Hacking Articles Tips Tricks Videos Tutorials
468 subscribers
65.9K photos
15 videos
157 files
132K links
Exploit
Pentesting
Hacking
Red Team
Blue Team
Kali Linux
Bug Bounty
Black Hat
Cyber security etc

@Hacking_Video
@Hacking_attack
Download Telegram
A beginner-friendly guide to understanding privilege escalation through user-controlled role parameters.Continue reading on Medium » (https://medium.com/@robohunt/access-control-lab-user-role-can-be-modified-in-user-profile-2025-b163d18ce3ee?source=rss------bug_bounty-5)
“From DNS Dust to Subdomain Empire”
 Find Every Sub, Every Time — Online, Offline, OSINT & BeyondContinue reading on MeetCyber » (https://medium.com/meetcyber/subdomain-recon-playbook-2025-cc768950dd74?source=rss------bug_bounty-5)
This bug started with a single email. I didn’t expect much when I hit send, but that tiny action opened the doors to an entire company’s…Continue reading on Medium » (https://medium.com/@kalvik/confluence-takeover-how-a-simple-support-email-gave-me-full-wiki-access-a9ac7c27fa31?source=rss------bug_bounty-5)
How ditching noisy scanners sharpened my eye and doubled my bounty wins.Continue reading on MeetCyber » (https://medium.com/meetcyber/from-automated-tools-to-manual-mastery-71f12ad80115?source=rss------bug_bounty-5)
Which Linux Distro Should You Use for Hacking and Cybersecurity — and How?

Hey friends, Hope you’re doing great! Today I want to talk about one of the most common questions beginners ask when starting in…Continue reading on Medium »
Read more...
Nonce Upon a Time: A Small Misconfiguration to Account Takeover

Today we are going to look into a misconfiguration in Content Security Policy (CSP), that completely bypassed the CSRF check and led to an…Continue reading on Medium »
Read more...
Portswigger OS Command Injection Labs — Practitioner

Blind OS command injection with time delaysContinue reading on Medium »
Read more...
Portswigger Path Traversal Labs — Apprentice

File Path Traversal, Simple CaseContinue reading on Medium »
Read more...
Portswigger API testing Labs — Practitioner

Exploiting Server-Side Parameter Pollution in a Query StringContinue reading on Medium »
Read more...
Portswigger API testing Labs — Expert

Exploiting Server-Side Parameter Pollution in a REST URLContinue reading on Medium »
Read more...
Portswigger OS Command Injection Labs — Apprentice

OS Command Injection, Simple CaseContinue reading on Medium »
Read more...
Portswigger Academy: API testing Labs — Apprentice

Exploiting an API endpoint using documentationContinue reading on Medium »
Read more...
Get Your First Bug in 7 Days — The Beginner's Bug Bounty Blueprint

Get Your First Bug in 7 Days — The Beginner's Bug Bounty Blueprint Continue reading on Medium »
Read more...
How Hackers hide Malware in image files — A black hat tactic.

While starting in Malware Development you will always En-counter a problem, Whenever you test your malware in real scenarios you will…Continue reading on Medium »
Read more...