Oodufuwababajide77inkay-security-labs.hashnode.dev·1d ago · 3 min readThe Analyst's Guide to OSINT: Mastering GitHub Dorks and SearXNGReconnaissance is the foundation of any successful security operation. Whether you are actively hunting for exposed assets or analyzing threat intelligence, the quality of your data dictates the succe00
JJebitokinsharonjebitok.com·5d ago · 12 min readContent Discovery (TryHackMe)What Is Content Discovery? Firstly, we should ask, in the context of web application security, what is content? Content can be many things, a file, video, picture, backup, a website feature. When we t00
JJebitokinsharonjebitok.com·6d ago · 20 min readChallenges: Grep (TryHackMe)Challenge on TryHackMe: Grep Introduction TryHackMe's Grep room bills itself as an OSINT challenge under the Red Teaming path, and that framing turned out to be the whole point. Coming into this box e00
Xxvzf_optinxvzfopt.hashnode.dev·Sep 1 · 5 min readHarvesting OSINT from Search Engine results with SerpApi and Recon-NGXIntroduction In today’s short blog we’ll be taking a look at how I’ve recently harnessed the power of SerpApi to create the latest Recon-NGX module: the SerpApi LinkedIn Harvester. This is a slight de00
DJDevy Jonesindevyjones.hashnode.dev·Sep 1 · 5 min readFinding Exposed APIs and Services: A Developer's Guide with ScanSearchAs developers, we're constantly building and deploying services. While we focus on functionality and user experience, it's equally critical to understand the external attack surface our applications p00
DJDevy Jonesindevyjones.hashnode.dev·Aug 29 · 5 min readFinding Network Device Info Programmatically: A Python & ScanSearch GuideFinding Network Device Info Programmatically: A Python & ScanSearch Guide As developers, we often face the challenge of understanding the external network footprint of our applications, infrastructure01O
DJDevy Jonesindevyjones.hashnode.dev·Aug 21 · 5 min readFinding Exposed APIs and Services: A Practical Guide for DevelopersAs developers, we're constantly building and deploying services, often exposing APIs and other network endpoints to the internet. While this is necessary for functionality, it also introduces a signif00
SSunnyincybersecurity-learning.hashnode.dev·Aug 13 · 15 min readTryHackMe Passive Reconnaissance Beginner-Friendly Learning GuideIntroduction I recently completed the Passive Reconnaissance room on TryHackMe as part of my ongoing cybersecurity learning journey. Reconnaissance is one of the most important phases in cybersecurity00
CGCristiano Gabrieliincrisdigital.hashnode.dev·Aug 12 · 14 min readThe JRuby Enclave Directive — High‑Stake Breach Simulation Inside a Fortified JVM Introduction In modern cybersecurity, the interpreter is no longer a passive tool. It has become a strategic asset — a controlled intelligence surface that can either expose hidden faults or amplify t00
KMkareem Mohamedinkmb.hashnode.dev·Aug 10 · 3 min readOverheard at Breakfast: A walkthrough of THM Hacker Holidays - Day 6Here is a quick walkthrough of a room for TryHackMe Hacker Holidays 2026, a 14-day cybersecurity challenge where a new room unlocks every day, which started on July 27th.Link: https://tryhackme.com/ro00