r/ethicalhackersrilanka 2h ago

Why would anyone hack a chess website?

Post image
1 Upvotes

after the Chess.com database leak.
Honestly, I don’t think the website itself necessarily has to be the interesting part.

A few possible reasons:

1. Reputation / attention — Hitting a well-known platform can get an attacker recognition and attention.

2. User data has value — Millions of accounts means millions of data points. Emails, usernames, profile information, etc. can potentially be sold or abused for spam, phishing, advertising, and other stuff.

3. Credential attacks — If authentication-related data is exposed, attackers may try those credentials on other services. Especially because people reuse passwords.

That’s why I always think “What data does this website have?” is more important than asking whether the website itself looks like an interesting target.

Sometimes the target isn’t the website.

The users are the target.
The data is the target.

Obviously, the exact impact depends on what was actually exposed and how the data was stored. Not every database leak means plaintext passwords were leaked.


r/ethicalhackersrilanka 6h ago

Looking to brush up my knowledge

2 Upvotes

Hey all! I studied cybersecurity and networking a while ago but wasn't able to get a job to start my career. I moved away from the field to random BPO work. Now, I'm about to get a Team Leader position, but I'd still like to get into cybersecurity/web app penetration testing and bug bounty. I would be open to helping and learning more about bug bounty and penetration testing.


r/ethicalhackersrilanka 2d ago

🔐 Learning Web Security? Start Here!

12 Upvotes

Guys, if you’re looking into web security, I highly recommend PortSwigger Web Security Academy.

It’s almost completely free and has really good hands-on labs, clear instructions, and learning materials.

If you’re completely new to web security, I suggest starting with the Authentication learning path. It’s a great way to understand how authentication works and how vulnerabilities can occur.

Happy hacking! 🐛🔐🇱🇰


r/ethicalhackersrilanka 3d ago

What Makes Us Different? 🇱🇰

7 Upvotes

r/EthicalHackersSriLanka isn’t just another cybersecurity community.

We want to build a space for Sri Lankan security enthusiasts to connect, collaborate, and talk about the issues we actually face.

🔐 Cybersecurity & Ethical Hacking

🐛 Bug Bounties & Security Research

🤝 Collaboration & CTF Teams

📚 Learning & Knowledge Sharing

🎤 Events, Meetups & Opportunities

But we also want to discuss the social side of cybersecurity.

Things like:

😤 Frustrating experiences with social media platforms

🚫 Online harassment & sexual harassment

🛡️ Online safety and privacy

📱 Digital abuse and harmful online behavior

⚖️ How technology affects our society

🇱🇰 Cybersecurity issues affecting people in Sri Lanka

We believe cybersecurity isn’t only about finding vulnerabilities in systems. It’s also about understanding how technology affects people.

No matter whether you’re a bug bounty hunter, student, developer, researcher, or simply someone interested in online safety — you’re welcome here.
Let’s build something different. 🇱🇰


r/ethicalhackersrilanka 3d ago

🇱🇰 What should r/EthicalHackersSriLanka become ?

5 Upvotes

A community-driven hub for Sri Lankan cybersecurity people.

The goal could be to eventually build a community where people can:

🤝 Find cybersecurity people to collaborate with

🐛 Learn and share bug bounty research

🔐 Practice ethical hacking together

🏴‍☠️ Create/join CTF teams

💻 Work on open-source security projects

🎤 Organize meetups, workshops & talks

🏆 Participate in local and international cybersecurity events

💼 Share jobs, internships & opportunities

📚 Help beginners learn from experienced researchers

🇱🇰** Represent Sri Lanka in cybersecurity competitions and event**s

The long-term vision could be:

“A place where a Sri Lankan beginner can join with zero connections, meet other security enthusiasts, learn together, collaborate on real projects, and eventually represent Sri Lanka on the global cybersecurity stage.”

And importantly, keep the community strictly legal, ethical, and permission-based.

That gives the subreddit a purpose beyond simply being a place to post cybersecurity content.


r/ethicalhackersrilanka 3d ago

🇱🇰 Welcome to r/EthicalHackersSriLanka!

6 Upvotes

Hey everyone! 👋

I created this community to bring together ethical hackers, bug bounty hunters, penetration testers, cybersecurity students, researchers, and security enthusiasts across Sri Lanka.

The goal is simple: connect, collaborate, learn, and grow together.

You can use this community to:

🐛 Share bug bounty experiences and findings

🔐 Discuss ethical hacking & penetration testing

📚 Share resources, tools, and learning paths

🎯 Find CTFs and cybersecurity challenges

🤝 Collaborate on projects and research

🎤 Discover and participate in cybersecurity events

💼 Share cybersecurity career opportunities

Whether you’re a beginner taking your first steps or an experienced security researcher, you’re welcome here.

Let’s build a strong and active cybersecurity community in Sri Lanka. 🇱🇰

Introduce yourself below! Tell us what area of cybersecurity you’re interested in and what you’re currently learning or working on.