Hmmnm
All articles published by

Hmmnm

Hands-on cybersecurity tutorials, CVE breakdowns, and guided learning paths. Every technique is explained, tested, and paired with its mitigation — so you learn the attack and the defense together.

Learning Paths · About Hmmnm · Editorial policy

Weekly Threat Intel: Tuesday 22 September 2026 — Ransomware Crews Adopt Agent Tooling

TL;DR: What Changed This Week in Ransomware Tradecraft Weekly Threat Intel: Ransomware Crews Adopt Agent Tooling Weekly Threat Intel: Ransomware Crews Adopt Agent Tooling Ransomware affiliates are now automating reconnaissance…

Continue ReadingWeekly Threat Intel: Tuesday 22 September 2026 — Ransomware Crews Adopt Agent Tooling

Abusing OIDC in CI/CD: A Step-by-Step Tutorial on GitHub Actions Token Trust Chains

{ "@context": "https://schema.org", "@type": "TechArticle", "headline": "Abusing OIDC in CI/CD: A Step-by-Step Tutorial on GitHub Actions Token Trust Chains", "description": "Hands-on tutorial: configure GitHub Actions OIDC federation to cloud IAM,…

Continue ReadingAbusing OIDC in CI/CD: A Step-by-Step Tutorial on GitHub Actions Token Trust Chains

Hands-On Container Escape Lab: Privilege Escalation from Pod to Node with Real Commands

Build a safe, vulnerable minikube lab and practice real container escape techniques step by step: privileged pods, hostPath mounts, service account abuse, and node privilege escalation — with verified commands and blue-team detection tips.

Continue ReadingHands-On Container Escape Lab: Privilege Escalation from Pod to Node with Real Commands