT How to install and configure Vigolium for vulnerability scanning vulnerability-scanning
Tue, 28 Apr 2026 11:47:05 GMT What Tools Do Cyber Security Experts Actually Use Every Day? (And... cybersecurity-tools
Tue, 05 May 2026 22:10:53 GMT LFI Prevention: How to Actually Fix File Inclusion Vulnerabilitie... local-file-inclusion
Sun, 14 Jun 2026 13:21:02 GMT Subdomain Enumeration: A Core Technique Every Bug Hunter Must Mas... subdomain-enumeration, recon
Tue, 12 May 2026 17:55:36 GMT Wild Bounty Showdown PG Soft: Rahsia Maxwin Cowboy & Pola Gacor T... bounties
Wed, 03 Jun 2026 14:56:57 GMT Eksploitasi Jembatan Alephium: Laporan On-Chain exploit
Thu, 21 May 2026 15:16:28 GMT How to Bypass LinkedIn Commercial Use Limit in 2026 (Without Payi... google-dorking
Mon, 11 May 2026 04:25:50 GMT Google Dorking for Beginners: Ghosting the Network google-dorking
Sun, 10 May 2026 06:59:45 GMT When a Simple ‘git push’ Becomes Dangerous: Lessons from the ... remote-code-execution
Sun, 21 Jun 2026 12:44:41 GMT Hijacking a Link: My Eighth XSS Lab on PortSwigger xss-attack
Fri, 19 Jun 2026 17:40:08 GMT How to Get a Private Bug Bounty Invite on HackerOne — Without S... hackerone, bugcrowd
Mon, 18 May 2026 00:04:46 GMT GOOGLE DORK İLE BİLGİYİ HIZLI VE DOĞRU BULMA google-dorking, google-dork, github-dorking
Sat, 11 Apr 2026 14:24:38 GMT � SOC287 — Arbitrary File Read on Checkpoint Security Gateway... lfi
Thu, 02 Apr 2026 18:59:50 GMT File Inclusion (LFI/RFI) — Extracting Sensitive Data from confi... file-inclusion
Sun, 31 May 2026 22:29:54 GMT xss0r V7 Is Finally Released — Free 28-Day Golden Plan License ... xss-vulnerability
Sun, 12 Apr 2026 10:48:18 GMT Ubah Keterampilan Anda Menjadi ALPH: Panduan Hadiah Alphland bounty-program
Sun, 07 Jun 2026 16:46:16 GMT METASPOITABLE 2 vulnerability-scanning
Mon, 01 Jun 2026 16:22:00 GMT Web Uygulamalarının Arka Kapısı: File Upload Injection ve Gel... file-upload
Tue, 16 Jun 2026 05:42:45 GMT ColdFusion XSS Vulnerability in Form Input: Causes, Fixes & Best ... xss-vulnerability
Thu, 18 Jun 2026 11:52:47 GMT ¿Usas Intercambio? bounty-program
Wed, 17 Jun 2026 07:53:43 GMT Operation Liwanag: The Same Map a Chinese Intelligence Asset Drew... shodan, censys
Thu, 18 Jun 2026 08:25:50 GMT PortSwigger : DOM XSS in document.write Sink Using Source locatio... cross-site-scripting
Tue, 05 May 2026 22:06:03 GMT LFI Automated Scanning: Finding and Fuzzing with ffuf local-file-inclusion
Tue, 14 Apr 2026 13:07:05 GMT My “Gemini� Is Named Mike dorks
Fri, 17 Apr 2026 19:01:54 GMT The Ultimate Guide to Wayback Machine Dorking for Deleted Leaks dorking
Sun, 21 Jun 2026 13:02:27 GMT PortSwigger: Information Disclosure (Authentication bypass via in... information-disclosure
Sat, 25 Oct 2025 12:23:25 GMT How to find leaks on GitHub as a beginner. Logic is main key github-dorking
Thu, 09 Oct 2025 18:33:05 GMT 0-click Account Takeover via Punycode bug-bounty-program
Tue, 02 Jun 2026 14:45:40 GMT Web/Mobil Uygulamalarda Business Logic Zafiyetler ve Örnek Bir U... exploit
Sat, 20 Dec 2025 18:21:40 GMT N0aziXss SubSpectre: Advanced Subdomain Discovery with Intelligen... subdomain-enumeration
Tue, 09 Jun 2026 16:17:34 GMT How I Found 20 Security Vulnerabilities in a Major OTT Streaming ... security-research
Sun, 14 Jun 2026 21:51:20 GMT Information Disclosure in Error Messages — A New Series Begins ... bugs
Thu, 20 Nov 2025 09:45:04 GMT Timber Doors in Surrey: Style, Durability, and Value Explained dorking
Sat, 20 Jun 2026 20:14:39 GMT The Firewall Is the Vulnerability, AGAIN cve
Sat, 09 May 2026 10:01:40 GMT Shodan.io | TryHackMe shodan
Mon, 15 Jun 2026 03:18:06 GMT How I Escalated Privileges in a File-Sharing Platform by Changing... hackerone, bugcrowd
Tue, 19 May 2026 17:44:55 GMT Day 5: Footprinting & Reconnaissance -How Attackers Know Everythi... google-dorking
Fri, 15 May 2026 15:53:56 GMT Walkthrough: Remediating Vulnerabilities Found with OpenVAS and N... vulnerability-scanning
Mon, 04 May 2026 12:56:26 GMT Beyond alert(1): Advanced XSS Payload Crafting, Filter Bypasses &... xss-bypass
Wed, 17 Jun 2026 18:22:29 GMT Why 90% of Bug Bounty Hunters Fail in Their First 3 Months (And H... bug-bounty-hunter, recon
Thu, 11 Jun 2026 05:26:16 GMT START HERE, MANIFESTO dorks
Tue, 16 Jun 2026 13:11:38 GMT Build an IDOR Vulnerability Lab: Why WHERE Clauses Don’t Protec... idor
Sun, 21 Jun 2026 17:01:02 GMT From Revoked Privileges to Resource Creation: A Privilege Persist... web-security, bug-bounty-tips, pentesting, bug-bounty-writeup
Thu, 14 May 2026 15:38:47 GMT NGINX Rift (CVE-2026-42945): The Bug That’s Been Hiding Since 2... remote-code-execution
Tue, 16 Jun 2026 13:09:40 GMT File Delivery 101 for Faster CDN Downloads at Scale file-upload
Sat, 06 Jun 2026 02:38:40 GMT How To Increase the Maximum File Upload Size in WordPress (Step-b... file-upload
Sat, 20 Jun 2026 07:41:30 GMT Designing a Zero-Trust Barrier: The Architecture of an Anonymizin... application-security
Fri, 17 Apr 2026 04:53:23 GMT How I Found an Exposed Google Maps API Key on a Global Brand’s ... vdp
Fri, 19 Jun 2026 06:15:12 GMT PortSwigger: Information Disclosure (in error messages) information-disclosure
Fri, 01 Aug 2025 06:17:06 GMT 15,000 Critical Systems Are Exposed — Thanks to This Outdat... censys
Sat, 20 Jun 2026 07:44:22 GMT Ağınız Dışarıdan Nasıl Görünüyor? Shodan İle Kurumsal ... shodan
Wed, 10 Jun 2026 19:48:50 GMT Visita inesperada. recon
Mon, 08 Jun 2026 08:30:05 GMT AI and Pentesting: The Silent Revolution Redefining the Security ... pentest
Thu, 04 Jun 2026 18:05:56 GMT <Casual Thoughts on MCP Server Security — Part 2> exploit
Fri, 01 May 2026 09:40:56 GMT Excessive Data Exposure Leading to Unauthorized Access to Paid Fe... vulnerability-disclosure
Thu, 23 Apr 2026 14:41:01 GMT Stop Learning — Start Mastering These Cybersecurity Tools in 20... cybersecurity-tools
Fri, 12 Jun 2026 12:04:09 GMT The Print Button That Handed Me Your Account: Stored XSS to Full ... xss-bypass
Thu, 27 Mar 2025 23:46:11 GMT Make Break and Betrayal web-pentest
Thu, 19 Feb 2026 12:53:45 GMT Lab: Web cache poisoning via HTTP/2 request tunnelling | Portswi... web-cache-poisoning
Sun, 26 Apr 2026 16:31:24 GMT ��♂� How I Find Critical Data Leaks Using Just Google Sea... google-dork
Tue, 16 Jun 2026 20:53:21 GMT From Medium to Critical: Chaining CVE-2025–20362 & CVE-2025–2... hackerone
Tue, 16 Jun 2026 11:22:14 GMT Review AtDork: Tool Dorking Python Terbaik 2026? dorking
Mon, 17 Nov 2025 09:27:29 GMT 200 reports, 11 valid bugs, 0 critical issues. Here’s everythin... vdp
Wed, 13 May 2026 16:01:01 GMT Mapleton (LFI to RCE) WebVerse lfi
Fri, 19 Jun 2026 10:37:59 GMT Cybersecurity training in kphb cybersecurity-tools
Mon, 01 Jun 2026 16:23:31 GMT What a Leaked Telegram Bot Token Actually Exposes recon
Mon, 18 May 2026 13:05:18 GMT Subdomain Takeover subdomain-takeover
Thu, 18 Jun 2026 07:07:21 GMT From Reflected to Stored: My Second XSS Lab on PortSwigger xss-attack
Sun, 24 May 2026 21:06:27 GMT How I Found a Permanent Account Takeover Through SSO Account Link... bugcrowd
Sat, 20 Jun 2026 03:45:14 GMT The Python Bug That Cost My Company $80,000 and How 4 Lines of Co... bugs
Wed, 03 Jun 2026 14:55:44 GMT Recruit | TryHackMe | Walkthrough local-file-inclusion
Wed, 22 Oct 2025 14:11:32 GMT Mastering Subdomain Enumeration: A Beginner’s Guide to Expandin... subdomain-enumeration
Wed, 16 Jul 2025 12:07:42 GMT Hackers Love This 1979 Protocol (Because It Can’t Defend Itself... censys
Fri, 17 Apr 2026 15:39:41 GMT Bug Bounty 2026: Why the “End of the World� is Actually a $50... bounties
Thu, 09 Apr 2026 15:25:42 GMT The Real AI Concern Is Not Art or Jobs, It Is Cybersecurity cyber-sec
Sat, 20 Jun 2026 09:04:39 GMT Authentication Bypass via Information Disclosure in HTTP Headers bugbounty-writeup
Mon, 15 Jun 2026 11:31:00 GMT DOM XSS — The Sneaky One Scanners Miss bugbounty-writeup
Fri, 12 Jun 2026 13:17:45 GMT Blind vs Out-of-Band Vulnerabilities: Understanding the Differenc... bug-bounty-hunter
Wed, 18 Mar 2026 14:34:33 GMT File Inclusion Zafiyetleri: LFI ve RFI Nedir, Nasıl Çalışır ... file-inclusion
Wed, 06 May 2026 23:46:09 GMT HTB File Inclusion Skills Assessment — From LFI to RCE (Full Wa... local-file-inclusion
Sun, 14 Jun 2026 14:19:24 GMT How to Fix Image Upload Issues in WordPress Media Library (Step-b... file-upload
Mon, 04 May 2026 17:36:51 GMT The Complete Guide to Managed Cyber Defense: Protecting Your Busi... cyber-sec
Tue, 05 Aug 2025 00:19:11 GMT Breaking Recon with AMASS subdomain-enumeration
Tue, 02 Jun 2026 19:48:50 GMT From False Positive to Hall of Fame: Exploiting Web Cache Poisoni... web-cache-poisoning
Thu, 11 Jun 2026 11:42:27 GMT AWS CloudGoat EC2_SSRF Lab Walkthrough: Step-by-Step Manual Confi... ssrf
Tue, 21 Apr 2026 15:05:26 GMT Web Security Series #17 — Exploiting Local File Inclusion (LFI)... file-inclusion
Wed, 17 Jun 2026 18:28:32 GMT I Started Bug Bounty With ₹0 Savings and a ₹15,000 Laptop. Ye... bug-bounty-hunter
Sat, 20 Jun 2026 19:01:38 GMT Claude Mythos Isn’t the Story. What It Reveals About Cybersecur... application-security
Mon, 18 May 2026 18:07:32 GMT SYMFONOS: 1 local-file-inclusion
Wed, 10 Jun 2026 19:17:14 GMT TuesdayTool 46: InfoSec Suite: Turning Claude Code into an Autono... cybersecurity-tools
Thu, 04 Jun 2026 06:54:59 GMT OpenRouter’dan Api Key Nasıl Alabiliriz (2026) api-key
Wed, 03 Jun 2026 19:16:30 GMT The Quiet Killer in Grey Box Testing — Internal IP Leak → Pat... pentest
Sat, 20 Jun 2026 14:51:32 GMT Building DropWire: local file transfer from a browser, no account... file-upload
Fri, 08 May 2026 22:01:34 GMT AI Is Breaking the Two Rules That Kept the Internet Safe — And ... vulnerability-disclosure
Thu, 28 May 2026 14:34:23 GMT Dirty Frag: Universal Linux LPE Through Page Cache Corruption exploit
Wed, 17 Jun 2026 17:45:44 GMT GCUP V2 Writeup: Bookstore rce
Fri, 19 Jun 2026 18:00:09 GMT Atacar para defender pentest
Wed, 20 May 2026 14:26:33 GMT Your Agent Doesn’t Need an API Key api-key
Wed, 20 May 2026 20:47:25 GMT FINDING INFORMATION QUICKLY AND ACCURATELY WITH GOOGLE DORK google-dorking, google-dork, github-dorking
Fri, 17 Apr 2026 15:51:57 GMT The 2026 Shodan Dork Bible: Finding Exposed Jenkins, Grafana, and... google-dork, shodan
Thu, 13 Mar 2025 18:09:56 GMT How I Found Sensitive Information using Github Dorks in Bug Bount... github-dorking
Thu, 18 Jun 2026 21:56:49 GMT TFII — I Built a Threat Intelligence Platform, Kinda? cve
Wed, 17 Jun 2026 08:46:50 GMT Amazon Prime for Young Adults — Why Every College Soccer Fan Ne... bounties
Fri, 05 Jun 2026 16:05:29 GMT The AI Security Test We Should All Be Paying Attention To security-research
Sat, 20 Jun 2026 17:21:48 GMT 10 JavaScript Mistakes I Keep Finding in Professional Codebases bugs
Fri, 19 Jun 2026 02:46:54 GMT The One Thing Nobody Checks in Password Reset (And Why It Pays) bugbounty-writeup
Sun, 31 May 2026 04:19:43 GMT Vigolium: The Open Source Vulnerability Scanner Bringing AI Power... vulnerability-scanning
Sat, 14 Mar 2026 18:06:12 GMT Web Security Series #3 — Discovering Credentials Using Cluster ... bug-bounty-hunting
Sun, 22 Oct 2023 19:57:30 GMT Performing a Log Poisoning Attack log-poisoning
Wed, 17 Jun 2026 16:30:53 GMT Understanding CVE Severity and Its Impact on Security Prioritizat... cve
Sun, 24 May 2026 15:03:53 GMT Support | TryHackMe | Walkthrough local-file-inclusion
Mon, 04 May 2026 14:48:00 GMT I Found 150+ Vulnerabilities in DeFi Protocols. Here’s Why I C... bounties
Sun, 24 Aug 2025 20:18:55 GMT How I found an Account Lockout Vulnerability Without Any Tools bug-bounty-program
Fri, 29 May 2026 17:22:37 GMT Cracking SameSite for a $2,000 Web Cache Deception web-cache-poisoning
Tue, 21 Apr 2026 14:42:50 GMT Web Security Series # 16— Exploiting Local File Inclusion (LFI) file-inclusion
Sun, 31 May 2026 06:49:51 GMT Subdomain Takeover: The Silent Killer of Web Security — Tryhack... subdomain-takeover
Sat, 13 Jun 2026 11:31:00 GMT Reflected XSS Made Stupidly Simple hackerone, bugcrowd
Thu, 11 Jun 2026 20:40:53 GMT From mTLS to MCP: 8 Published CVEs From Vulnerabilities I Reporte... security-research
Sat, 20 Jun 2026 00:52:29 GMT API Fuzzing for Bug Bounty — Part 2b: Injection, Bypasses & Out... bug-bounty-hunter
Thu, 28 May 2026 15:59:28 GMT File Inclusion Vulnerability Assessment file-inclusion
Fri, 28 Jun 2024 14:51:14 GMT X-Forwarded HTTP header-ləri : Qısa izah log-poisoning
Wed, 10 Jun 2026 08:19:20 GMT How I Dealt with an Exposed API Key on GitHub api-key
Thu, 30 Apr 2026 15:04:04 GMT I Almost Scrolled Past This URL… Then I Got Curious lfi
Mon, 27 Apr 2026 09:39:12 GMT Top Cyber Security Tools Every Beginner Should Learn in 2026 cybersecurity-tools
Thu, 11 Jun 2026 17:29:29 GMT Free AI API Keys: How to Get Them Without a Credit Card api-key
Sun, 21 Jun 2026 19:06:00 GMT Here’s To Never Discovering Who I Am! vulnerability
Mon, 13 Apr 2026 22:31:01 GMT The Cost of Trusting My Own Fingers bounties
Sun, 07 Jun 2026 20:25:48 GMT السلام عليكم ورحمة الله وبركاته idor
Wed, 17 Jun 2026 16:25:11 GMT What is the purpose of CVE in cybersecurity? cve
Wed, 29 Apr 2026 14:14:58 GMT Part 2 : Cross-Site Scripting (XSS) xss-bypass
Sat, 13 Jun 2026 07:59:20 GMT How a BOLA Vulnerability Escalated Into Full Account Takeover idor
Fri, 12 Jun 2026 11:04:39 GMT Why Your Subdomain Takeover Reports Keep Getting Closed as N/A (A... bugcrowd, subdomain-takeover
Sun, 21 Jun 2026 09:57:14 GMT How I Turned One Admin Account Into a Full Org Takeover bugbounty-writeup
Sat, 06 Jun 2026 07:18:44 GMT Update: The Ending of My $500 Loss and Web Cache Poisoning Story. web-cache-poisoning
Wed, 17 Jun 2026 11:33:12 GMT When Security Telemetry Becomes Reconnaissance: An Internal Pente... vapt
Thu, 07 May 2026 08:48:21 GMT Driving Operational Value Through Multi Agent Orchestration cybersecurity-tools
Wed, 10 Jun 2026 11:31:00 GMT Recon Is Everything — Where Real Bugs Actually Hide recon
Mon, 25 May 2026 08:02:31 GMT Lock Down Your APIs: A Guide to API Key Authentication api-key
Tue, 17 Mar 2026 09:18:53 GMT Web Security Series #6 — Exploiting SQL Injection to Extract Se... bug-bounty-hunting
Tue, 18 Nov 2025 18:12:40 GMT Dork Labs Awarded AWS Activate Startup Grant dorks
Sat, 20 Jun 2026 01:55:51 GMT My First Bug Found Me (I Wasn’t Even Looking) bugbounty-writeup
Tue, 03 Feb 2026 17:12:47 GMT My First Week: 3 Business Logic Bugs in Major E-Commerce bug-bounty-program
Fri, 05 Jun 2026 18:20:04 GMT CVE-2026-11332: How I found an Argument Injection in Ansible, lea... rce, remote-code-execution
Fri, 19 Jun 2026 14:32:09 GMT RCE Backdoor: I Almost Got Owned by a Fake Metatheory Job Intervi... remote-code-execution
Thu, 13 Feb 2025 03:29:37 GMT ZoomEye Meets DeepSeek: AI-Powered Cyberspace Intelligence zoomeye
Sun, 24 May 2026 17:16:28 GMT A Secret Key in Plain Sight: How I Earned My First $200 Finding a... api-key
Sat, 20 Apr 2024 17:20:58 GMT TryHackMe — Brute Walkthrough | TheHiker log-poisoning
Tue, 16 Jun 2026 20:42:56 GMT Red and Black Bugs Around Your Home? How to Identify and Get Rid ... bugs
Fri, 29 May 2026 18:01:00 GMT Bill’s Steak House (RCE) (WebVerse-pro.com) rce
Tue, 12 May 2026 09:55:50 GMT Critical PHP SOAP Vulnerabilities Put Web Applications at Risk of... remote-code-execution
Thu, 18 Jun 2026 15:55:40 GMT Writeup — Exploiting XXE to Perform SSRF Attacks ssrf
Fri, 29 May 2026 15:26:55 GMT Guided Pentest: Infrastructure (TryHackMe) pentest
Tue, 14 Apr 2026 17:24:57 GMT PAM Cleanup in Practice: Discovery, Risk Triage and Lifecycle Gov... cyber-sec
Wed, 17 Jun 2026 15:20:59 GMT From N/A to ##,###$: How I Turned One Overlooked Bug Into a Major... hackerone, ssrf
Mon, 01 Jun 2026 10:31:59 GMT WebVerse Pro — Header Hunt information-disclosure
Sun, 15 Feb 2026 09:26:13 GMT TryHackMe Walkthrough -Subdomain Enumeration subdomain-enumeration
Fri, 22 May 2026 05:40:40 GMT Mengamankan “Pipa Penghubung� Digital: Pentingnya VAPT dalam ... pentest
Sat, 20 Jun 2026 07:49:44 GMT From GraphQL Introspection to Critical Data Exposure: Discovering... security-research
Thu, 18 Jun 2026 23:55:38 GMT RoguePlanet: Anatomy of a Critical Zero-Day LPE in Microsoft Defe... cve
Fri, 27 Mar 2026 11:01:08 GMT Finding XSS Through HTML Injection — Without Fuzzing Tools xss-bypass
Thu, 02 Apr 2026 17:35:36 GMT How I Found a Subdomain Takeover via BetterUptime subdomain-takeover
Wed, 03 Jun 2026 06:11:43 GMT Frostbyte CTF writeup: chaining LDAP injection, password reuse, s... rce
Tue, 12 May 2026 01:31:25 GMT UltraVNC < 1.8.1.2- Unsafe CreateProcess Call Enables Arbitrary E... remote-code-execution
Sun, 07 Jun 2026 14:31:12 GMT SSRF Explained: Making the Server Your Proxy ssrf
Wed, 17 Jun 2026 01:13:17 GMT PortSwigger : Stored XSS into HTML Context with Nothing Encoded cross-site-scripting
Wed, 17 Jun 2026 08:47:02 GMT Cross-site scripting 8 (APPRENTICE) cross-site-scripting
Thu, 28 May 2026 16:33:00 GMT CONTENT DISCOVERY-TRYHACKME WALKTHROUGH google-dorking
Mon, 25 May 2026 09:26:41 GMT Web Önbelleği Zehirlenmesi web-cache-poisoning
Thu, 28 May 2026 07:15:06 GMT ¡Únete y hazte con uno de los más de 400 premios! bounty-program
Sun, 21 Jun 2026 18:31:00 GMT Can You Build a Career on Bugcrowd? I’m Going to Test It. (Day ... bug-bounty-tips, bugcrowd, bounty-program
Tue, 05 May 2026 09:32:07 GMT Google Dorks — Advanced Search google-dorking, google-dork
Wed, 01 Apr 2026 18:43:56 GMT Lab: SQL injection attack, listing the database contents on Oracl... web-pentest
Wed, 05 Nov 2025 12:42:46 GMT How I Hacked Bank’s Admin Portal vdp
Sun, 21 Jun 2026 15:49:10 GMT 20 Threat Scenarios Every Banking Application Should Test (Before... web-security, bug-bounty-tips, application-security
Wed, 17 Jun 2026 16:57:29 GMT Unauthenticated IDOR on NASA’s GitLab Instance — From Recon t... bugcrowd, security-research
Tue, 18 Nov 2025 08:33:41 GMT A Chain of Vulnerabilities Leading to Critical Information Disclo... bug-bounty-program
Tue, 19 May 2026 14:13:53 GMT Guildford to Box Hill dorking
Sun, 05 Apr 2026 20:11:41 GMT I Tried Logging In… and Accidentally Did Responsible Disclosure... vdp
Fri, 08 May 2026 09:52:18 GMT When Bug Bounty Hunting Hit Me Back: How Losing $500 Led Me to a ... web-cache-poisoning
Fri, 25 Jul 2025 16:41:01 GMT � SubDNS-UI: Build Your Own Subdomain + DNS Enumerator with a C... subdomain-enumeration
Fri, 12 Jun 2026 12:24:10 GMT Watcher (THM) Tryhackme Medium Challenge local-file-inclusion
Tue, 18 Nov 2025 13:26:47 GMT GitHub Dorking: The Hunter’s Guide to Finding Secrets in Public... github-dorking
Sun, 17 May 2026 15:50:44 GMT Web Cache Poisoning web-cache-poisoning
Sun, 07 Dec 2025 06:18:32 GMT Breaking the Perimeter: How My Custom Python Tool Bypassed a Fede... vdp
Wed, 17 Jun 2026 02:18:24 GMT The 5 AM Club Is a Lie. Here’s What Actually Works for Bug Hunt... bugbounty-writeup
Sun, 14 Jun 2026 16:00:27 GMT Bugs (Insects): Benefits and Harms for Nature and Humans bugs
Sun, 21 Jun 2026 19:39:22 GMT ENISA — SBOM Adoption in 2026: From Security Best Practice to R... vulnerability
Sat, 30 May 2026 18:19:20 GMT Admin Dashboard Accessible Without Authentication vulnerability-disclosure
Wed, 03 Jun 2026 15:20:33 GMT Most Businesses in Costa Rica Are Easier to Find Than You Think, ... directory-listing
Tue, 16 Jun 2026 02:05:28 GMT How to Find More Subdomains Than Everyone Else recon
Tue, 16 Jun 2026 09:34:58 GMT SSRF by encoding bug-bounty-hunter
Sat, 20 Jun 2026 20:32:56 GMT I Tested a Login Form and Accidentally Found Remote Code Executio... bug-bounty-writeup
Wed, 17 Jun 2026 06:57:38 GMT VAPTOR AI Pentest GPT vapt, pentest
Mon, 04 May 2026 19:18:14 GMT LFI to RCE: Log Poisoning via PHP Sessions and Apache Logs local-file-inclusion
Thu, 12 Mar 2026 18:11:47 GMT A Simple P4 Bug That Ended as Duplicate bug-bounty-hunting
Mon, 13 Apr 2026 06:37:51 GMT File Inclusion on DVWA file-inclusion
Sun, 21 Jun 2026 15:14:42 GMT The Login That Didn’t Need a Password bug-bounty-tips, bug-bounty-writeup
Sat, 20 Jun 2026 11:43:04 GMT OWASP Top 10:2025 Explained — The Most Critical Web Application... application-security
Thu, 11 Sep 2025 22:20:14 GMT It’s Coming: DorkFi Delivers PreFi Rewards Surge dorking
Thu, 04 Jun 2026 11:54:28 GMT Vulnerability Management: Identifying and Fixing Security Weaknes... vulnerability-scanning
Mon, 18 May 2026 08:13:48 GMT Why Every Business Needs a Vulnerability Scanning Service in 2026 vulnerability-scanning
Mon, 25 May 2026 22:43:37 GMT Support Writeup for Jr.Pentester Path — TryHackMe/THM local-file-inclusion
Mon, 08 Jun 2026 10:33:04 GMT How a Routine XSS Hunt Led to an Unexpected Database Information ... vulnerability-disclosure
Thu, 20 Nov 2025 17:16:47 GMT The Health Factor: How DorkFi Keeps Your Position Safe dorks
Sat, 09 May 2026 01:31:00 GMT Your Server Is Showing Everything It Shouldn’t -The Apache Dire... directory-listing
Thu, 02 Oct 2025 06:59:46 GMT Endless Cashback Glitch:How I Unlocked Unlimited Free Orders with... bug-bounty-program
Tue, 09 Jun 2026 08:49:59 GMT The Laravel Guide to SSRF Defense That Survives Redirects ssrf
Mon, 01 Jun 2026 19:46:00 GMT When a Routine Pentest Becomes a CVE: XSS to Admin in Rock RMS xss-vulnerability
Fri, 10 Apr 2026 12:32:22 GMT How Soroban’s CAP-0066 Killed My LayerZero Finding bounty-program
Fri, 12 Jun 2026 17:55:13 GMT SSRF Prevention: How You Actually Close This Off ssrf
Sun, 07 Jun 2026 18:38:23 GMT Visualizing Physical Attack Surface Exposure with Python, WiGLE, ... shodan
Tue, 15 Jul 2025 12:15:58 GMT “Secure� OPC UA Setups Are Being Hacked — Here’s Why censys
Mon, 04 May 2026 07:35:39 GMT CPDoS via Content Negotiation Mechanism web-cache-poisoning
Thu, 14 Aug 2025 10:54:38 GMT Unlocking the Hidden Power of Search Engines censys
Wed, 11 Mar 2026 08:12:14 GMT The Bug Bounty Hunter Roadmap (2026): From Curious Beginner to Re... bug-bounty-hunting