Hacking Articles Tips Tricks Videos Tutorials
468 subscribers
65.8K photos
15 videos
157 files
132K links
Exploit
Pentesting
Hacking
Red Team
Blue Team
Kali Linux
Bug Bounty
Black Hat
Cyber security etc

@Hacking_Video
@Hacking_attack
Download Telegram
From a Simple Stack Trace to Accessing an SAP Portal.

Short StoryContinue reading on Medium »
Read more...
WP-Hunter v2.0.2 Released: Faster, Smarter WordPress Security Scanning with 23 Exclusive PHP Rules

The ultimate open-source WordPress security scanner just got even better.Continue reading on Medium »
Read more...
Exploiting Weak JWT Secrets in a Bug Bounty Target

In this report, I will walk through a JWT-related security issue identified during testing and explain the steps taken to analyze it.Continue reading on Medium »
Read more...
The Invite That Took Over Accounts: A Logic Flaw

Hey Hackers, I am Parth Narula. A penetration tester, bug hunter, red teamer and overall a security researcher. I live for those moments…Continue reading on LegionHunters »
Read more...
My First CVSS 10.0 Bug: How I Took Control of Industrial Robots from My Bedroom ?

What if I told you that from my student bedroom, I was able to control robots located thousands of kilometers away? No, this isn’t science…Continue reading on Medium »
Read more...
Mass Account Lockout Using Organization Invites

الحمد لله الذي عَلَّمَ بالقلم.. عَلَّمَ الإنسانَ ما لم يَعْلَم والصلاةُ والسلامُ على خيرِ مُعَلِّمي الناسِ الخير محمد أما بعدContinue reading on Medium »
Read more...
Privilege Escalation via Role Manipulation

Last month I discovered a vulnerability in a private healthcare program that rewarded me $$$$ through their bug bounty program.Continue reading on Medium »
Read more...
6. WebSocket Authorization Bypass Vulnerability leads to $$$

Modern applications love WebSockets.Continue reading on InfoSec Write-ups »
Read more...
Lab: CORS vulnerability with basic origin reflection(Portswigger Labs)

This website has an insecure CORS configuration in that it trusts all origins.Continue reading on InfoSec Write-ups »
Read more...