Hacking Articles Tips Tricks Videos Tutorials
468 subscribers
66.3K photos
15 videos
157 files
133K links
Exploit
Pentesting
Hacking
Red Team
Blue Team
Kali Linux
Bug Bounty
Black Hat
Cyber security etc

@Hacking_Video
@Hacking_attack
Download Telegram
I spend a lot of time testing WordPress plugins for security issues. I usually check plugins which are newly released or recently updated…Continue reading on Medium » (https://medium.com/@adityagurav1712/how-i-found-my-first-cve-cve-2026-79630-unauthenticated-price-manipulation-in-wpfunnels-d1dbba5ae5ec?source=rss------bug_bounty-5)
Data-Shield\_IPv4\_Blocklist

Data-Shield IPv4 Blocklist Community provides an official, curated registry of IPv4 addresses identified as malicious. Updated continuously, this resource offers vital threat intelligence to bolster your Firewall and WAF instances,...
Read more...
Data-Shield IPv4 Blocklist Community provides an official, curated registry of IPv4 addresses identified as malicious. Updated continuously, this resource offers vital threat intelligence to bolster your Firewall and WAF instances,...
From HTTP Request to Security Finding

How I approach web application testing, follow the data, challenge assumptions, and turn observations into real security findings.Continue reading on Medium »
Read more...
Mutation XSS: Attacking the Second Parse

You do not sneak a bad tag past the filter. You submit something harmless that the browser later re-reads as dangerous.Continue reading on Medium »
Read more...
I Used AI to Write Malware. Here’s What Happened to My Bug Bounty Career.

The uncomfortable truth about the AI slop flooding bug bounty programs — and what it means for beginners like us.Continue reading on Medium »
Read more...
How I approach web application testing, follow the data, challenge assumptions, and turn observations into real security findings.Continue reading on Medium » (https://medium.com/@RaminAghabeigi/from-http-request-to-security-finding-04b7d31de7d2?source=rss------bug_bounty-5)
I Spent 6 Months on Bug Bounty. My First Report Was a Duplicate. Here’s What I Wish I Knew.

The uncomfortable truth about why beginners fail — and the one habit change that actually matters. I still remember the email.Continue reading on Medium »
Read more...
$6,000 for Two Servers Disagreeing About Where a Request Ends: An HTTP Smuggling Story

The bug that paid out here didn’t live in any application code at all. It lived in the disagreement between two pieces of infrastructure…Continue reading on Medium »
Read more...
TryHackMe — Prioritise Writeup

𝗥𝗼𝗼𝗺 𝗢𝘃𝗲𝗿𝘃𝗶𝗲𝘄Continue reading on Medium »
Read more...
OpenShell is the safe, private runtime for autonomous AI agents.