Hacking Articles Tips Tricks Videos Tutorials
468 subscribers
65.8K photos
15 videos
157 files
132K links
Exploit
Pentesting
Hacking
Red Team
Blue Team
Kali Linux
Bug Bounty
Black Hat
Cyber security etc

@Hacking_Video
@Hacking_attack
Download Telegram
Introduction: Breaking the Stereotype “You need an English-medium background to succeed in cybersecurity.” I’ve heard this stereotype a…Continue reading on Medium » (https://medium.com/@ujjwalanarwade945/title-how-i-bypassed-waf-on-a-critical-indian-government-portal-cbse-as-a-9th-grade-student-cc64eb78a4d0?source=rss------bug_bounty-5)
Workflow Bypass Leading to Unauthorized Access to Sensitive Records (IDOR / Broken Object-Level…

SummaryContinue reading on Medium »
Read more...
It Was Just a Number!!?

One Number Was All It TookContinue reading on Medium »
Read more...
Stored XSS via SVG File Upload Leading to Account Takeover in an LMS Platform

A few days ago, I was performing a security assessment on a foreign Learning Management System (LMS) platform. The application was…Continue reading on Medium »
Read more...
A few days ago, I was performing a security assessment on a foreign Learning Management System (LMS) platform. The application was…Continue reading on Medium » (https://medium.com/@hossein.za68/stored-xss-via-svg-file-upload-leading-to-account-takeover-in-an-lms-platform-c3266453c9a0?source=rss------bug_bounty-5)
A 65,529-Sample Lie: How a Tiny TIFF Fooled GDAL Into Asking for 16 GB

A malformed SamplesPerPixel tag reached GDAL’s GTiff driver, triggered a 16.4 GB allocation request, and led to a codec-aware upstream fixContinue reading on Medium »
Read more...
When -1 Crossed a Library Boundary: How libvips Hardened Its TIFF Loader

A routine read error exposed a dangerous contract mismatch with libtiff and showed why downstream defenses still matterContinue reading on Medium »
Read more...