27 Jul 2026, 18:14 UTC957 views7 reactionsread 6 August 2026 Photo
🔥 Happening Now 🔥
Summer Bootcamp Week 7
Server Side Request Forgery (SSRF)
🌐 Tricking a server into fetching a URL it shouldn't - internal systems, cloud metadata, or private services hidden behind the firewall. Turning the server's own trusted network position into a way past defenses meant to keep outsiders out.
— Cyber Security Division
By Keneni Asefa
@csec_cybersecurity
@CSEC_ASTU
#CSEC_ASTU #Cybersecur…
🔥7
20 Jul 2026, 18:25 UTC452 views8 reactionsread 6 August 2026 Photo
🔥 Happening Now 🔥
Summer Bootcamp Week 6
Race Conditions
⚡ Sending multiple requests at the exact same moment, before the system finishes checking the first one. Exploiting that tiny timing gap to redeem a coupon twice, withdraw money twice, or slip past a check meant to only allow it once.
— Cyber Security Division
By Salahadin Sadik
@csec_cybersecurity
@CSEC_ASTU
#CSEC_ASTU #Cybersecurity #WebSecurity #wee…
🔥6⚡1❤1
13 Jul 2026, 18:13 UTC589 views5 reactionsread 6 August 2026 Photo
🔥 Happening Now 🔥
Summer Bootcamp Week 5
File Upload Vulnerabilities
Bypassing extension filters. Faking content-types. Sneaking payloads past MIME checks. Understanding how missing validation, weak storage paths, and blind trust in file metadata turn a simple upload form into remote code execution. 📁
— Cyber Security Division
By Sirajudin Seid
@csec_cybersecurity
@CSEC_ASTU
#CSEC_ASTU #Cybersecurity #WebSecur…
🔥5
7 Jul 2026, 13:52 UTC714 viewsread 6 August 2026 Forwarded from @et_accPhoto
Researchers documented JadePuffer, what they believe is the first known “agentic ransomware”, which adapts in real time and retries steps to execute an end-to-end extortion operation
Not a new kind of evil, exactly. Just the old kind with fewer coffee breaks.
6 Jul 2026, 18:33 UTC639 views4 reactionsread 6 August 2026 Photo
🔥 Happening Now 🔥
Summer Bootcamp Week 4
Business Logic Flow & Broken Access Control
Bypassing checks. Manipulating workflows. Understanding how broken logic and weak boundaries become full account takeover. 🔓"
— Cyber Security Division
By Lina Temam
@csec_cybersecurity
@CSEC_ASTU
#CSEC_ASTU #Cybersecurity #WebSecurity #accesscontrol #businessflow #apitesting #Infosec #SummerBootcamp
🔥4
30 Jun 2026, 23:13 UTC713 views13 reactionsread 6 August 2026 Forwarded from @CSEC_ASTUPhoto
🏆 Another Proud Moment for CSEC_ASTU 🏆
Today, we proudly celebrate the outstanding achievements of our members at the ICCA CTF 2026.
🌟 Girum Senay, a CSEC graduate, secured 1st Place with exceptional cybersecurity skills
🌟 Yonas Sisay, a CSEC graduate, secured 2nd Place, continuing our tradition of excellence
🌟 Their results reflect dedication, hands-on experience, and the strength of our community
Your achievemen…
🔥12❤1
29 Jun 2026, 18:21 UTC≈2,280 views3 reactionsread 6 August 2026 Photo
🔥 Happening Now 🔥
Summer Bootcamp Week 3
Path Traversals & Command Injection
Escaping directories. Executing commands. Understanding how trusted input becomes system compromise. ⚡
— Cyber Security Division
By Beka Abebe
@csec_cybersecurity
@CSEC_ASTU
#CSEC_ASTU #Cybersecurity #WebSecurity #CMDI #PathTraversal #CyberSecurityTraining #Infosec #SummerBootcamp
🔥3
25 Jun 2026, 20:22 UTC671 views19 reactionsread 6 August 2026 we did it again🔥🔥1 st and 2 nd🔥🔥
🔥19
25 Jun 2026, 20:21 UTC719 views10 reactionsread 6 August 2026 Forwarded from @temari_yekoloPhoto
What an incredible experience hosting the #ICCA #CTF #2026!
We are proud to have brought together cybersecurity enthusiasts, students, and professionals to test their skills, learn from one another, and engage in hands-on cybersecurity challenges. Events like these play a vital role in strengthening our cybersecurity community and fostering the next generation of cyber talent.
A heartfelt thank you to the ECySA (Et…
👏9❤1
Showing the 9 most recent of 9 posts we hold for @csec_cyberSecurity. View and reaction counts are the latest single reading for each post, not a live figure, and a recent post is still accumulating both. A view count marked ≈ was rounded by Telegram before we ever saw it — t.me prints views in full below 1,000 and to three significant figures above, so ≈1,200,000 means somewhere between 1,150,000 and 1,249,999. Unmarked counts are exact. Text is reproduced from the public post preview and truncated for length.