Cyfotok Labs logo
CyfotokCyfotok Labs
DashboardPathsLabsChallengesLeaderboardPricing
Sign up
LoginSignup
  1. Home
  2. /
  3. Blogs

6 posts

Cybersecurity blog

Cybersecurity blogs from Cyfotok Labs: ethical hacking writeups, Tanglish explainers, lab walkthroughs, and notes for Indian students. Free to read.

Some posts are for signed-in learners only — log in to see those.

RSS feed

Featured

  • FeaturedTanglish8 Sept 20261 min read

    CSRF na enna? Session irukku, but the site still got tricked

    Tanglish explainer: how a logged-in cookie plus a missing anti-CSRF token lets another site fire a request as you.

    Read post →
  • FeaturedWriteups6 Sept 20261 min read

    SQL injection on a login form: how the query actually breaks

    A practical walkthrough of why unsanitized login queries fail — and how to confirm the issue in a safe lab, not on a real site.

    Read post →
  • Product11 Sept 20261 min read

    How Cyfotok labs work (no VM, no VPN)

    A short product tour: browser labs, flags, writeups, and why we isolate targets instead of asking you to install Kali first.

Read post →
  • Writeups10 Sept 20261 min read

    Command injection: when ping becomes a shell

    Diagnostic forms that pass hostnames to the OS are a classic easy lab. Here is the checklist without turning it into a cheat sheet for production systems.

    Read post →
  • Career9 Sept 20261 min read

    Your first 30 days in ethical hacking (India edition)

    Skip the 40-tool install list. Here is a month of labs, notes, and public proof that actually helps internships and campus placements.

    Read post →
  • Labs7 Sept 20261 min read

    Reflected vs stored XSS: a lab mental model

    Two flavors of cross-site scripting, one idea: the browser trusts HTML that an attacker got to choose.

    Read post →