| Tue, 11 Aug 2026 23:37:43 GMT |
Over The Wire bandit Writeup (First ten levels) |
cybersecurity |
Yes |
|
| Tue, 11 Aug 2026 23:51:04 GMT |
The Week I Studied the Defenses, and Watched the Attack Walk Out ... |
information-security |
Yes |
|
| Tue, 11 Aug 2026 23:29:04 GMT |
30 Crits in One Week? How Our Team Found 55 Vulnerabilities While... |
cybersecurity, penetration-testing |
Yes |
|
| Tue, 11 Aug 2026 23:21:22 GMT |
Misuse of Cybersecurity Skills Undermines Trust in the Industry |
cybersecurity, hacking |
Yes |
|
| Tue, 11 Aug 2026 23:55:17 GMT |
Beyond the Numbers: Rethinking SOC Performance Metrics in Cyber S... |
information-security, cyber-security-awareness |
Yes |
|
| Tue, 11 Aug 2026 23:32:39 GMT |
TRUST HACKING © |
cybersecurity |
Yes |
|
| Tue, 11 Aug 2026 23:26:53 GMT |
Next.js’te Her Server Action Bir API Uç Noktasıdır |
cybersecurity |
Yes |
|
| Tue, 11 Aug 2026 23:31:01 GMT |
Kobold — HackTheBox Write-up |
hacking |
Yes |
|
| Tue, 11 Aug 2026 23:39:05 GMT |
[HS] Dark Writeup |
cybersecurity, infosec |
Yes |
|
| Tue, 11 Aug 2026 14:26:01 GMT |
I automated cloud posture checks. Here’s what it kept flagging. |
infosec |
|
|
| Sat, 08 Aug 2026 07:08:10 GMT |
The Metabase Breach Wasn’t Just a SQL Injection Problem |
bugs |
|
|
| Mon, 03 Aug 2026 05:32:49 GMT |
Remote code execution via web shell upload |
remote-code-execution |
|
|
| Fri, 19 Sep 2025 07:40:16 GMT |
How I Tracked Our Clients’ Device Versions Without Direct Repor... |
zoomeye |
|
|
| Mon, 22 Jun 2026 17:59:47 GMT |
How I Recon a Target, Part Two: Now We Poke It |
recon |
|
|
| Tue, 30 Jun 2026 12:11:15 GMT |
El toro de Wall Street ya está en WhiteBIT |
bounty-program |
|
|
| Tue, 04 Aug 2026 11:31:01 GMT |
Finding Exposed Cloud Keys & Secrets |
bugcrowd |
|
|
| Wed, 24 Jun 2026 19:59:01 GMT |
From an Informational Finding to a Valuable Lesson: My IDOR Disco... |
bugcrowd |
|
|
| Mon, 20 Jul 2026 06:24:37 GMT |
Using Cache Deception Techniques to Discover Cache Poisoning Vect... |
web-cache-poisoning |
|
|
| Sun, 15 Mar 2026 17:49:52 GMT |
TryHackMe — Takeover Writeup |
subdomain-takeover |
|
|
| Wed, 17 Jun 2026 08:46:50 GMT |
Amazon Prime for Young Adults — Why Every College Soccer Fan Ne... |
bounties |
|
|
| Mon, 10 Aug 2026 19:49:42 GMT |
An Evolution in HTTP: The QUERY Method |
web-security |
|
|
| Thu, 02 Jul 2026 16:02:56 GMT |
Strengthening Web3 Trust with Blockchain Incident Response & Fore... |
bug-bounty-program |
|
|
| Sat, 01 Aug 2026 17:32:15 GMT |
The Complete Pentest Methodology: A Step by Step Practical Guide ... |
exploit |
|
|
| Mon, 25 May 2026 09:26:41 GMT |
Web Önbelleği Zehirlenmesi |
web-cache-poisoning |
|
|
| Wed, 13 May 2026 07:37:16 GMT |
How to Find Subdomains Using Shodan and the Favicon Hash Trick |
subdomain-enumeration, shodan |
|
|
| Wed, 29 Jul 2026 18:31:01 GMT |
SSRF (Server-Side Request Forgery) |
ssrf |
|
|
| Tue, 22 Apr 2025 10:38:20 GMT |
Trump’s Tariffs Cut Out Censys — ZoomEye Steps In Strong! |
zoomeye |
|
|
| Sat, 08 Aug 2026 21:25:09 GMT |
Why flying bugs are drawn to artificial lights? |
bugs |
|
|
| Tue, 11 Aug 2026 14:51:10 GMT |
Try Hack Me-Beach Bar |
penetration-testing, ethical-hacking |
|
|
| Thu, 27 Mar 2025 23:46:11 GMT |
Make Break and Betrayal |
web-pentest |
|
|
| Wed, 17 Dec 2025 09:57:30 GMT |
The Mother Lode: Hacking with GitHub Dorking |
github-dorking |
|
|
| Tue, 11 Aug 2026 06:45:27 GMT |
How I Find Hidden URLs Using waymore |
bug-bounty |
|
|
| Tue, 11 Aug 2026 22:27:39 GMT |
Nigeria’s 2026 Cybersecurity Breach Wave: A Wake-Up Call |
cybersecurity, information-security |
|
|
| Sun, 09 Aug 2026 06:38:19 GMT |
How I Escalated Privileges by Manipulating a Client-Side Permissi... |
bug-bounty-tips |
|
|
| Sat, 25 Jul 2026 15:42:11 GMT |
#DevelopersWeapon (Left) vs#CybersecurityWeapon(Right) |
cybersecurity-tools |
|
|
| Tue, 28 Jul 2026 10:38:15 GMT |
How I Built FlexTools Pro — A Privacy-First Toolbox That Actual... |
file-upload |
|
|
| Mon, 29 Jun 2026 10:46:38 GMT |
Costa Rica Canopy Tours: Choosing Experiences That Match Your Com... |
directory-listing |
|
|
| Sun, 19 Jul 2026 09:38:45 GMT |
How Shodan Maps the Entire Internet — And What That Means for Y... |
shodan |
|
|
| Fri, 31 Jul 2026 07:03:00 GMT |
What a Wrong API Key Taught Me About Debugging, Growth and Seekin... |
api-key |
|
|
| Tue, 19 May 2026 14:13:53 GMT |
Guildford to Box Hill |
dorking |
|
|
| Fri, 07 Aug 2026 11:31:01 GMT |
Webhooks, Integrations & the SSRF Playground |
ssrf |
|
|
| Thu, 06 Aug 2026 10:02:10 GMT |
PDF24 Creator vs PDF Forge: Offline or Online PDF Tools? |
file-upload |
|
|
| Thu, 06 Aug 2026 12:17:57 GMT |
How I Almost Made $1,000 with a Pre-Account Takeover |
bugbounty-writeup |
|
|
| Fri, 08 May 2026 22:01:34 GMT |
AI Is Breaking the Two Rules That Kept the Internet Safe — And ... |
vulnerability-disclosure |
|
|
| Thu, 11 Jun 2026 05:26:16 GMT |
START HERE, MANIFESTO |
dorks |
|
|
| Wed, 19 Nov 2025 19:44:02 GMT |
The Pulse of Liquidity: How DorkFi’s Interest Rates Adapt in Re... |
dorks |
|
|
| Tue, 04 Aug 2026 17:15:45 GMT |
How I Found a $250 BOLA in a Government Transport App’s Real-Ti... |
idor |
|
|
| Sun, 26 Jul 2026 17:02:58 GMT |
Offensive Security Intro (versão em português) |
pentest |
|
|
| Tue, 11 Aug 2026 18:28:20 GMT |
What Is an MSP, and Does Your Toledo Business Need One? | Azlera |
information-technology |
|
|
| Wed, 24 Jun 2026 11:31:00 GMT |
CSRF Explained Like You’re Five |
bugcrowd |
|
|
| Sun, 26 Jul 2026 22:55:53 GMT |
I Found 15 Critical Vulnerabilities in One Afternoon |
bug-bounty-hunter |
|
|
| Fri, 24 Jul 2026 21:06:13 GMT |
File Upload |
file-upload |
|
|
| Sun, 31 May 2026 06:49:51 GMT |
Subdomain Takeover: The Silent Killer of Web Security — Tryhack... |
subdomain-takeover |
|
|
| Sat, 04 Apr 2026 09:10:35 GMT |
We’ve messed up, a lot. Here’s Why Scribble Still Exists to c... |
bounties |
|
|
| Fri, 07 Aug 2026 09:00:15 GMT |
12 Real-World XSS Attacks: A Hands-On Walkthrough from WAF Bypass... |
xss-attack |
|
|
| Mon, 10 Aug 2026 14:04:06 GMT |
How a $5,000 “Low Severity� Bug Turned Into the Ultimate Admi... |
bug-bounty-writeup |
|
|
| Sat, 01 Aug 2026 12:29:07 GMT |
Exploiting a Vulnerable Windows 7 Machine Using EternalBlue (MS17... |
exploit |
|
|
| Tue, 11 Aug 2026 11:34:32 GMT |
Why Do Schools Need an LMS in 2026? |
information-technology |
|
|
| Mon, 16 Mar 2026 14:32:42 GMT |
Web Security Series #5 — Exploiting Broken Access Control via T... |
bug-bounty-hunting |
|
|
| Tue, 11 Aug 2026 19:36:52 GMT |
You’re Spending Millions on Cybersecurity. So Why Are You Still... |
security |
|
|
| Tue, 03 Feb 2026 17:12:47 GMT |
My First Week: 3 Business Logic Bugs in Major E-Commerce |
bug-bounty-program |
|
|
| Mon, 06 Jul 2026 07:31:35 GMT |
From Testing File Uploads to Discovering Remote Code Execution (R... |
remote-code-execution |
|
|
| Tue, 14 Jul 2026 17:10:47 GMT |
File Inclusion Challenge (TryHackMe) |
file-inclusion |
|
|
| Fri, 28 Jun 2024 14:51:14 GMT |
X-Forwarded HTTP header-ləri : Qısa izah |
log-poisoning |
|
|
| Tue, 11 Aug 2026 12:56:15 GMT |
Windows Endpoint & LOB Application Dependency Engineering: Diagno... |
application-security |
|
|
| Fri, 24 Jul 2026 07:45:57 GMT |
AdaptixC2 & Domain Trusts: Chained Compromise of a Multi-Forest A... |
pentest |
|
|
| Tue, 04 Aug 2026 01:01:01 GMT |
The Software Testing Vocabulary Problem That Makes Incident Inves... |
bugs |
|
|
| Sat, 25 Jul 2026 04:56:38 GMT |
Writeup VDP CVE-2026–42031 (CKAN SQLI & Autherization bypass) d... |
vdp |
|
|
| Tue, 11 Aug 2026 08:48:54 GMT |
IPv6 penetration testing. |
pentesting |
|
|
| Tue, 11 Aug 2026 13:43:16 GMT |
AI Is Coming for Jobs — But Not in the Way You Think |
information-security |
|
|
| Tue, 11 Aug 2026 21:15:11 GMT |
Phishing Awareness Guide |
cyber-security-awareness |
|
|
| Thu, 09 Jul 2026 23:38:38 GMT |
AtDork 1.3.9.6? 180,000 Dorks free open source |
google-dork, dorks |
|
|
| Fri, 31 Jul 2026 07:56:13 GMT |
CVE-2026–16764 // Privilege Escalation on DefectDojo ≤ 2.59.0... |
exploit |
|
|
| Wed, 17 Jun 2026 19:02:16 GMT |
TryHackMe Lo-Fi Writeup |
lfi |
|
|
| Sun, 22 Oct 2023 19:57:30 GMT |
Performing a Log Poisoning Attack |
log-poisoning |
|
|
| Sat, 09 May 2026 10:01:40 GMT |
Shodan.io | TryHackMe |
shodan |
|
|
| Tue, 11 Aug 2026 07:55:59 GMT |
Your Business Doesn’t Need More Software. It Needs Better Softw... |
information-technology |
|
|
| Thu, 21 May 2026 15:16:28 GMT |
How to Bypass LinkedIn Commercial Use Limit in 2026 (Without Payi... |
google-dorking |
|
|
| Thu, 11 Jun 2026 04:44:15 GMT |
AtDork dorking tools |
google-dork |
|
|
| Mon, 22 Jun 2026 04:22:38 GMT |
Subdomain Takeover: A Complete Guide from Beginner to Advanced |
subdomain-takeover |
|
|
| Tue, 11 Aug 2026 15:18:26 GMT |
MCRTA Exam Walkthrough — Multi-Cloud Red Teaming on AWS, Azure ... |
pentesting |
|
|
| Sun, 21 Jun 2026 18:54:02 GMT |
From Hydra to RCE: Breaking Down TryHackMe’s Support Machine |
web-pentest |
|
|
| Tue, 18 Nov 2025 13:26:47 GMT |
GitHub Dorking: The Hunter’s Guide to Finding Secrets in Public... |
github-dorking |
|
|
| Tue, 23 Jun 2026 07:06:16 GMT |
Bug Bounty Recon Mastery →Advanced Reconnaissance and Attack Su... |
subdomain-enumeration |
|
|
| Mon, 03 Aug 2026 09:22:06 GMT |
Server-2: Vulnerable OnlyPhone— VulnerabilityWeb Walkthrough (4... |
directory-listing |
|
|
| Mon, 06 Jul 2026 11:47:49 GMT |
UK Business Directory: Strategic Visibility for Local Market Succ... |
directory-listing |
|
|
| Tue, 11 Aug 2026 15:36:53 GMT |
Global Scams & Financial Fraud: What the Data Tells Us About Who ... |
cyber-security-awareness |
|
|
| Fri, 24 Jan 2025 00:08:47 GMT |
A majestic temple opportunity of wellbeing and wellness |
web-pentest |
|
|
| Fri, 05 Jun 2026 04:49:28 GMT |
Price Manipulation in Payment Gateway / Shopping Cart |
vdp |
|
|
| Thu, 09 Apr 2026 17:39:27 GMT |
From 401 to BAC: How a Refresh Broke Workspace Authorization |
vulnerability-disclosure |
|
|
| Fri, 07 Aug 2026 17:23:58 GMT |
Part II: The Case for Disposable Code |
cve |
|
|
| Thu, 06 Aug 2026 12:51:08 GMT |
# Why API-First Infrastructure Is Becoming Essential for AI Agent... |
api-key |
|
|
| Tue, 11 Aug 2026 11:22:23 GMT |
Bonjour (Hackthebox) Complete Walkthrough |
bug-bounty-writeup |
|
|
| Mon, 03 Aug 2026 19:09:26 GMT |
TryHackMe: “Beach Bar� Room Walkthrough ( Hacker’s Holiday ... |
remote-code-execution |
|
|
| Thu, 06 Aug 2026 10:18:04 GMT |
Why Modern VAPT Is Essential for Defending Against Advanced Cyber... |
vapt |
|
|
| Sat, 01 Aug 2026 08:25:35 GMT |
How I Found an SSRF in Mozilla Firefox That Could Compromise the ... |
ssrf |
|
|
| Wed, 17 Jun 2026 18:22:29 GMT |
Why 90% of Bug Bounty Hunters Fail in Their First 3 Months (And H... |
recon |
|
|
| Wed, 01 Jul 2026 11:02:50 GMT |
Bounty Hacker |
bounties |
|
|
| Tue, 11 Aug 2026 22:01:01 GMT |
A Passed AI Audit Cannot Justify Permanent Agent Access |
security |
|
|
| Fri, 31 Jul 2026 14:59:38 GMT |
How HTTP Request Smuggling Still Exist and How to exploit |
exploit |
|
|
| Thu, 30 Jul 2026 17:14:55 GMT |
3 Hops to RCE. | MCP Security Part 4 |
rce |
|
|
| Sat, 06 Dec 2025 23:06:15 GMT |
Big News from DorkFi — PreFi Rewards Drop + Contest Live! |
dorks |
|
|
| Sat, 25 Apr 2026 14:46:05 GMT |
File Inclusion— Skills Assesment (HTB) |
file-inclusion |
|
|
| Fri, 10 Jul 2026 18:20:51 GMT |
Hello World! First post, first CVE |
security-research |
|
|
| Tue, 26 May 2026 23:44:37 GMT |
Intigriti May 2026 Challenge: XSS via Stored Payload & SCA Shield... |
xss-bypass |
|
|
| Tue, 11 Aug 2026 14:05:38 GMT |
How to Run VulnHub Machines on Apple Silicon |
ethical-hacking |
|
|
| Tue, 28 Jul 2026 08:23:06 GMT |
[CVE-2026–56139] Apache Camel Undertow Component — Sensitiv... |
exploit |
|
|
| Sun, 12 Jul 2026 19:11:01 GMT |
Building a File Upload Scanning Pipeline for Laravel and S3 |
vulnerability-scanning |
|
|
| Thu, 06 Aug 2026 08:47:20 GMT |
AWS Cloud Security Challenge: SSRF, IMDSv2, and Cloud Takeover |
ssrf |
|
|
| Tue, 11 Aug 2026 19:50:09 GMT |
18 Bytes, tiny but killing: Hunting a Memory-Corruption Bug in Te... |
cve |
|
|
| Fri, 17 Apr 2026 19:01:54 GMT |
The Ultimate Guide to Wayback Machine Dorking for Deleted Leaks |
dorking |
|
|
| Fri, 31 Jul 2026 13:46:01 GMT |
How I Found My First Real-Life RCE: Exploiting CVE-2026–53576 i... |
remote-code-execution |
|
|
| Sat, 08 Aug 2026 17:56:15 GMT |
LazyHound: The Smart Enumeration Engine That Finds the Direct Pat... |
cybersecurity-tools |
|
|
| Sat, 02 Aug 2025 14:15:23 GMT |
The Silent Risk in Your ICS: Why S7 Protocol Needs Security Atten... |
censys |
|
|
| Mon, 03 Aug 2026 20:28:37 GMT |
Your App Leaks More Secrets Than You Think Even When It’s “S... |
xss-attack |
|
|
| Fri, 31 Jul 2026 08:05:40 GMT |
Room 404 (THM) Tryhackme Walkthrough [Hacker Holidays : Day 2] |
information-disclosure |
|
|
| Sun, 17 May 2026 15:50:44 GMT |
Web Cache Poisoning |
web-cache-poisoning |
|
|
| Tue, 11 Aug 2026 12:24:22 GMT |
Major Cybersecurity Threats and Attacks in Africa |
information-security |
|
|
| Fri, 06 Feb 2026 06:33:08 GMT |
5 Ways to Bypass Email Verification Without Using Any Tool |
bug-bounty-program |
|
|
| Sun, 14 Jun 2026 13:21:02 GMT |
Subdomain Enumeration: A Core Technique Every Bug Hunter Must Mas... |
subdomain-enumeration |
|
|
| Fri, 17 Apr 2026 15:39:41 GMT |
Bug Bounty 2026: Why the “End of the World� is Actually a $50... |
bounties |
|
|
| Tue, 11 Aug 2026 10:52:14 GMT |
10 Cloud Penetration Testing Companies to Consider in 2026 |
penetration-testing |
|
|
| Tue, 11 Aug 2026 17:56:44 GMT |
How Much Should a Toledo Small Business Budget for IT? | Azlera |
information-technology |
|
|
| Tue, 04 Aug 2026 18:41:33 GMT |
Towel on the Sunbed — TryHackMe Walkthrough | Race Condition E... |
bugbounty-writeup |
|
|
| Wed, 29 Jul 2026 04:39:38 GMT |
Create your free AI API-Key with Groq to use in ScaleCraft Deep C... |
api-key |
|
|
| Tue, 11 Aug 2026 02:22:41 GMT |
Ascendence |
vulnerability |
|
|
| Tue, 11 Aug 2026 04:42:00 GMT |
Flutter WebView and Deep Link Security: The Doors You Left Open |
application-security |
|
|
| Tue, 14 Apr 2026 13:07:05 GMT |
My “Gemini� Is Named Mike |
dorks |
|
|
| Thu, 13 Mar 2025 18:09:56 GMT |
How I Found Sensitive Information using Github Dorks in Bug Bount... |
github-dorking |
|
|
| Sat, 11 Jul 2026 03:01:04 GMT |
Achieving Zero-Downtime AI for Security Research: Guide to Settin... |
security-research |
|
|
| Sun, 07 Jun 2026 18:38:23 GMT |
Visualizing Physical Attack Surface Exposure with Python, WiGLE, ... |
shodan |
|
|
| Sun, 21 Sep 2025 07:02:30 GMT |
Affordable but Vulnerable? The Dark Side of CMORE HMI |
censys |
|
|
| Mon, 18 May 2026 07:01:05 GMT |
InterLink Migration Vote Begins | Active Bounty Season 3 |
bounty-program |
|
|
| Fri, 07 Aug 2026 08:34:38 GMT |
I Gave an Open-Weight Model a Linux Kernel Bug(CVE-2026–64564). |
cyber-sec |
|
|
| Tue, 11 Aug 2026 20:48:46 GMT |
The Attack That Finished Before the Alert Arrived |
hacking, information-security |
|
|
| Tue, 21 Jul 2026 03:32:29 GMT |
Best Python Libraries for Vulnerability Scanning |
vulnerability-scanning |
|
|
| Thu, 06 Aug 2026 00:39:43 GMT |
Nmap Basic Port Scans (versão em português) |
pentest |
|
|
| Fri, 31 Jul 2026 06:54:11 GMT |
Pentest tại Việt Nam: Doanh nghiệp thực sự cần kiểm... |
pentest |
|
|
| Mon, 18 May 2026 14:37:14 GMT |
File Inclusion - Challenge Part | TryHackMe Walkthrough |
file-inclusion |
|
|
| Mon, 29 Jun 2026 11:44:13 GMT |
Cybersecurity Practice Lab 3 |
cross-site-scripting |
|
|
| Tue, 10 Feb 2026 23:04:46 GMT |
Effective Dorking Tools |
dorking |
|
|
| Sun, 02 Aug 2026 14:32:52 GMT |
Benefits of VAPT for Modern Businesses |
vapt |
|
|
| Tue, 23 Jun 2026 16:59:56 GMT |
The Internet Never Forgets : A Beginner’s Guide to OSINT |
recon |
|
|
| Mon, 22 Jun 2026 07:48:39 GMT |
Still Confused by Amass or Can’t Understand Its Results, This I... |
recon |
|
|
| Tue, 11 Aug 2026 08:42:47 GMT |
How to Automate Bug Bounty Reconnaissance with Recon Hero |
bug-bounty, bug-bounty-tips |
|
|
| Tue, 11 Aug 2026 21:15:00 GMT |
VAD Stomping from Kernel R/W Primitive |
hacking, infosec, pentesting |
|
|
| Thu, 20 Nov 2025 09:45:04 GMT |
Timber Doors in Surrey: Style, Durability, and Value Explained |
dorking |
|
|
| Thu, 11 Sep 2025 22:20:14 GMT |
It’s Coming: DorkFi Delivers PreFi Rewards Surge |
dorking |
|
|
| Tue, 11 Aug 2026 11:53:05 GMT |
Why “Fake IDs Buying� Searches Reveal a Deeper Identity Verif... |
cyber-security-awareness |
|
|
| Mon, 06 Apr 2026 21:45:53 GMT |
Cookie(Çerez) Türleri ve Pentest Açısından Önemi |
web-pentest |
|
|
| Sat, 25 Oct 2025 12:23:25 GMT |
How to find leaks on GitHub as a beginner. Logic is main key |
github-dorking |
|
|
| Sat, 20 Dec 2025 18:21:40 GMT |
N0aziXss SubSpectre: Advanced Subdomain Discovery with Intelligen... |
subdomain-enumeration |
|
|
| Sun, 09 Aug 2026 10:09:13 GMT |
The Paper Documents Most Businesses Could Replace With a Single Q... |
file-upload |
|
|
| Mon, 04 May 2026 12:56:26 GMT |
Beyond alert(1): Advanced XSS Payload Crafting, Filter Bypasses &... |
xss-bypass |
|
|
| Sun, 02 Aug 2026 11:38:51 GMT |
Ollama’dan API Key Nasıl Alınır (2026) |
api-key |
|
|
| Wed, 20 May 2026 11:18:33 GMT |
Me Before Digiss vs Me Now in Digiss: How My Cybersecurity Learni... |
cyber-sec |
|
|
| Mon, 04 May 2026 17:36:51 GMT |
The Complete Guide to Managed Cyber Defense: Protecting Your Busi... |
cyber-sec |
|
|
| Sat, 08 Aug 2026 00:15:51 GMT |
Uncovering a Privacy Bug in Proton Meet — How a Simple Logic â€... |
bug-bounty-hunter |
|
|
| Mon, 10 Aug 2026 18:04:35 GMT |
DEF CON 34: Where AppSec, AI, and Bug Bounty Are Colliding |
application-security |
|
|
| Wed, 05 Aug 2026 13:20:31 GMT |
Top 10 VAPT Companies in India for 2026: Services, Pros, Cons and... |
vapt |
|
|
| Tue, 28 Apr 2026 07:09:41 GMT |
owockibot: The Bounty Board Powering the Agent Economy |
bounty-program |
|
|
| Tue, 11 Aug 2026 16:01:02 GMT |
Workflow Debt is the New Tech Debt: How to Spot It Before It Kill... |
information-technology |
|
|
| Fri, 31 Jul 2026 19:14:40 GMT |
Bypassing Account Sign-up Restrictions with a Unicode Character |
bugbounty-writeup |
|
|
| Tue, 11 Aug 2026 08:38:27 GMT |
“CYBER WAR CHRONICLES: SHADOW PROTOCOL� |
cyber-security-awareness |
|
|
| Wed, 18 Mar 2026 10:03:26 GMT |
Web Security Series #7 — Exploiting Blind SQL Injection via Ses... |
bug-bounty-hunting |
|
|
| Sat, 01 Aug 2026 15:04:25 GMT |
Server-Side Request Forgery (SSRF) |
ssrf |
|
|
| Thu, 11 Jun 2026 05:41:48 GMT |
Shodan: The Search Engine Hackers Don’t Want You to Know About |
shodan |
|
|
| Sat, 04 Jul 2026 14:47:14 GMT |
AI is built into apps now. What does that mean for data security? |
cyber-sec |
|
|
| Mon, 10 Aug 2026 21:56:59 GMT |
Stop Drowning in Recon Output. Start Hunting the Signal. |
bug-bounty-tips, bugbounty-writeup, bug-bounty-writeup, bug-bounty-hunter |
|
|
| Mon, 13 Apr 2026 03:31:01 GMT |
Google Dorks Google Ko Bana Do Apna Hacking Tool: Free Mein Bugs ... |
github-dorking |
|
|
| Tue, 11 Aug 2026 15:11:01 GMT |
How a $100 Profile Picture Glitch Turned Into a $9,000 Zero-Day R... |
bug-bounty, pentesting, bug-bounty-writeup |
|
|
| Mon, 27 Jul 2026 20:47:05 GMT |
TryHackMe XSS Introduction Walkthrough |
cross-site-scripting |
|
|
| Fri, 31 Jul 2026 21:01:01 GMT |
How I Got My Highest Payout |
hackerone |
|
|
| Mon, 27 Jul 2026 19:35:52 GMT |
AI Slop Is Drowning Bug Bounty Programs — Here’s How to Write... |
bugcrowd |
|
|
| Fri, 24 Jan 2025 09:34:52 GMT |
A new Holistic temple opening InLeeds |
web-pentest |
|
|
| Mon, 10 Aug 2026 12:33:21 GMT |
Why Most “AI Penetration Testing� Talk Is Wrong — and What ... |
vulnerability-scanning |
|
|
| Thu, 28 May 2026 15:59:28 GMT |
File Inclusion Vulnerability Assessment |
file-inclusion |
|
|
| Thu, 18 Jun 2026 11:52:47 GMT |
¿Usas Intercambio? |
bounty-program |
|
|
| Wed, 13 May 2026 23:11:19 GMT |
The Lethal Trifecta: How AI Agents With Tool Access Turn Prompt I... |
cyber-sec |
|
|
| Mon, 03 Aug 2026 14:08:21 GMT |
Apple Just Had to Cap Bug Reports Because AI Is Flooding Its Own ... |
bugs |
|
|
| Tue, 11 Aug 2026 16:47:49 GMT |
Day 27: Microsoft Sentinel Workbooks — Turning Security Data In... |
ethical-hacking |
|
|
| Tue, 28 Jul 2026 16:43:20 GMT |
Two JWT Mistakes That Can Compromise Your Authentication System |
cross-site-scripting |
|
|
| Mon, 10 Aug 2026 22:03:54 GMT |
The APIs You Can’t See: Closing the Internal Blind Spot |
application-security |
|
|
| Tue, 19 May 2026 17:44:55 GMT |
Day 5: Footprinting & Reconnaissance -How Attackers Know Everythi... |
google-dorking |
|
|
| Tue, 04 Aug 2026 17:39:17 GMT |
The Debug Flag That Opened the Door: A Journey From Django Debug ... |
rce |
|
|
| Tue, 04 Aug 2026 11:14:01 GMT |
Building an AI-Powered Container Scan Analyzer into our CI/CD Pip... |
vulnerability-scanning |
|
|
| Wed, 17 Jun 2026 07:53:43 GMT |
Operation Liwanag: The Same Map a Chinese Intelligence Asset Drew... |
shodan, censys |
|
|
| Tue, 11 Aug 2026 22:15:55 GMT |
SODIK OS: I Built a Hacker-Movie Operating System That Actually B... |
hacking |
|
|
| Tue, 11 Aug 2026 17:09:34 GMT |
30-Day Cybersecurity Learning Journey — Day 1 |
cyber-security-awareness |
|
|
| Fri, 17 Jul 2026 07:05:37 GMT |
Lab 3 : Source code disclosure via backup files |
information-disclosure |
|
|
| Tue, 11 Aug 2026 05:47:01 GMT |
EasyStore (Joomla) filter_sortby Pre-Authentication SQL Injection... |
exploit, cve |
|
|
| Tue, 11 Aug 2026 13:53:11 GMT |
Enumeration Task — Metasploitable 2 |
penetration-testing, ethical-hacking |
|
|
| Tue, 11 Aug 2026 17:41:51 GMT |
Let “Claude Code� Do Your Pentesting! |
pentesting |
|
|
| Thu, 30 Jul 2026 22:35:30 GMT |
$1,500 AI System Prompt Leak: Using this Burp Suite Configuration |
hackerone |
|
|
| Thu, 23 Jul 2026 17:59:49 GMT |
HTB SpookyPass Writeup |
pentest, cyber-sec |
|
|
| Mon, 29 Jun 2026 06:52:04 GMT |
My First Cross-Site Scripting (XSS) Vulnerability: A Journey of P... |
xss-bypass |
|
|
| Tue, 11 Aug 2026 19:22:43 GMT |
Teaching an Intrusion Detection System to Recognize What It’s N... |
infosec |
|
|
| Wed, 05 Aug 2026 09:45:09 GMT |
DAST Security Testing in UAE: Why the App That Passed Every Code ... |
vapt |
|
|
| Sat, 14 Mar 2026 18:06:12 GMT |
Web Security Series #3 — Discovering Credentials Using Cluster ... |
bug-bounty-hunting |
|
|
| Sat, 25 Jul 2026 08:03:03 GMT |
How I Found 8 Vulnerabilities on an HP Student Portal |
idor |
|
|
| Thu, 30 Jul 2026 11:31:01 GMT |
Shodan & Censys — The Search Engines for Hackers |
shodan |
|
|
| Wed, 05 Aug 2026 14:04:53 GMT |
Overheard at Breakfast (THM) Tryhackme Walkthrough Hacker Holiday... |
information-disclosure |
|
|
| Mon, 10 Aug 2026 16:30:32 GMT |
Web Cache Deception vs Web Cache Poisoning: The Attack Paths Most... |
web-cache-poisoning |
|
|
| Thu, 14 Aug 2025 10:54:38 GMT |
Unlocking the Hidden Power of Search Engines |
censys |
|
|
| Tue, 11 Aug 2026 11:31:01 GMT |
Template Injection Is Hiding in Your “Personalization� Featur... |
bug-bounty, infosec, ethical-hacking |
|
|
| Mon, 10 Aug 2026 23:13:53 GMT |
How Insecure Client-Side State Management Led to a Critical BFLA ... |
web-security, application-security |
|
|
| Mon, 18 May 2026 00:04:46 GMT |
GOOGLE DORK İLE BİLGİYİ HIZLI VE DOĞRU BULMA |
google-dorking, google-dork, github-dorking |
|
|
| Sun, 26 Jan 2025 19:08:11 GMT |
Matrix strike’s back against honesty from a power stance |
web-pentest |
|
|
| Thu, 23 Jul 2026 16:49:49 GMT |
WP2Shell (CVE-2026–63030): The WordPress Core Bug That Let Anyo... |
rce |
|
|
| Thu, 13 Feb 2025 03:29:37 GMT |
ZoomEye Meets DeepSeek: AI-Powered Cyberspace Intelligence |
zoomeye |
|
|
| Tue, 11 Aug 2026 19:14:32 GMT |
BlueMove Was Not an Overflow Bug — How a Cross-Version Reserve ... |
security, hacking |
|
|
| Thu, 16 Jul 2026 04:28:38 GMT |
How to Install GAU (GetAllURLs) Tool on Kali Linux — Complete G... |
bugcrowd |
|
|
| Tue, 18 Nov 2025 08:33:41 GMT |
A Chain of Vulnerabilities Leading to Critical Information Disclo... |
bug-bounty-program |
|
|
| Wed, 25 Mar 2026 08:34:09 GMT |
Improper Input Handling Leading to Client Side Code Execution and... |
vulnerability-disclosure |
|
|
| Thu, 06 Aug 2026 07:39:53 GMT |
Superteam CTF v2: A Beginner’s Journey into Solana Security |
security-research |
|
|
| Fri, 07 Aug 2026 10:51:46 GMT |
DOM XSS using web messages |
xss-vulnerability |
|
|
| Thu, 06 Aug 2026 12:49:45 GMT |
The Lesser-Known Art of Recon Using Favicon Hashes |
recon |
|
|
| Mon, 03 Aug 2026 06:00:35 GMT |
API Key vs Access Token: What’s the Difference? A Complete Guid... |
api-key |
|
|
| Tue, 11 Aug 2026 09:39:48 GMT |
NoSQL Injection: The Vulnerability Hiding in Your “Modern� Da... |
bug-bounty |
|
|
| Sun, 09 Aug 2026 08:12:29 GMT |
Deep Dive: OIDC & SAML Implementation + SQL Injection & XSS Harde... |
xss-attack |
|
|
| Sat, 18 Jul 2026 16:21:01 GMT |
Guide Presents Best Cybersecurity Investments for Small Business ... |
cybersecurity-tools |
|
|
| Mon, 27 Jul 2026 08:02:41 GMT |
CVE-2025–4760: Authenticated Stored XSS Vulnerability in WSO2 A... |
xss-vulnerability |
|
|
| Thu, 06 Aug 2026 15:33:21 GMT |
„Samy is my hero“: Der freundlichste Hack der Internetgeschic... |
xss-attack |
|
|
| Tue, 11 Aug 2026 15:32:02 GMT |
The File Upload Mistake I Made Twice: Proxying Through My Own Bac... |
file-upload |
|
|
| Sun, 09 Aug 2026 18:04:19 GMT |
Software Bug Tracking: Transforming Errors Into Superior Software... |
bugs |
|
|
| Wed, 12 Feb 2025 22:46:35 GMT |
https://www.express.co.uk/life-style/property/2012927/cleaning-ch... |
web-pentest |
|
|
| Sat, 30 May 2026 18:19:20 GMT |
Admin Dashboard Accessible Without Authentication |
vulnerability-disclosure |
|
|
| Wed, 29 Jul 2026 12:30:32 GMT |
Is Google Dorking Legal? Understanding the Ethical and Legal Aspe... |
google-dorking, google-dork |
|
|
| Thu, 28 May 2026 16:33:00 GMT |
CONTENT DISCOVERY-TRYHACKME WALKTHROUGH |
google-dorking |
|
|
| Fri, 31 Jul 2026 22:19:00 GMT |
PortSwigger Lab Write-up: SSRF with Blacklist-Based Input Filter |
ssrf |
|
|
| Wed, 29 Jul 2026 04:08:16 GMT |
Day 26: Cross-Site Scripting (XSS) - Hacker Sidekick Certified Vi... |
xss-vulnerability |
|
|
| Tue, 11 Aug 2026 17:31:01 GMT |
A Time Bomb Set for 2038. Two People Started Defusing It Inside L... |
security |
|
|
| Tue, 14 Jul 2026 02:38:44 GMT |
What Is YARA? The Tool Security Researchers Use to Spot Malware P... |
cybersecurity-tools |
|
|
| Sun, 19 Jul 2026 19:30:09 GMT |
Login Security Testing Checklist |
bug-bounty-hunting |
|
|
| Tue, 28 Jul 2026 07:05:10 GMT |
How I found an IDOR in Google Classroom on Day 3 of my Hunting? |
idor |
|
|
| Mon, 27 Jul 2026 04:15:42 GMT |
Clipboard-Safe File Transfer With PowerShell Chunks |
security-research |
|
|
| Sat, 18 Jul 2026 13:42:58 GMT |
Experimental Confirmation of CVE-2026–25262 on Snapdragon 8 Gen... |
security-research |
|
|
| Sat, 18 Jul 2026 15:13:45 GMT |
PentesterLab — Recon 10: Visual Reconnaissance |
recon |
|
|
| Tue, 11 Aug 2026 09:05:05 GMT |
5/18-The Global Rules Every New Project Should Have-Secure by def... |
application-security |
|
|
| Fri, 12 Jun 2026 10:04:19 GMT |
ATDORK |
google-dork |
|
|
| Fri, 24 Jul 2026 14:42:15 GMT |
The Payload Was Never the Problem |
rce |
|
|
| Fri, 10 Nov 2023 03:38:01 GMT |
Apache error.log advanced Log poisoning RCE |
log-poisoning |
|
|
| Fri, 07 Aug 2026 09:37:42 GMT |
Are We Missing the #Ai Security Warning Signs? |
cyber-sec |
|
|
| Tue, 11 Aug 2026 11:59:05 GMT |
Ghost Engine v3.2: An All-in-One Bug Bounty Recon & Security Aut... |
bug-bounty |
|
|
| Sun, 19 Jul 2026 21:01:10 GMT |
The Secret Was Just One Folder Away |
information-disclosure, file-inclusion |
|
|
| Sun, 02 Aug 2026 11:25:48 GMT |
Writing Custom Exploits: From Vulnerability Discovery to Working... |
exploit |
|
|
| Sat, 18 Jul 2026 06:52:39 GMT |
[Support] — Exploiting LFI, Weak Session Cookies, and Command... |
local-file-inclusion |
|
|
| Tue, 11 Aug 2026 09:05:14 GMT |
How a JavaScript file led me to an Admin Access |
pentesting |
|
|
| Sat, 08 Aug 2026 06:31:01 GMT |
MariaDB CVE-2026–49261: Pre-Authentication Remote Code Executio... |
bug-bounty-writeup, cve |
|
|
| Wed, 29 Jul 2026 08:59:41 GMT |
How I Uncovered an Account Takeover Flaw via Unexpired Reset Toke... |
bug-bounty-hunter |
|
|
| Mon, 27 Apr 2026 07:12:30 GMT |
One Weird Query String That Let Anyone Hijack Any Account in Roc... |
bounties |
|
|
| Tue, 11 Aug 2026 18:49:37 GMT |
Building a Secret-Scanning Check for GitHub Actions (From Scratch... |
security |
|
|
| Fri, 24 Jul 2026 15:52:09 GMT |
How I Found a Bug Worth $3,500 — In a Feature Nobody Was Watchi... |
file-upload |
|
|
| Thu, 02 Apr 2026 18:59:50 GMT |
File Inclusion (LFI/RFI) — Extracting Sensitive Data from confi... |
file-inclusion |
|
|
| Wed, 23 Jul 2025 15:15:01 GMT |
TryHackMe Include walkthrough: SSRF, log poisoning & LFI2RCE, wit... |
log-poisoning |
|
|
| Sat, 08 Aug 2026 16:08:26 GMT |
CRTA - da Aplicação Web ao Domain Admin |
recon |
|
|
| Mon, 18 May 2026 13:05:18 GMT |
Subdomain Takeover |
subdomain-takeover |
|
|
| Tue, 11 Aug 2026 16:34:12 GMT |
The Ultimate Guide to Using a Password Generator Free of Charge i... |
security |
|
|
| Thu, 06 Aug 2026 12:18:49 GMT |
How a Single Unauthenticated GraphQL Request Compromised Mozilla ... |
hackerone, bug-bounty-hunter |
|
|
| Sun, 02 Aug 2026 08:57:15 GMT |
Sqli-Header-Lab |
hackerone |
|
|
| Sat, 01 Aug 2026 09:00:49 GMT |
Vulnerability Assessment vs Penetration Testing: What’s the Dif... |
vapt |
|
|
| Sun, 26 Jul 2026 18:57:30 GMT |
The OSI Model Explained: A Cybersecurity Intern’s Guide to Unde... |
cybersecurity-tools |
|
|
| Sun, 26 Jul 2026 13:24:32 GMT |
Beyond SSL Pinning: When Changing One Number Broke an App’s Aut... |
idor |
|
|
| Sun, 09 Aug 2026 18:20:11 GMT |
I Took Over Someone’s Subdomain and Put a Cat On It |
subdomain-takeover |
|
|
| Tue, 11 Aug 2026 12:01:32 GMT |
Wiz Day One CTF Walkthrough: Kubernetes, PostgreSQL, DLP, and Que... |
application-security |
|
|
| Wed, 15 Jul 2026 11:30:22 GMT |
TryHackMe | Google Dorking |
google-dorking |
|
|
| Tue, 28 Jul 2026 23:12:01 GMT |
I Found a Major SaaS Platform’s Internal Credentials by Calling... |
information-disclosure |
|
|
| Wed, 27 May 2026 19:50:08 GMT |
Why Your Directory Listing Service Isn’t Working — And the Fr... |
directory-listing |
|
|
| Fri, 12 Jun 2026 12:04:09 GMT |
The Print Button That Handed Me Your Account: Stored XSS to Full ... |
xss-bypass |
|
|
| Mon, 08 Jun 2026 09:48:02 GMT |
XSS WAF Bypass: The Ultimate Deep Dive |
xss-bypass |
|
|
| Tue, 11 Aug 2026 19:37:09 GMT |
Best Camera for an Apartment Door in 2026: 5 Smart Doorbell Camer... |
security |
|
|
| Tue, 11 Aug 2026 15:39:51 GMT |
Misplay #1: “If you got accepted to STEI ITB, please be aware e... |
information-technology |
|
|
| Mon, 10 Aug 2026 20:31:43 GMT |
Secure and Stateful Session Management with Redis in APIs |
web-security |
|
|
| Tue, 11 Aug 2026 07:13:47 GMT |
Cara Saya Memahami Security Solutions dan Membaca Log dengan Powe... |
cyber-security-awareness |
|
|
| Thu, 12 Mar 2026 18:11:47 GMT |
A Simple P4 Bug That Ended as Duplicate |
bug-bounty-hunting |
|
|
| Tue, 11 Aug 2026 22:35:30 GMT |
Network Services 2 — THM |
cybersecurity |
|
|
| Tue, 23 Jun 2026 14:32:52 GMT |
Authentication Bypass & Information Disclosure in a Fortune 500 C... |
vdp |
|
|
| Tue, 11 Aug 2026 16:19:08 GMT |
Questions without Answers |
vulnerability |
|
|
| Sun, 09 Aug 2026 11:37:48 GMT |
XSS (Çapraz Site Komut Dosyası Çalıştırma) |
xss-attack, xss-vulnerability |
|
|
| Mon, 03 Aug 2026 04:56:01 GMT |
The Bug Bounty Playbook: OAuth Callback and Redirect Manipulation |
hackerone |
|
|
| Mon, 10 Aug 2026 18:24:32 GMT |
DarkSword iOS Exploit Kit: Kaynak Kodlarıyla Adım Adım Teknik ... |
application-security |
|
|
| Fri, 01 May 2026 09:40:56 GMT |
Excessive Data Exposure Leading to Unauthorized Access to Paid Fe... |
vulnerability-disclosure |
|
|
| Wed, 29 Jul 2026 06:41:51 GMT |
What is Web Cache Poisoning? |
web-cache-poisoning |
|
|
| Fri, 07 Aug 2026 08:48:43 GMT |
I Built A Phishing Triage Copilot With Claude: AI Cyber Defense O... |
cybersecurity-tools |
|
|
| Mon, 13 Apr 2026 22:31:01 GMT |
The Cost of Trusting My Own Fingers |
bounties |
|
|
| Thu, 18 Jun 2026 15:00:04 GMT |
Bore-dom, IP Pools, and a Nation’s Water Control: How I Breache... |
cyber-sec |
|
|
| Wed, 05 Aug 2026 13:56:01 GMT |
Critical Alert: CVE-2026–60004 — Pre-Auth Remote Code Executi... |
remote-code-execution |
|
|
| Mon, 03 Aug 2026 13:46:14 GMT |
How I Found a Bug That Could Let Anyone Hijack Your Account — W... |
idor |
|
|
| Thu, 06 Aug 2026 05:44:41 GMT |
2026 Free Janitor AI API Key Acquisition & Integration Troublesho... |
api-key |
|
|
| Tue, 11 Aug 2026 11:42:12 GMT |
What Happens When You Open an App? Understanding the Technology B... |
ethical-hacking |
|
|
| Sat, 04 Jul 2026 14:50:11 GMT |
Dosya Sistemine Sızış: Directory Traversal ve LFI Zafiyetlerin... |
local-file-inclusion |
|
|
| Fri, 07 Aug 2026 08:29:40 GMT |
Ownership Story: Building a 5GB File Upload Service Using Streams |
file-upload |
|
|
| Sat, 08 Aug 2026 05:31:01 GMT |
When Your AI Defender Becomes the Attack Surface |
security-research |
|
|
| Thu, 06 Aug 2026 08:56:15 GMT |
XSS Lab in Cloudflare Pages |
xss-attack |
|
|
| Wed, 15 Jul 2026 01:51:32 GMT |
I Asked the Frontend for Secrets, and It Said Yes |
bug-bounty-hunter |
|
|
| Sun, 02 Aug 2026 07:36:20 GMT |
Escalating a Blind Upload to RCE via Path Traversal into Cron and... |
rce |
|
|
| Sat, 08 Aug 2026 15:31:54 GMT |
Search Has Escaped |
pentest |
|
|
| Tue, 11 Aug 2026 18:58:58 GMT |
CISA Confirms: SonicWall SMA1000 Vulnerabilities Are Now Being Ex... |
vulnerability, infosec |
|
|
| Wed, 01 Jul 2026 05:23:05 GMT |
Broken Authentication Vulnerability That Allowed Unauthorized Use... |
bugcrowd |
|
|
| Sun, 21 Jun 2026 00:45:05 GMT |
Atdork |
google-dorking, google-dork |
|
|
| Fri, 31 Jul 2026 06:27:30 GMT |
Secure File Upload: A Complete Guide to Prevent File Upload Vulne... |
file-upload |
|
|
| Wed, 03 Jun 2026 15:20:33 GMT |
Most Businesses in Costa Rica Are Easier to Find Than You Think, ... |
directory-listing |
|
|
| Wed, 22 Jul 2026 19:19:21 GMT |
Back From Vacation & Launching Open Beta: Help Us Test NextBlock ... |
bounty-program |
|
|
| Fri, 10 Jul 2026 03:06:06 GMT |
I Attacked a Vulnerable Web App and Then Fixed It — A Security ... |
cross-site-scripting |
|
|
| Thu, 06 Aug 2026 20:28:38 GMT |
Kali CTF Writeup: Uncovering “the unbroken shelf� (OSINT) |
google-dork |
|
|
| Sun, 02 Aug 2026 23:45:43 GMT |
CVE-2026–64600 “RefluXFS� — Rooting Linux Through an XFS ... |
exploit |
|
|
| Wed, 29 Jul 2026 23:59:29 GMT |
How I Found a HIGH-Severity AI Security Issue on Khan Academy’s... |
vulnerability-disclosure |
|
|
| Tue, 13 Jan 2026 13:27:13 GMT |
Hacking “Time�: When Critical Infrastructure Forgets to Set a... |
vulnerability-disclosure |
|
|
| Sun, 15 Mar 2026 16:45:35 GMT |
Web Security Series #4 — Discovering Unauthorized Resources via... |
bug-bounty-hunting |
|
|
| Fri, 26 Jun 2026 06:25:44 GMT |
Costa Rica Canopy Tours: Choosing Experiences That Match Your Com... |
directory-listing |
|
|
| Fri, 31 Jul 2026 06:27:02 GMT |
Cross-Site Scripting (XSS) Explained: The Complete Guide Every We... |
cross-site-scripting, xss-vulnerability |
|
|
| Mon, 27 Jul 2026 19:32:54 GMT |
Brew Bank Official Writeup | EYCC CTF |
lfi |
|
|
| Tue, 04 Aug 2026 12:00:49 GMT |
The Server Is a Servant: SSRF in Labs |
ssrf |
|
|
| Tue, 11 Aug 2026 16:09:59 GMT |
The Fire Was Inevitable. The Catastrophe Wasn’t. |
penetration-testing, information-security |
|
|
| Thu, 16 Jul 2026 15:34:38 GMT |
Workflow Bypass Leading to Unauthorized Access to Sensitive Recor... |
bug-bounty-hunter |
|
|
| Wed, 06 May 2026 11:36:01 GMT |
Google Dorking |
dorking |
|
|
| Tue, 24 Mar 2026 17:48:00 GMT |
The Ultimate Bug Bounty Course: From Zero to Advanced Hacker 1 |
bug-bounty-hunting |
|
|
| Tue, 11 Aug 2026 14:04:18 GMT |
A Couple’s Hunt: Hardcoded Credentials Lead to Internal Data Ex... |
bug-bounty, bug-bounty-writeup |
|
|
| Tue, 11 Aug 2026 17:21:34 GMT |
The Loneliness of Feeling Understood |
vulnerability |
|
|
| Tue, 11 Aug 2026 07:37:27 GMT |
Inside the $1.1 |
information-technology |
|
|
| Mon, 10 Aug 2026 20:40:37 GMT |
I Thought Strong Passwords Were Enough. Then I Tested Authenticat... |
web-security |
|
|
| Wed, 05 Aug 2026 16:17:58 GMT |
Stop Being a Scanner Operator: Inside TrinetLayer’s Approach to... |
bug-bounty-hunter, vapt |
|
|
| Sun, 26 Jul 2026 09:22:27 GMT |
CVE-2026–58138 |
rce |
|
|
| Mon, 03 Aug 2026 10:01:43 GMT |
An Exposed API Key Cost Me $4,000. Here Is Exactly What to Do To ... |
api-key |
|
|
| Tue, 11 Aug 2026 16:14:29 GMT |
I Was Just Checking an API Endpoint… Then I Found Its Internal ... |
bugbounty-writeup, ethical-hacking |
|
|
| Sat, 09 May 2026 02:26:22 GMT |
How I Discovered a Reflected XSS Vulnerability on a Major German ... |
xss-bypass |
|
|
| Tue, 11 Aug 2026 20:04:36 GMT |
Authentification des agents d’IA via MCP |
security |
|
|
| Thu, 09 Jul 2026 12:57:30 GMT |
Essential Cybersecurity Tools Every Small Business Needs In 2026 |
cybersecurity-tools |
|
|
| Fri, 31 Jul 2026 11:31:01 GMT |
Attack Surface Management — Seeing What the Company Can’t |
hackerone |
|
|
| Sun, 05 Jul 2026 11:31:00 GMT |
Google Dorking for Bug Hunters |
google-dork |
|
|
| Mon, 27 Jul 2026 19:35:36 GMT |
Brew Bank Revenge — Official Writeup | EYCC CTF |
lfi |
|
|
| Tue, 11 Aug 2026 08:14:00 GMT |
Seri 3 — Kurumsal Yazılımlarda Merkezi Kimlik Yönetimi: OIDC... |
web-security |
|
|
| Wed, 15 Jul 2026 12:56:40 GMT |
I Just Wanted a Cold Coffee. Instead I Found a Master Key to a Ve... |
vdp |
|
|
| Fri, 29 May 2026 17:22:37 GMT |
Cracking SameSite for a $2,000 Web Cache Deception |
web-cache-poisoning |
|
|
| Mon, 22 Jun 2026 06:51:54 GMT |
Find exposed sensitive data in AWS, Google Cloud, and other platf... |
dorks |
|
|
| Mon, 03 Aug 2026 09:57:12 GMT |
Penetration Testing Reports: A Section by Section Guide for Engin... |
pentest |
|
|
| Tue, 04 Aug 2026 14:18:01 GMT |
Encrypt a High-Privilege API Key at Rest: A GPG Vault That Keeps ... |
api-key |
|
|
| Sat, 08 Aug 2026 12:13:49 GMT |
When Your AI Assistant Has More Permissions Than You Do: An Acces... |
bugs, bugbounty-writeup |
|
|
| Sun, 26 Jul 2026 17:59:41 GMT |
Recruit — THM Writeup |
local-file-inclusion |
|
|
| Tue, 04 Aug 2026 14:43:58 GMT |
Server-Side Request Forgery (SSRF) to Local File Read: A Deep Div... |
ssrf |
|
|
| Tue, 11 Aug 2026 15:39:03 GMT |
Hacker Holidays Day 3: The App That Handed Out AWS Credentials to... |
information-security |
|
|
| Sat, 13 Jun 2026 15:28:09 GMT |
Cómo detectar sitios gubernamentales comprometidos con Spam SEO ... |
google-dork |
|
|
| Fri, 31 Jul 2026 00:04:14 GMT |
Breaking Premium Features: Two Business Logic Vulnerabilities in ... |
hackerone |
|
|
| Wed, 16 Jul 2025 12:07:42 GMT |
Hackers Love This 1979 Protocol (Because It Can’t Defend Itself... |
censys |
|
|
| Tue, 11 Aug 2026 17:06:45 GMT |
Hackers Were Inside America’s World Cup Security Network for We... |
infosec |
|
|
| Mon, 27 Jan 2025 16:51:28 GMT |
The man who suffered 11 years in hell for freedom has now been fr... |
web-pentest |
|
|
| Fri, 19 Jun 2026 20:02:36 GMT |
TryHackMe: Support Ops Platform Walkthrough |
lfi |
|
|
| Tue, 17 Mar 2026 09:18:53 GMT |
Web Security Series #6 — Exploiting SQL Injection to Extract Se... |
bug-bounty-hunting |
|
|
| Tue, 11 Aug 2026 17:41:01 GMT |
AI Vulnerability Analysis: Where It Catches What Scanners Miss â€... |
cve |
|
|
| Wed, 01 Jul 2026 11:46:00 GMT |
Convierte acciones sencillas en recompensas reales |
bounty-program |
|
|
| Tue, 11 Aug 2026 17:21:01 GMT |
NetExec is Logging Everything. Are You Using It? |
pentesting |
|
|
| Tue, 11 Aug 2026 14:25:26 GMT |
Building AI Pentester, Week 1: Why I Started With the Workflow In... |
pentesting |
|
|
| Wed, 05 Aug 2026 23:31:46 GMT |
Bypassing a “Safe� Input Field: Reflected XSS via Unescaped H... |
xss-attack |
|
|
| Sat, 27 Jun 2026 03:05:54 GMT |
PortSwigger : Reflected XSS into a JavaScript String with Angle B... |
cross-site-scripting |
|
|
| Mon, 10 Aug 2026 11:48:40 GMT |
Business Logic Flaw: Refund Limit Bypass via Support Chatbot |
bug-bounty-tips |
|
|
| Thu, 06 Aug 2026 00:01:26 GMT |
CVE-2026–65971: A Complete Walkthrough of the Livewire PowerGri... |
exploit |
|
|
| Wed, 05 Aug 2026 04:40:07 GMT |
Why Cybersecurity is the New Literacy in the Digital Age |
hackerone |
|
|
| Fri, 26 Jun 2026 06:46:44 GMT |
How Google Dorking Can Streamline Your SEO Research Process |
google-dorking |
|
|
| Thu, 16 Jul 2026 18:52:16 GMT |
From a URL Parameter to Full System Access: Logslinger CTF |
lfi |
|
|
| Wed, 22 Oct 2025 14:11:32 GMT |
Mastering Subdomain Enumeration: A Beginner’s Guide to Expandin... |
subdomain-enumeration |
|
|
| Sat, 04 Jul 2026 14:44:26 GMT |
Behind the Screen Name: Cybersecurity in |
cyber-sec |
|
|
| Sat, 01 Aug 2026 19:04:44 GMT |
Web Security — Part 2: Cross-Site Scripting (XSS) |
xss-attack, cross-site-scripting |
|
|
| Mon, 03 Aug 2026 08:01:12 GMT |
Vulnerability Scanning with Nessus: A TryHackMe Walkthrough (Setu... |
vulnerability-scanning |
|
|
| Tue, 04 Aug 2026 07:20:26 GMT |
Your AI Agent Has an IDOR Problem |
idor |
|
|
| Sat, 01 Aug 2026 00:58:24 GMT |
How I Found and Claimed a Subdomain Takeover on cewe.kruidvat.nl |
subdomain-takeover |
|
|
| Mon, 13 Apr 2026 06:37:51 GMT |
File Inclusion on DVWA |
file-inclusion |
|
|
| Wed, 11 Feb 2026 21:37:40 GMT |
From Course Notes to CVE: How a GXPN Study Session Uncovered a 40... |
vulnerability-disclosure |
|
|
| Wed, 29 Jul 2026 19:09:36 GMT |
The Difference Between a Copilot and an Autonomous Security Agent |
pentest |
|
|
| Tue, 15 Jul 2025 12:15:58 GMT |
“Secure� OPC UA Setups Are Being Hacked — Here’s Why |
censys |
|
|
| Tue, 11 Aug 2026 19:13:59 GMT |
The Hidden Risks of AI-Generated Vulnerability Patches |
vulnerability |
|
|
| Sun, 19 Jul 2026 08:09:01 GMT |
How a Simple Profile Setting Revealed Sensitive Credentials in a ... |
information-disclosure |
|
|
| Sat, 18 Jul 2026 11:40:23 GMT |
How a Scalable Code Executor Works and How I Built One |
remote-code-execution |
|
|
| Tue, 11 Aug 2026 21:13:40 GMT |
OpenAI Built a Model Trained to Stop Refusing Hacking Requests, a... |
hacking |
|
|
| Sun, 02 Aug 2026 12:36:24 GMT |
Complimentary (THM) Tryhackme Walkthrough Hacker Holidays Day 3 |
information-disclosure |
|
|
| Sun, 12 Jul 2026 04:43:16 GMT |
A Critical Vulnerability in PraisonAI: What You Need to Know |
remote-code-execution |
|
|
| Tue, 23 Jun 2026 15:09:51 GMT |
Cuando el atacante encuentra más de lo que deberÃa |
vulnerability-scanning |
|
|
| Fri, 31 May 2024 13:29:16 GMT |
Map of the worlds best URLs 2025 |
log-poisoning |
|
|
| Sun, 09 Aug 2026 01:20:32 GMT |
RCE in 2026 Doesn’t Look Like RCE in 2020. Here’s What Actual... |
bug-bounty-tips, rce |
|
|
| Tue, 30 Jun 2026 11:31:00 GMT |
Subdomain Takeover — Claiming Forgotten Assets |
subdomain-takeover |
|
|
| Tue, 11 Aug 2026 21:08:47 GMT |
From threat report to hunt: Building a threat hunting AI agent wi... |
security |
|
|
| Sat, 01 Aug 2026 13:18:29 GMT |
Incident Analysis & Response: Check Point Security Gateway CVE-20... |
lfi |
|
|
| Fri, 07 Aug 2026 16:37:09 GMT |
MariaDB CVE-2026–48165: Authenticated Remote Code Execution thr... |
cve |
|
|
| Tue, 04 Aug 2026 06:54:55 GMT |
Secret Management: Securely Storing Passwords, API Keys, and Cert... |
api-key |
|
|
| Tue, 11 Aug 2026 14:46:01 GMT |
Assertion101 Proving Grounds Walkthrough/writeup (Intermediate) |
pentesting, information-security, ethical-hacking |
|
|
| Wed, 20 May 2026 20:47:25 GMT |
FINDING INFORMATION QUICKLY AND ACCURATELY WITH GOOGLE DORK |
google-dorking, google-dork, github-dorking |
|
|
| Mon, 10 Aug 2026 14:37:29 GMT |
10 VAPT Companies to Consider in 2026 |
vapt |
|
|
| Mon, 03 Aug 2026 09:11:44 GMT |
TryHackMe Guided Pentest Web Writeup — Real-World VAPT Methodol... |
vapt |
|
|
| Tue, 11 Aug 2026 18:43:22 GMT |
Metasploitable 1 — Becoming a Telnet Master: Enumeration, Brute... |
penetration-testing, hacking, infosec |
|
|
| Mon, 08 Jun 2026 10:33:04 GMT |
How a Routine XSS Hunt Led to an Unexpected Database Information ... |
vulnerability-disclosure |
|
|
| Sat, 18 Jul 2026 14:27:22 GMT |
From Git Rebase to Remote Code Execution: An Unpatched Argument I... |
remote-code-execution |
|
|
| Fri, 31 Jul 2026 15:09:57 GMT |
blind XSS vulnerability that performs actions on behalf of the ad... |
xss-vulnerability |
|
|
| Thu, 09 Jul 2026 12:43:47 GMT |
The Easy Bug Series | #01 |
bounty-program |
|
|
| Mon, 10 Aug 2026 20:45:52 GMT |
How I Cut My Recon Time by 70% and Started Finding More Bugs |
bug-bounty-tips, bug-bounty-writeup |
|
|
| Tue, 11 Aug 2026 18:12:12 GMT |
Investigative Reversing 0 & 1 — When Reverse Engineering Meets ... |
penetration-testing, hacking, infosec |
|
|
| Wed, 27 May 2026 08:42:26 GMT |
Open Source Transparency Was a Moat — AI Is Turning It Into a L... |
vulnerability-disclosure |
|
|
| Tue, 21 Apr 2026 15:05:26 GMT |
Web Security Series #17 — Exploiting Local File Inclusion (LFI)... |
file-inclusion |
|
|
| Tue, 09 Jun 2026 07:00:48 GMT |
Costa Rica Beaches: Which Ones Are Worth the Drive |
directory-listing |
|
|
| Sun, 13 Jul 2025 16:32:21 GMT |
ProConOS Exposed: What ICS Security Teams Need to Know |
censys |
|
|
| Sat, 18 Jul 2026 19:00:12 GMT |
XSS Bypass — The Hackers Labs |
xss-bypass |
|
|
| Tue, 21 Jul 2026 19:02:10 GMT |
La gauche radicale face au piège de l’essentialisation des jui... |
lfi |
|
|
| Tue, 21 Jul 2026 14:58:07 GMT |
“Join Team� | CyberTalents | Chaining LFI and Unrestricted ... |
lfi |
|
|
| Thu, 23 Jul 2026 05:03:54 GMT |
Vulnerability Scanning Tools | TryHackMe (THM) |
vulnerability-scanning |
|
|
| Fri, 07 Aug 2026 11:28:20 GMT |
From Attack Paths to Runtime Proof |
security-research |
|
|
| Sat, 09 May 2026 01:31:00 GMT |
Your Server Is Showing Everything It Shouldn’t -The Apache Dire... |
directory-listing |
|
|
| Tue, 05 Dec 2023 07:54:40 GMT |
LFI via SMTP log poisoning |
log-poisoning |
|
|
| Sun, 09 Aug 2026 04:56:13 GMT |
Spring AI — SpEL Injection Leading to Remote Code Execution (CV... |
cve |
|
|
| Tue, 11 Aug 2026 19:16:16 GMT |
CVE-2026–71209: Audiobookshelf Authentication Bypass & Path Tr... |
web-security |
|
|
| Wed, 22 Jul 2026 09:53:31 GMT |
XSS vs CSRF vs SSRF: Why Do So Many People Get Confused? |
cross-site-scripting |
|
|
| Sat, 08 Aug 2026 16:14:39 GMT |
(BAC)Insecure direct object references |
bug-bounty-writeup |
|
|
| Thu, 07 May 2026 06:41:01 GMT |
Github Dorking |
dorking, github-dorking |
|
|
| Sat, 08 Aug 2026 07:05:04 GMT |
Chaining Information Disclosure, SMB Access, and Sudo Misconfigur... |
information-disclosure |
|
|
| Wed, 05 Aug 2026 00:08:20 GMT |
HTB: Kobold |
rce |
|
|
| Sat, 08 Aug 2026 09:13:40 GMT |
NoteVault — Full Walkthrough |
cve |
|
|
| Fri, 19 Jun 2026 17:40:08 GMT |
How to Get a Private Bug Bounty Invite on HackerOne — Without S... |
bugcrowd |
|
|
| Thu, 04 Dec 2025 04:45:36 GMT |
What is Google Dorking? |
dorking |
|
|
| Tue, 02 Jun 2026 19:48:50 GMT |
From False Positive to Hall of Fame: Exploiting Web Cache Poisoni... |
web-cache-poisoning |
|
|
| Fri, 06 Jun 2025 15:47:21 GMT |
��♂� GitHub Dorking for Bug Bounty: Hackers' Hidden Playg... |
github-dorking |
|
|
| Tue, 11 Aug 2026 11:03:12 GMT |
ATO with Open Redirect |
bug-bounty |
|
|
| Tue, 11 Aug 2026 11:50:02 GMT |
जब गणित में तेज़ दिमाग़ क... |
information-technology |
|
|
| Mon, 06 Jul 2026 09:03:08 GMT |
CVE-2025–43807: Stored Cross-Site Scripting (XSS) Vulnerability... |
cross-site-scripting |
|
|
| Mon, 03 Aug 2026 11:31:01 GMT |
The AWS Metadata Attack (IMDS) Deep Dive |
ssrf |
|
|
| Tue, 11 Nov 2025 16:43:14 GMT |
Beyond Google: Navigating the Hidden Internet with Shodan and Cen... |
censys |
|
|
| Thu, 06 Aug 2026 16:05:02 GMT |
Groq’dan Api Key Nasıl Alınır (2026) |
api-key |
|
|
| Tue, 11 Aug 2026 16:46:04 GMT |
Server-Side Template Injection (SSTI) Vulnerability — Payloads ... |
vulnerability, ethical-hacking |
|
|
| Sat, 08 Aug 2026 07:28:13 GMT |
CVE-2026–34486 Analysis — Apache Tomcat EncryptInterceptor By... |
exploit, cve |
|
|
| Tue, 21 Jul 2026 07:00:42 GMT |
Operation Silent Takeover: Multi-Stage Ransomware Attack Chain an... |
security-research |
|
|
| Thu, 30 Jul 2026 15:39:49 GMT |
HACKING JULY DAY 25: VULN-BANK EXPLOITATION #9 |
xss-vulnerability |
|
|
| Tue, 12 May 2026 17:55:36 GMT |
Wild Bounty Showdown PG Soft: Rahsia Maxwin Cowboy & Pola Gacor T... |
bounties |
|
|
| Tue, 11 Aug 2026 22:24:47 GMT |
Second post in a series on Secure Deploy Kit |
cybersecurity |
|
|
| Tue, 11 Aug 2026 15:58:54 GMT |
Sender Recognition Is Not Authentication |
infosec |
|
|
| Tue, 11 Aug 2026 15:23:26 GMT |
An AI Created a Fake Human to Sneak Its Malware Past a Real One. ... |
application-security |
|
|
| Sat, 06 Jun 2026 07:18:44 GMT |
Update: The Ending of My $500 Loss and Web Cache Poisoning Story. |
web-cache-poisoning |
|
|
| Sat, 04 Jul 2026 15:01:30 GMT |
Sistemin Anahtarını Ele Geçirmek: RCE Injection ve Gelişmiş ... |
remote-code-execution |
|
|
| Wed, 24 Jun 2026 19:12:15 GMT |
The Invisible Threats: Why Logic Flaws Are Your Biggest Blind Spo... |
vulnerability-scanning |
|
|
| Sun, 05 Jul 2026 12:32:24 GMT |
How to Pick a Directory Listing Service That Actually Works |
directory-listing |
|
|
| Tue, 16 Jun 2026 11:22:14 GMT |
Review AtDork: Tool Dorking Python Terbaik 2026? |
dorking |
|
|
| Thu, 20 Nov 2025 17:16:47 GMT |
The Health Factor: How DorkFi Keeps Your Position Safe |
dorks |
|
|
| Sat, 08 Aug 2026 19:50:21 GMT |
PoC Vault by CyberSecPlayground |
bug-bounty-tips |
|
|
| Wed, 29 Apr 2026 14:14:58 GMT |
Part 2Â : Cross-Site Scripting (XSS) |
xss-bypass |
|
|
| Tue, 11 Aug 2026 18:03:28 GMT |
JWTs Explained: From Basics to Security |
penetration-testing, ethical-hacking |
|
|
| Sun, 09 Aug 2026 20:14:05 GMT |
IDOR via Comma-Injection: How Concatenating Two IDs Leaked Cross-... |
bug-bounty-tips |
|
|
| Sat, 08 Aug 2026 12:57:41 GMT |
Bir XSS Turu: Temelden Az Bilinene (9 farklı senaryo) |
xss-attack, xss-vulnerability, xss-bypass |
|
|
| Sun, 21 Jun 2026 18:31:00 GMT |
Can You Build a Career on Bugcrowd? I’m Going to Test It. (Day ... |
bugcrowd, bounty-program |
|
|
| Tue, 09 Jun 2026 06:35:46 GMT |
From LFI to Database Takeover and the RCE That Almost Was |
lfi |
|
|
| Wed, 05 Aug 2026 06:08:24 GMT |
How to Make React File Upload Progress and Errors Accessible |
file-upload |
|
|
| Thu, 23 Jul 2026 00:27:46 GMT |
Bug Bounty Automation — Elite Recon Pipeline + bonus Script |
recon |
|
|
| Mon, 04 May 2026 14:48:00 GMT |
I Found 150+ Vulnerabilities in DeFi Protocols. Here’s Why I C... |
bounties |
|
|
| Tue, 11 Aug 2026 18:05:16 GMT |
How I Found a Hidden .git Repository and Leaked an Entire Website... |
web-security |
|
|
| Mon, 10 Aug 2026 09:25:14 GMT |
From SQL Injection to Remote Code Execution: Following an Unexpec... |
bugbounty-writeup |
|
|
| Tue, 11 Aug 2026 13:34:02 GMT |
Comparison of the most common cybersecurity threats. |
cyber-security-awareness |
|
|
| Wed, 05 Aug 2026 22:36:52 GMT |
The Hollow Shell | Hacker Holidays Day 10 | TryHackMe Writeup |
local-file-inclusion |
|
|
| Fri, 17 Jul 2026 16:56:29 GMT |
CTF: Archangel TryhackMe Room |
local-file-inclusion |
|
|
| Sun, 14 Jun 2026 22:00:33 GMT |
La sémantique de l’esquive : Analyse lexicologique du discours... |
lfi |
|
|
| Sun, 26 Jul 2026 02:39:37 GMT |
Building Temporary File Sharing That Actually Expires |
file-upload |
|
|
| Tue, 11 Aug 2026 07:20:32 GMT |
Cyber Security Awareness for Employees: Why Security Training Mat... |
cyber-security-awareness |
|
|
| Sat, 18 Jul 2026 09:07:12 GMT |
wp2shell: The WordPress Core Flaw That Turns an Anonymous Request... |
remote-code-execution |
|
|
| Wed, 01 Jul 2026 11:07:22 GMT |
Archangel TryHackMe Walkthrough | LFI, Log Poisoning & Linux Pri... |
local-file-inclusion |
|
|
| Mon, 29 Jun 2026 01:03:39 GMT |
Belajar tentang File Inclusion dalam Penetration Testing |
local-file-inclusion, file-inclusion |
|
|
| Fri, 12 Jun 2026 21:45:49 GMT |
TryHackMe Walkthrough: Support |
local-file-inclusion |
|
|
| Mon, 27 Jul 2026 05:47:50 GMT |
Insights into XSS: Types, Where to Find Them, and How I Exploited... |
xss-vulnerability |
|
|
| Tue, 16 Jun 2026 02:05:28 GMT |
How to Find More Subdomains Than Everyone Else |
recon |
|
|
| Sun, 19 Jul 2026 20:01:51 GMT |
TryHackMe Nmap Live Host Discovery (versão em português) |
pentest |
|
|
| Wed, 29 Jul 2026 04:46:59 GMT |
Shodan.io Integration with Wazuh SIEM Monitor Your Critical Asset... |
shodan |
|
|
| Sat, 20 Jun 2026 07:44:22 GMT |
Ağınız Dışarıdan Nasıl Görünüyor? Shodan İle Kurumsal ... |
shodan |
|
|
| Thu, 06 Aug 2026 17:43:56 GMT |
Understanding XSS: From Vulnerability to Prevention |
xss-attack |
|
|
| Tue, 18 Nov 2025 18:12:40 GMT |
Dork Labs Awarded AWS Activate Startup Grant |
dorks |
|
|
| Fri, 17 Jul 2026 00:49:39 GMT |
Malware Analysis and Domain Investigation: Following the Trail fr... |
cybersecurity-tools |
|
|
| Sat, 30 May 2026 11:25:12 GMT |
Cross-Site Scripting (XSS) via Client-Side Filter Bypass |
xss-bypass |
|
|
| Tue, 11 Aug 2026 19:20:33 GMT |
Infinite Money Glitch? How Our Team Generated Infinite Money on a... |
bug-bounty, penetration-testing, web-security |
|
|
| Sun, 12 Jul 2026 01:21:50 GMT |
XSS as a Password Stealer : A very overlooked XSS attack vector |
cross-site-scripting |
|
|
| Fri, 07 Aug 2026 20:26:18 GMT |
CAPTCHA Bypass Bug on a Bug Bounty Program |
hackerone |
|
|
| Sat, 08 Aug 2026 08:11:11 GMT |
Bypassing Filters to Achieve UNION-Based SQL Injection on a Searc... |
bug-bounty-writeup |
|
|
| Fri, 17 Apr 2026 04:53:23 GMT |
How I Found an Exposed Google Maps API Key on a Global Brand’s ... |
vdp |
|
|
| Wed, 06 May 2026 11:30:53 GMT |
How Local Business Directory Listing Helps Attract Local Customer... |
directory-listing |
|
|
| Thu, 28 May 2026 07:15:06 GMT |
¡Únete y hazte con uno de los más de 400 premios! |
bounty-program |
|
|
| Thu, 02 Apr 2026 17:35:36 GMT |
How I Found a Subdomain Takeover via BetterUptime |
subdomain-takeover |
|
|
| Thu, 09 Oct 2025 18:33:05 GMT |
0-click Account Takeover via Punycode |
bug-bounty-program |
|
|
| Tue, 11 Aug 2026 09:46:26 GMT |
Android Keystore Deep Dive: Where Your Keys Should Actually Live |
application-security |
|
|
| Wed, 25 Feb 2026 01:47:45 GMT |
How I Found a Path Traversal in the Rancher Dashboard via HAR Rep... |
web-pentest |
|
|
| Tue, 16 Jun 2026 13:11:36 GMT |
Understanding Web Cache Poisoning via Unkeyed Headers: A PortSwig... |
web-cache-poisoning |
|
|
| Sun, 26 Jul 2026 10:43:57 GMT |
XSS | Cross Site Scripting |
xss-vulnerability |
|
|
| Mon, 25 May 2026 14:19:37 GMT |
Look at this, we created this |
bounties |
|
|
| Tue, 11 Aug 2026 11:10:35 GMT |
How to make a decision! |
vulnerability |
|
|
| Thu, 28 Sep 2023 23:05:39 GMT |
Archangel — TryHackMe |
log-poisoning |
|
|
| Fri, 12 Jun 2026 11:04:39 GMT |
Why Your Subdomain Takeover Reports Keep Getting Closed as N/A (A... |
subdomain-takeover |
|
|
| Tue, 11 Aug 2026 16:05:15 GMT |
I Made Claude Believe I Was an Anthropic-Verified Researcher. |
bug-bounty |
|
|
| Tue, 14 Jul 2026 16:44:08 GMT |
TuesdayTool 48: OSINTLeak — A Modern OSINT Platform for Digital... |
cybersecurity-tools |
|
|
| Thu, 06 Aug 2026 00:36:12 GMT |
VAPT Engagement Report: RootMe (TryHackMe) Unrestricted File Uplo... |
vapt |
|
|
| Sat, 01 Aug 2026 07:22:16 GMT |
How IDOR/BOLA Becomes a High-Impact API Vulnerability |
idor |
|
|
| Fri, 01 Aug 2025 06:17:06 GMT |
15,000 Critical Systems Are Exposed — Thanks to This Outdat... |
censys |
|
|
| Tue, 11 Aug 2026 22:39:11 GMT |
Unrestricted Resource Consumption in APIs: From Unlimited File Up... |
cybersecurity, pentesting |
|
|
| Tue, 11 Aug 2026 09:48:58 GMT |
Internet-Facing Assets Deserve Different Priorities |
information-technology |
|
|
| Wed, 17 Jun 2026 16:57:29 GMT |
Unauthenticated IDOR on NASA’s GitLab Instance — From Recon t... |
bugcrowd |
|
|
| Mon, 20 Jul 2026 10:56:47 GMT |
Task 2 -> OSINT Techniques (Google Dorking) |
google-dorking |
|
|
| Fri, 07 Aug 2026 20:55:06 GMT |
Lá»— hổng bảo máºt trong bà n phÃm Tiếng Việt cá»§a Mic... |
information-disclosure |
|
|
| Fri, 13 Mar 2026 14:55:26 GMT |
Web Security Series #2 — Bypassing Authentication via MFA Tampe... |
bug-bounty-hunting |
|
|
| Tue, 11 Aug 2026 15:00:54 GMT |
KASS: AI Agents Are Moving From Smart-Contract Findings to Execut... |
hacking |
|
|
| Sun, 17 May 2026 02:56:19 GMT |
The 3 Bug Hunting Habits That Made Me Go From $0 to $5k (And None... |
bug-bounty-program |
|
|
| Mon, 03 Aug 2026 20:29:20 GMT |
Sublist3r |
subdomain-enumeration |
|
|
| Sun, 09 Aug 2026 21:22:55 GMT |
How I Use AI as a Bug Bounty Hunter — Part 1: My Real Setup |
bug-bounty-tips |
|
|
| Wed, 03 Jun 2026 14:55:44 GMT |
Recruit | TryHackMe | Walkthrough |
local-file-inclusion |
|
|
| Mon, 03 Aug 2026 16:00:47 GMT |
OWASP API #7 - Server Side Request Forgery (SSRF): When an API Be... |
ssrf |
|
|
| Mon, 10 Aug 2026 19:38:15 GMT |
The Lab Is the New Border |
security-research |
|
|
| Tue, 11 Aug 2026 14:43:59 GMT |
Autonomous Attack Is Already Here. Pentesting Economics Just Chan... |
penetration-testing |
|
|
| Sun, 15 Feb 2026 09:26:13 GMT |
TryHackMe Walkthrough -Subdomain Enumeration |
subdomain-enumeration |
|
|
| Sun, 14 Dec 2025 06:37:06 GMT |
My Bug Bounty Diary |
subdomain-enumeration |
|
|
| Mon, 13 Jul 2026 19:28:20 GMT |
Vulnerability Scanning vs. Autonomous Pentesting: Why Scanners Ar... |
vulnerability-scanning |
|
|
| Sat, 20 Apr 2024 17:20:58 GMT |
TryHackMe — Brute Walkthrough | TheHiker |
log-poisoning |
|
|
| Tue, 11 Aug 2026 15:54:41 GMT |
Uhale Security Update: What Changed After the 2025 Report |
security |
|
|
| Mon, 10 Aug 2026 08:39:10 GMT |
Software Testing Explained: A Complete Guide to Manual, Automatio... |
bugs |
|
|
| Thu, 18 Jun 2026 11:31:01 GMT |
Broken Access Control — 2026’s #1 Bug |
bugcrowd |
|
|
| Mon, 03 Aug 2026 14:41:28 GMT |
Cap: Easy Level HackTheBox Linux Machine [Walkthrough] |
idor |
|
|
| Sat, 25 Jul 2026 22:43:16 GMT |
What Every Developer Should Know About IDOR |
idor |
|
|
| Sat, 08 Aug 2026 07:42:05 GMT |
Automated CVE & Vulnerability Intelligence Tracking Pipeline |
cve |
|
|
| Tue, 04 Aug 2026 21:43:45 GMT |
How to Gather Client Feedback on Localhost Without Sending Code t... |
bugs |
|
|
| Thu, 02 Oct 2025 06:59:46 GMT |
Endless Cashback Glitch:How I Unlocked Unlimited Free Orders with... |
bug-bounty-program |
|
|
| Sun, 05 Apr 2026 20:11:41 GMT |
I Tried Logging In… and Accidentally Did Responsible Disclosure... |
vdp |
|
|
| Tue, 07 Jul 2026 02:35:59 GMT |
Search Skills: Mastering Cyber Security Research & OSINT |
shodan |
|
|
| Wed, 05 Aug 2026 12:57:44 GMT |
Bug Life Cycle & Test Scenario vs Test Case – A Complete Guide ... |
bugs |
|
|
| Sun, 02 Aug 2026 22:05:11 GMT |
DorkinatorAI: a calmer way to start recon using AI |
bugbounty-writeup, bug-bounty-hunter |
|
|
| Fri, 12 Jun 2026 12:24:10 GMT |
Watcher (THM) Tryhackme Medium Challenge |
local-file-inclusion |
|
|
| Tue, 11 Aug 2026 11:22:20 GMT |
Blind SQL injection with time delays and information retrieval La... |
web-security |
|
|
| Tue, 28 Jul 2026 14:51:38 GMT |
Lab Solved: File Path Traversal — Absolute Path Bypass |
information-disclosure |
|
|
| Tue, 11 Aug 2026 15:36:43 GMT |
Impaired Vision |
vulnerability |
|
|
| Wed, 05 Aug 2026 04:34:09 GMT |
Software Testing Fundamentals: Error, Defect, Bug, Failure, and E... |
bugs |
|
|
| Tue, 11 Aug 2026 15:49:34 GMT |
After March 30: When AI Started Finding Vulnerabilities Faster Th... |
information-security |
|
|
| Wed, 22 Jul 2026 14:14:45 GMT |
How I Discovered a Critical Unauthorized Balance Top-Up Vulnerabi... |
bug-bounty-hunter |
|
|
| Mon, 13 Jul 2026 11:04:30 GMT |
Cache Poisoning: From Cache Hits to Bounty |
web-cache-poisoning |
|
|
| Mon, 29 Jun 2026 04:40:40 GMT |
We Stopped Vulnerable Code from Reaching Production with Snyk. He... |
vulnerability-scanning |
|
|
| Tue, 11 Aug 2026 08:57:49 GMT |
DEV DIARIES — TRY HACK ME WALKTHROUGH: |
subdomain-enumeration |
|
|
| Tue, 21 Apr 2026 14:42:50 GMT |
Web Security Series # 16— Exploiting Local File Inclusion (LFI) |
file-inclusion |
|
|
| Tue, 11 Aug 2026 09:21:25 GMT |
AI Is Quietly Changing the Internet — And Most People Haven’t... |
information-technology |
|
|
| Tue, 11 Aug 2026 11:12:05 GMT |
The Sky Above: Navigating the Rising Cybersecurity Risks and Phys... |
cyber-security-awareness |
|
|
| Sun, 23 Feb 2025 11:17:25 GMT |
$1000-$10k worth Leaks via Github Secret Dorks |
github-dorking |
|
|
| Mon, 11 Dec 2023 18:17:01 GMT |
Exploiting a Log Poisoning. |
log-poisoning |
|
|
| Mon, 13 Jul 2026 08:48:39 GMT |
Censys 是什麼?和 Shodan 常被拿來比較,兩者實際å·... |
censys |
|
|