<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"><channel><description>Educating the next generation of ethical hackers @ https://hackinghub.io&#xA;</description><link>https://bsky.app/profile/hackinghub.bsky.social</link><title>@hackinghub.bsky.social - HackingHub</title><item><link>https://bsky.app/profile/hackinghub.bsky.social/post/3mkvgp3p5cr24</link><description>Let&#39;s be honest: the cat&#39;s version has more character. Literally 🕶️.</description><pubDate>02 May 2026 20:01 +0000</pubDate><guid isPermaLink="false">at://did:plc:7vku7zchqff2kuymh67gi2cg/app.bsky.feed.post/3mkvgp3p5cr24</guid></item><item><link>https://bsky.app/profile/hackinghub.bsky.social/post/3mkssyfqbrm2e</link><description>What if you could find every unique asset a company owns just by looking at their WHOIS data? &#xA;&#xA;If a company registers all its domains under one specific email, you can uncover every domain they&#39;ve ever registered in seconds.&#xA;&#xA;Use this tool👇</description><pubDate>01 May 2026 19:03 +0000</pubDate><guid isPermaLink="false">at://did:plc:7vku7zchqff2kuymh67gi2cg/app.bsky.feed.post/3mkssyfqbrm2e</guid></item><item><link>https://bsky.app/profile/hackinghub.bsky.social/post/3mknoqx3mub22</link><description>Tired of buying courses that don&#39;t translate to real targets? 🛠️&#xA;&#xA;Get hands-on with our Free Hubs. These are real-world scenarios based on actual pentests and vulnerabilities we&#39;ve found in the wild.&#xA;&#xA;Start learning for free 👇&#xA;https://hhub.io/eSLRYyLUEV</description><pubDate>29 Apr 2026 18:04 +0000</pubDate><guid isPermaLink="false">at://did:plc:7vku7zchqff2kuymh67gi2cg/app.bsky.feed.post/3mknoqx3mub22</guid></item><item><link>https://bsky.app/profile/hackinghub.bsky.social/post/3mklnaitqpv2g</link><description>Looking to level up your recon with Nuclei? &#xA;&#xA;@NahamSec shares two tips to better utilize the tool and find what others miss.👇</description><pubDate>28 Apr 2026 22:32 +0000</pubDate><guid isPermaLink="false">at://did:plc:7vku7zchqff2kuymh67gi2cg/app.bsky.feed.post/3mklnaitqpv2g</guid></item><item><link>https://bsky.app/profile/hackinghub.bsky.social/post/3mk6p6pxs2e2r</link><description>Recon dry? Default Subfinder hits basic sources only.&#xA;&#xA;Without API keys, you&#39;re only hitting basic public sources. Add GitHub, Censys, and Shodan keys to ~/.config/subfinder/provider-config.yaml and use the -all flag to include deep-tier sources.</description><pubDate>23 Apr 2026 19:02 +0000</pubDate><guid isPermaLink="false">at://did:plc:7vku7zchqff2kuymh67gi2cg/app.bsky.feed.post/3mk6p6pxs2e2r</guid></item><item><link>https://bsky.app/profile/hackinghub.bsky.social/post/3mk4w6lcrpc25</link><description>Can you perform command injection here to read arbitrary files? 👀&#xA;&#xA;drop your answer below👇</description><pubDate>23 Apr 2026 02:02 +0000</pubDate><guid isPermaLink="false">at://did:plc:7vku7zchqff2kuymh67gi2cg/app.bsky.feed.post/3mk4w6lcrpc25</guid></item><item><link>https://bsky.app/profile/hackinghub.bsky.social/post/3mjze74mgm32r</link><description>📝Scenario:&#xA;&#xA;➡️ You found reflected XSS on a low-privilege, unauthenticated search page&#xA;&#xA;What’s your next BEST move? 👇</description><pubDate>21 Apr 2026 16:02 +0000</pubDate><guid isPermaLink="false">at://did:plc:7vku7zchqff2kuymh67gi2cg/app.bsky.feed.post/3mjze74mgm32r</guid></item><item><link>https://bsky.app/profile/hackinghub.bsky.social/post/3mjwn3r6k5n2j</link><description>What if the notifications you trust were actually coming from a hacker? 🕶️&#xA;&#xA;Watch the walkthrough with John Hammond to see how it works👇&#xA;&#xA;https://youtu.be/wrAFZLa1TAk?si=0-FSO_Y3BDMHcbBP</description><pubDate>20 Apr 2026 14:03 +0000</pubDate><guid isPermaLink="false">at://did:plc:7vku7zchqff2kuymh67gi2cg/app.bsky.feed.post/3mjwn3r6k5n2j</guid></item><item><link>https://bsky.app/profile/hackinghub.bsky.social/post/3mjuqnzvryr2e</link><description>Test yourself with this NoSQL Injection Challenge 👇</description><pubDate>19 Apr 2026 20:02 +0000</pubDate><guid isPermaLink="false">at://did:plc:7vku7zchqff2kuymh67gi2cg/app.bsky.feed.post/3mjuqnzvryr2e</guid></item><item><link>https://bsky.app/profile/hackinghub.bsky.social/post/3mjrw5mvwku25</link><description>Only real hackers will understand this.</description><pubDate>18 Apr 2026 17:02 +0000</pubDate><guid isPermaLink="false">at://did:plc:7vku7zchqff2kuymh67gi2cg/app.bsky.feed.post/3mjrw5mvwku25</guid></item><item><link>https://bsky.app/profile/hackinghub.bsky.social/post/3mjp3ofg4ay2y</link><description>Test yourself by writing a curl command to get admin 🧐</description><pubDate>17 Apr 2026 14:03 +0000</pubDate><guid isPermaLink="false">at://did:plc:7vku7zchqff2kuymh67gi2cg/app.bsky.feed.post/3mjp3ofg4ay2y</guid></item><item><link>https://bsky.app/profile/hackinghub.bsky.social/post/3mjn3zpppue2g</link><description>Blind XSS isn&#39;t dead; it just requires more patience than you&#39;re used to 👇</description><pubDate>16 Apr 2026 19:04 +0000</pubDate><guid isPermaLink="false">at://did:plc:7vku7zchqff2kuymh67gi2cg/app.bsky.feed.post/3mjn3zpppue2g</guid></item><item><link>https://bsky.app/profile/hackinghub.bsky.social/post/3mjlcw7zjr22h</link><description>Only a good hacker can bypass this.&#xA;&#xA;Drop your answer below👇</description><pubDate>16 Apr 2026 02:02 +0000</pubDate><guid isPermaLink="false">at://did:plc:7vku7zchqff2kuymh67gi2cg/app.bsky.feed.post/3mjlcw7zjr22h</guid></item><item><link>https://bsky.app/profile/hackinghub.bsky.social/post/3mjhr6ilydy27</link><description>An uncommon but elite recon method: Subscribe to every marketing email the target company sends</description><pubDate>14 Apr 2026 16:06 +0000</pubDate><guid isPermaLink="false">at://did:plc:7vku7zchqff2kuymh67gi2cg/app.bsky.feed.post/3mjhr6ilydy27</guid></item><item><link>https://bsky.app/profile/hackinghub.bsky.social/post/3mjfh6mdtmi2l</link><description>Have you hacked a GraphQL API before? Try this one out.&#xA;&#xA;Find the flaw.&#xA;&#xA;And drop yung banger payload. 👇</description><pubDate>13 Apr 2026 18:02 +0000</pubDate><guid isPermaLink="false">at://did:plc:7vku7zchqff2kuymh67gi2cg/app.bsky.feed.post/3mjfh6mdtmi2l</guid></item><item><link>https://bsky.app/profile/hackinghub.bsky.social/post/3mjd5hslkih2h</link><description>Don&#39;t waste keystrokes. The alias command is a critical tool for optimizing your workflow and executing frequent commands instantly.</description><pubDate>12 Apr 2026 20:03 +0000</pubDate><guid isPermaLink="false">at://did:plc:7vku7zchqff2kuymh67gi2cg/app.bsky.feed.post/3mjd5hslkih2h</guid></item><item><link>https://bsky.app/profile/hackinghub.bsky.social/post/3mj5ieuxhsx23</link><description>Drop your methodology to bypass this 👇</description><pubDate>10 Apr 2026 14:02 +0000</pubDate><guid isPermaLink="false">at://did:plc:7vku7zchqff2kuymh67gi2cg/app.bsky.feed.post/3mj5ieuxhsx23</guid></item><item><link>https://bsky.app/profile/hackinghub.bsky.social/post/3mj2xxmfh7k2n</link><description>Large organizations often sync profile data across subdomains, moving your session from the core app to sub-apps like /events.&#xA;&#xA;The flaw? Different teams often own these products. This is exactly how Naham found the logic gap.&#xA;&#xA;Try this hub👉https://app.hackinghub.io/hubs/nahamcrm</description><pubDate>09 Apr 2026 14:03 +0000</pubDate><guid isPermaLink="false">at://did:plc:7vku7zchqff2kuymh67gi2cg/app.bsky.feed.post/3mj2xxmfh7k2n</guid></item><item><link>https://bsky.app/profile/hackinghub.bsky.social/post/3miyapxhogb2p</link><description>Do you have a good understanding of XML?&#xA;&#xA;Try finding the flaw in this code. &#xA;&#xA;Bonus: Write payload to read /home/carlos/flag.txt 👇</description><pubDate>08 Apr 2026 12:02 +0000</pubDate><guid isPermaLink="false">at://did:plc:7vku7zchqff2kuymh67gi2cg/app.bsky.feed.post/3miyapxhogb2p</guid></item><item><link>https://bsky.app/profile/hackinghub.bsky.social/post/3miw5opcghh2k</link><description>This is a one character bypass. Can you find it?&#xA;&#xA;Bonus: Drop the payload 👇</description><pubDate>07 Apr 2026 16:02 +0000</pubDate><guid isPermaLink="false">at://did:plc:7vku7zchqff2kuymh67gi2cg/app.bsky.feed.post/3miw5opcghh2k</guid></item><item><link>https://bsky.app/profile/hackinghub.bsky.social/post/3mitd5sixef26</link><description>Can you read the configuration? How?👇</description><pubDate>06 Apr 2026 13:02 +0000</pubDate><guid isPermaLink="false">at://did:plc:7vku7zchqff2kuymh67gi2cg/app.bsky.feed.post/3mitd5sixef26</guid></item><item><link>https://bsky.app/profile/hackinghub.bsky.social/post/3miqqxbjxrn25</link><description>Can you write a payload to read flag.txt?&#xA;&#xA;Classic mistake: Blacklist + eval()&#xA;&#xA;What’s your payload? 👇</description><pubDate>05 Apr 2026 12:31 +0000</pubDate><guid isPermaLink="false">at://did:plc:7vku7zchqff2kuymh67gi2cg/app.bsky.feed.post/3miqqxbjxrn25</guid></item><item><link>https://bsky.app/profile/hackinghub.bsky.social/post/3miopmouaiq2s</link><description>Your FFUF command isn’t returning anything useful, is it?&#xA;&#xA;The problem usually isn’t the wordlist. You’re likely getting filtered or rate-limited.&#xA;&#xA;Slow it down, control your rate, use realistic headers like a browser, and filter the noise so real endpoints stand out.&#xA;&#xA;Try now 👇</description><pubDate>04 Apr 2026 17:02 +0000</pubDate><guid isPermaLink="false">at://did:plc:7vku7zchqff2kuymh67gi2cg/app.bsky.feed.post/3miopmouaiq2s</guid></item><item><link>https://bsky.app/profile/hackinghub.bsky.social/post/3mim3tm3myg23</link><description>Are you good at writing regex? Here’s a challenge for you.&#xA;&#xA;Objective: Extract all the MD5 hashes from this log dump.&#xA;&#xA;Rules:&#xA;        1. No false positives&#xA;        2. Must match full hashes only&#xA;&#xA;Drop your regex right now? 👇</description><pubDate>03 Apr 2026 16:02 +0000</pubDate><guid isPermaLink="false">at://did:plc:7vku7zchqff2kuymh67gi2cg/app.bsky.feed.post/3mim3tm3myg23</guid></item><item><link>https://bsky.app/profile/hackinghub.bsky.social/post/3mijopye3oe2j</link><description>Learning to hack can be frustrating...&#xA;&#xA;Every time you try to learn something, you realise that you needed to learn something else first.&#xA;&#xA;What you really need is a roadmap that guides you from start to end.&#xA;&#xA;That&#39;s exactly what we&#39;ve built for you.&#xA;&#xA;https://www.hackinghub.io/</description><pubDate>02 Apr 2026 17:02 +0000</pubDate><guid isPermaLink="false">at://did:plc:7vku7zchqff2kuymh67gi2cg/app.bsky.feed.post/3mijopye3oe2j</guid></item><item><link>https://bsky.app/profile/hackinghub.bsky.social/post/3mihbmgtspf2k</link><description>You don&#39;t feel like you know enough about hacking.&#xA;&#xA;Guess what? That feeling never goes away.&#xA;&#xA;The more you learn - the more you realise you don&#39;t know.&#xA;&#xA;That&#39;s the worst thing about hacking, but also the best.&#xA;&#xA;Start your hacking journey with us. &#xA;https://www.hackinghub.io/</description><pubDate>01 Apr 2026 18:02 +0000</pubDate><guid isPermaLink="false">at://did:plc:7vku7zchqff2kuymh67gi2cg/app.bsky.feed.post/3mihbmgtspf2k</guid></item><item><link>https://bsky.app/profile/hackinghub.bsky.social/post/3miensl4tnb2w</link><description>In CTFs, speed matters the most.&#xA;&#xA;Most players waste time on full scans first.&#xA;&#xA;Pipeline:&#xA;Fast discovery → Focused enumeration → Background verification&#xA;&#xA;Find ports faster with RustScan and use Nmap to get what matters.&#xA;&#xA;Question: Why should you never trust RustScan alone?</description><pubDate>31 Mar 2026 17:03 +0000</pubDate><guid isPermaLink="false">at://did:plc:7vku7zchqff2kuymh67gi2cg/app.bsky.feed.post/3miensl4tnb2w</guid></item><item><link>https://bsky.app/profile/hackinghub.bsky.social/post/3micap4lqxi2k</link><description>Drop your choice below👇 🔴Red or 🔵blue?</description><pubDate>30 Mar 2026 18:03 +0000</pubDate><guid isPermaLink="false">at://did:plc:7vku7zchqff2kuymh67gi2cg/app.bsky.feed.post/3micap4lqxi2k</guid></item><item><link>https://bsky.app/profile/hackinghub.bsky.social/post/3mia2bd6him2z</link><description>Persistence always pays off🕶️</description><pubDate>29 Mar 2026 21:02 +0000</pubDate><guid isPermaLink="false">at://did:plc:7vku7zchqff2kuymh67gi2cg/app.bsky.feed.post/3mia2bd6him2z</guid></item><item><link>https://bsky.app/profile/hackinghub.bsky.social/post/3mi5jqcdknx2k</link><description>Quick Guide: GraphQL Introspection ➡️ BOLA/IDOR&#xA;&#xA;👇</description><pubDate>28 Mar 2026 21:01 +0000</pubDate><guid isPermaLink="false">at://did:plc:7vku7zchqff2kuymh67gi2cg/app.bsky.feed.post/3mi5jqcdknx2k</guid></item></channel></rss>