Daily Writeups
3.86K subscribers
4 photos
134K links
Daily Bug Bounty / Cybersecurity Writeups
Source Code : https://github.com/Spix0r/writeup-miner
Download Telegram
⤷ Title: Business Logic Bugs That Paid Big: How “Working as Intended” Broke Million-Dollar Systems
════════════════════════
𐀪 Author: Krish_cyber
════════════════════════
ⴵ Time: Wed, 17 Dec 2025 22:40:56 GMT
════════════════════════
⌗ Tags: #cybersecurity #bug_bounty_writeup #bug_bounty #osint #cybersecurity_writeups
⤷ Title: $2,500 Bounty: How a Simple Race Condition Let Me Get Paid Multiple Times by HackerOne
════════════════════════
𐀪 Author: Monika sharma
════════════════════════
ⴵ Time: Wed, 17 Dec 2025 22:40:31 GMT
════════════════════════
⌗ Tags: #technology #penetration_testing #cybersecurity #tech #bug_bounty
⤷ Title: What is API Security and Why Should Everyday People Care About it?
════════════════════════
𐀪 Author: Veronica Peter
════════════════════════
ⴵ Time: Wed, 17 Dec 2025 22:46:34 GMT
════════════════════════
⌗ Tags: #application #api_security #application_security #api
⤷ Title: Lab: 2FA broken logic
════════════════════════
𐀪 Author: Songül Kızılay Özügürler
════════════════════════
ⴵ Time: Wed, 17 Dec 2025 22:23:05 GMT
════════════════════════
⌗ Tags: #pentesting #ctf #hacking #medium #ctf_writeup
⤷ Title: SNORT WALKTHROUGH (TRY HACK ME )
════════════════════════
𐀪 Author: The Commoness
════════════════════════
ⴵ Time: Wed, 17 Dec 2025 22:42:31 GMT
════════════════════════
⌗ Tags: #incident_response #tryhackme_walkthrough #tryhackme_snort #tryhackme #tryhackme_writeup
⤷ Title: HackTheBox — File Uploads-Whitelist Filters
════════════════════════
𐀪 Author: 415141
════════════════════════
ⴵ Time: Wed, 17 Dec 2025 22:27:18 GMT
════════════════════════
⌗ Tags: #ethical_hacking #cybersecurity #web_security #file_upload #hackthebox
⤷ Title: “Script” Engellemek Yetmez: Reflected XSS Gerçeği
════════════════════════
𐀪 Author: Melih Yılmaz
════════════════════════
ⴵ Time: Wed, 17 Dec 2025 22:09:33 GMT
════════════════════════
⌗ Tags: #xss_attack #web_security #cybersecurity #web_application_security #ethical_hacking
⤷ Title: Vulnhub Deathnote: 1 Walkthrough
════════════════════════
𐀪 Author: Luke Gearty
════════════════════════
ⴵ Time: Wed, 17 Dec 2025 22:06:07 GMT
════════════════════════
⌗ Tags: #cybersecurity #vulnerable_machine #ethical_hacking #hack_to_learn #vulnhub_walkthrough
⤷ Title: The Invisible Glue of the Internet: What Is API Security and Why It Matters to You
════════════════════════
𐀪 Author: Ngobirifalyne
════════════════════════
ⴵ Time: Wed, 17 Dec 2025 22:51:32 GMT
════════════════════════
⌗ Tags: #api_introduction #api_security #api #getting_started_with_api #api_usage
⤷ Title: Solving OIDC Integration Challenges with Kong API Gateway and Angular UI
════════════════════════
𐀪 Author: Amanuel Eshete
════════════════════════
ⴵ Time: Wed, 17 Dec 2025 22:48:41 GMT
════════════════════════
⌗ Tags: #kong_api_gateway #api_security #openid_connect #microservices #angular
⤷ Title: France Arrests 22 Year Old After Hack of Interior Ministry Systems
════════════════════════
𐀪 Author: Waqas
════════════════════════
ⴵ Time: Thu, 18 Dec 2025 00:26:27 +0000
════════════════════════
⌗ Tags: #Cyber Crime #BreachForums #Cyber Attack #Cybersecurity #data breach #France #hacking #ShinyHunters
⤷ Title: $5,000 Bounty: How I Hijacked Google Gemini’s UI via Python Code Execution
════════════════════════
𐀪 Author: janet zech
════════════════════════
ⴵ Time: Thu, 18 Dec 2025 00:05:51 GMT
════════════════════════
⌗ Tags: #technology #ai #security #llm #bug_bounty
⤷ Title: SSRF Vulnerability Tryhackme Walkthrough
════════════════════════
𐀪 Author: Mainekhacker
════════════════════════
ⴵ Time: Thu, 18 Dec 2025 00:42:44 GMT
════════════════════════
⌗ Tags: #ssrf_walkthrough #tryhackme_walkthrough #cybersecurity #web_hacking #hacking
⤷ Title: CTF Flow| HackingClub
════════════════════════
𐀪 Author: Henrique
════════════════════════
ⴵ Time: Thu, 18 Dec 2025 00:09:06 GMT
════════════════════════
⌗ Tags: #ctf_writeup #hacking #offensive_security #pentesting
⤷ Title: Testability vs. Automatability: Why Most Automation Efforts Fail Before They Begin
════════════════════════
𐀪 Author: tanvi mittal
════════════════════════
ⴵ Time: Thu, 18 Dec 2025 01:02:38 GMT
════════════════════════
⌗ Tags: #testing #penetration_testing #software_testing #software_development #test_automation
⤷ Title: GPO Stealth: Turn Active Directory Into Your C2 With the New GroupPolicyBackdoor Framework
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 18 Dec 2025 03:59:56 +0000
════════════════════════
⌗ Tags: #Open Source Tool #Active Directory #DEF CON 33 #GPO Abuse #GroupPolicyBackdoor #LDAP #privilege escalation #python #red teaming #SMB #Stealth Exploitation #Synacktiv
⤷ Title: The Plagiarism Trap: How ForumTroll APT is Holding Academic Careers Hostage to Deploy Spyware
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 18 Dec 2025 03:55:26 +0000
════════════════════════
⌗ Tags: #Cyber Security #Academic Espionage #COM Hijacking #Dante Spyware #ForumTroll #Kaspersky Lab #LeetAgent #phishing #Russian Universities #threat intelligence #Tuoni Framework
⤷ Title: The Invisible Roommate: How the GhostPairing Scam Steals Your WhatsApp Without a Password
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 18 Dec 2025 03:53:30 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Account Takeover #Cybersecurity 2025 #Device Pairing #Gen Digital #GhostPairing #phishing #privacy #QR Code Scam #Social Engineering #WhatsApp
⤷ Title: The Living Mesh: Ink Dragon Turns European Government Servers into a Global ShadowPad Relay Network
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 18 Dec 2025 03:52:47 +0000
════════════════════════
⌗ Tags: #Cyber Security #APT #Check Point Research #Cyber Espionage #Earth Alux #European Security #FINALDRAFT #IIS Malware #Ink Dragon #ShadowPad #SharePoint Exploit
⤷ Title: SYSTEM via WAC: How a Permissions Oversight in Windows Admin Center Leads to Full Host Compromise
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 18 Dec 2025 03:50:07 +0000
════════════════════════
⌗ Tags: #Vulnerability #CVE_2025_64669 #cybersecurity #Cymulate #DLL hijacking #Microsoft #PowerShell #privilege escalation #TOCTOU #Windows Admin Center #Windows Server
⤷ Title: The Silent Listener: New DRBControl Backdoor Variant Uses Network Sniffing to Evade Detection
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 18 Dec 2025 03:48:07 +0000
════════════════════════
⌗ Tags: #Malware #APT27 #APT41 #Cyber Espionage #DLL Sideloading #DRBControl #IIJ #malware analysis #Mofu Loader #Promiscuous Mode #ShadowPad #Type 1 Backdoor