Hacking Articles Tips Tricks Videos Tutorials
470 subscribers
66.1K photos
15 videos
157 files
132K links
Exploit
Pentesting
Hacking
Red Team
Blue Team
Kali Linux
Bug Bounty
Black Hat
Cyber security etc

@Hacking_Video
@Hacking_attack
Download Telegram
23.5 Lab: User ID controlled by request parameter with password disclosure | 2023

This lab has user account page that contains the current user’s existing password, prefilled in a masked input. To solve the lab, retrieve…Continue reading on Medium »
Read more...
CVE-2023–36025: An In-Depth Analysis of Circumventing Windows SmartScreen Security

In the world of cybersecurity, the discovery of a vulnerability like CVE-2023-36025 in Windows SmartScreen is a significant event. This…Continue reading on InfoSec Write-ups »
Read more...
This lab has user account page that contains the current user’s existing password, prefilled in a masked input. To solve the lab, retrieve…Continue reading on Medium » (https://cyberw1ng.medium.com/23-5-lab-user-id-controlled-by-request-parameter-with-password-disclosure-2023-ad748d1daa9e?source=rss------bug_bounty-5)
In the world of cybersecurity, the discovery of a vulnerability like CVE-2023-36025 in Windows SmartScreen is a significant event. This…Continue reading on InfoSec Write-ups » (https://infosecwriteups.com/cve-2023-36025-an-in-depth-analysis-of-circumventing-windows-smartscreen-security-6ff05c8b69d0?source=rss------bug_bounty-5)
Hi guys, my name is Ahmed Mahmoud. I am a bug hunter. I will share my latest finding, which is an OAuth Misconfiguration that Leads To…Continue reading on Medium » (https://medium.com/@a7med.ctf/oauth-misconfiguration-leads-to-pre-account-takeover-snapchat-129b118661f6?source=rss------bug_bounty-5)
OAuth Misconfiguration Leads To Pre-Account Takeover(snapchat)

Hi guys, my name is Ahmed Mahmoud. I am a bug hunter. I will share my latest finding, which is an OAuth Misconfiguration that Leads To…Continue reading on Medium »
Read more...
Default Credentials, P1 with $$$$ Reward in a Bug Bounty Program

Hello dear hunters I hope you’re doing great. It’s been over a year since my last publication about Insecure Direct Object ReferencesContinue reading on Medium »
Read more...
CVE-2023–35078 Unveiled: Ethical Vulnerability Discovery and Reporting By Me and My Hunting Buddy…

Introduction: In our regular vulnerability hunt,themalwarebug and I set on several services, narrowing down to a few select IP addresses…Continue reading on Medium »
Read more...
Project 2510: Bug Bounty Challenge — Day 13/25

Welcome to Day 13.Continue reading on Medium »
Read more...
Hello dear hunters I hope you’re doing great. It’s been over a year since my last publication about Insecure Direct Object ReferencesContinue reading on System Weakness » (https://systemweakness.com/default-credentials-p1-with-reward-in-a-bug-bounty-program-1aad9c008619?source=rss------bug_bounty-5)