Daily Writeups
3.55K subscribers
2 photos
130K links
Daily Bug Bounty / Cybersecurity Writeups
Source Code : https://github.com/Spix0r/writeup-miner
Download Telegram
Title: Best Recon Method to Find JavaScript Vulnerabilities
════════════════════════
𐀪 Author: Monika sharma
════════════════════════
Time: Wed, 24 Dec 2025 01:38:15 GMT
════════════════════════
Tags: #javascript #tech #bug_bounty #penetration_testing #cybersecurity
Title: Malware Analysis Report: “SecretPictures” USB Worm & Info-Stealer
════════════════════════
𐀪 Author: Rahaliashraf
════════════════════════
Time: Wed, 24 Dec 2025 00:56:38 GMT
════════════════════════
Tags: #hacking #malware #hackthebox #cybersecurity #malware_analysis
Title: Android Attacks Google Confirms No Fix For 30% Of All Phones
════════════════════════
𐀪 Author: Moni
════════════════════════
Time: Wed, 24 Dec 2025 00:13:04 GMT
════════════════════════
Tags: #hacking #data #self_improvement #google #writing
Title: When an Unusual Open Port Leads to Full Compromise: Lessons from an NFS Lab
════════════════════════
𐀪 Author: Vivektumma27
════════════════════════
Time: Wed, 24 Dec 2025 00:28:19 GMT
════════════════════════
Tags: #privilege_escalation #ethical_hacking #linux_security #nfs_server #cybersecurity
Title: Understanding OWASP API Security Top 10 With Live Breach Examples — A Practical Guide
════════════════════════
𐀪 Author: Mainekhacker
════════════════════════
Time: Wed, 24 Dec 2025 01:38:27 GMT
════════════════════════
Tags: #api #cybersecurity #owasp_top_10 #api_security #web_development
Title: Forging the Keys: Inside SAMLSmith, the C# Framework for Golden & Silver SAML Attacks
════════════════════════
𐀪 Author: ddos
════════════════════════
Time: Wed, 24 Dec 2025 03:08:48 +0000
════════════════════════
Tags: #Open Source Tool #Active Directory #Cybersecurity 2025 #Entra ID #Golden SAML #Identity Security #Pentesting #SAML #SAMLSmith #Silver SAML #XML Forgery
Title: The End of Crashes: Mullvad’s New GotaTun Rust Engine Slashes VPN Failures by 97%
════════════════════════
𐀪 Author: ddos
════════════════════════
Time: Wed, 24 Dec 2025 02:43:09 +0000
════════════════════════
Tags: #Technology #Android #BoringTun #DAITA #GotaTun #Memory Safety #Mullvad VPN #Multihop #open source #Rust #VPN Performance #WireGuard
Title: Automation Crisis: Critical 9.9 CVSS Flaw Exposes 103K n8n Instances to Full Takeover
════════════════════════
𐀪 Author: ddos
════════════════════════
Time: Wed, 24 Dec 2025 02:40:38 +0000
════════════════════════
Tags: #Vulnerability #Censys #CVE_2025_68613 #Cybersecurity 2025 #DevOps Security #n8n #Node.js #Patch Alert #RCE #remote code execution #Sandbox Escape #Workflow Automation
Title: The Ad Trap Closed: DOJ Seizes Global Control Hub Behind $28M Bank Fraud
════════════════════════
𐀪 Author: ddos
════════════════════════
Time: Wed, 24 Dec 2025 02:39:41 +0000
════════════════════════
Tags: #Cybercriminals #Bank Account Takeover #Cybercrime 2025 #DOJ #Estonia #FBI #Georgia #Google Ads #IC3 #phishing #Search Engine Fraud #web3adspanels
Title: The Admin’s Shadow: How Hackers Turned the Nezha Monitoring Tool into a Stealth RAT
════════════════════════
𐀪 Author: ddos
════════════════════════
Time: Wed, 24 Dec 2025 02:38:40 +0000
════════════════════════
Tags: #Malware #Cyber Security 2025 #Evasion #Nezha #NT AUTHORITY\SYSTEM #Ontinue #open source #post_exploitation #Qualys #RAT #RMM Abuse #Root Access
Title: The Silent Sync: How the “lotusbail” npm Package Hijacks WhatsApp Accounts
════════════════════════
𐀪 Author: ddos
════════════════════════
Time: Wed, 24 Dec 2025 02:36:24 +0000
════════════════════════
Tags: #Malware #Baileys library #Cybersecurity 2025 #JavaScript #Koi Security #lotusbail #malware #npm #Session Hijacking #supply chain attack #WhatsApp
Title: Spotify Cracks Down After Anna’s Archive Publishes Massive Music Dataset
════════════════════════
𐀪 Author: ddos
════════════════════════
Time: Wed, 24 Dec 2025 02:33:00 +0000
════════════════════════
Tags: #Data Leak #Anna’s Archive #copyright #data scraping #digital libraries #music piracy #Spotify #stream_ripping
Title: Agent Under Fire: OpenAI Hardens ChatGPT Atlas Against “Invisible” Resignation Attacks
════════════════════════
𐀪 Author: ddos
════════════════════════
Time: Wed, 24 Dec 2025 02:30:51 +0000
════════════════════════
Tags: #Vulnerability #Adversarial Training #AI security #Browser Agent #ChatGPT Atlas #Cyber Security 2025 #OpenAI #Prompt Injection #red teaming #Reinforcement Learning
Title: Linux Kernel 6.19 Slashes Latency & Boosts Legacy AMD GPUs by 30%
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Wed, 24 Dec 2025 03:11:16 +0000
════════════════════════
Tags: #Linux #AMDGPU #GCN 1.0 #GCN 1.1 #GPU Drivers #Linux Kernel 6.19 #Mesa RADV #open_source #Radeon HD 7950 #Retro Gaming #Valve #Vulkan
Title: Racing the Zombie: PoC Released for Linux Kernel POSIX Timer Vulnerability (CVE-2025-38352)
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Wed, 24 Dec 2025 02:52:30 +0000
════════════════════════
Tags: #Linux #Vulnerability Report #Android security #ARM 32_bit #CVE_2025_38352 #KASAN #kernel_exploitation #Linux Kernel #POSIX CPU Timers #proof_of_concept #race condition #Use_After_Free (UAF)
Title: Search Engine “Malvertising” Ring Disrupted: DOJ Seizes Backend of $14.6 Million Bank Fraud Scheme
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Wed, 24 Dec 2025 01:47:08 +0000
════════════════════════
Tags: #Cybercriminals #Account Takeover #ATO #Bing Ads #DOJ #fbi #Financial Crime #Google Ads #Malvertising #Northern District of Georgia #Search Engine Fraud #web3adspanels.org
Title: The Hard-Coded Backdoor: Critical 9.8 Severity NVIDIA Flaws Grant Total Control of AI Systems
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Wed, 24 Dec 2025 01:37:08 +0000
════════════════════════
Tags: #Vulnerability Report #AI security #CVE_2025_33222 #CVE_2025_33223 #CVE_2025_33224 #Hard_coded Credentials #Isaac Launchable #nvidia #privilege escalation #Remote Code Execution #Robotics
Title: Critical Network Collapse: 9.8 Severity Net-SNMP Buffer Overflow Threatens Global Monitoring Systems
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Wed, 24 Dec 2025 00:40:19 +0000
════════════════════════
Tags: #Vulnerability Report #buffer overflow #CVE_2025_68615 #Denial of Service #Infrastructure Security #Net_SNMP #network monitoring #Patch Alert #Remote Code Execution #snmptrapd #Zero Day Initiative
Title: “Casting Call” for Malware: APT37 Poses as TV Writers to Hack Targets
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Wed, 24 Dec 2025 00:35:11 +0000
════════════════════════
Tags: #Cyber Security #Malware #APT37 #Artemis Campaign #cyber_espionage #Genians Security Center #HWP Malware #North Korea #pCloud #Reaper #Ricochet Chollima #social engineering #Yandex Cloud
Title: The Notarized Nightmare: New MacSync Stealer Bypasses Gatekeeper to Hijack Mac Devices
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Wed, 24 Dec 2025 00:28:59 +0000
════════════════════════
Tags: #Malware #Apple Notarization #Code Signing #Cyber Security #Gatekeeper Bypass #Infostealer #Jamf Threat Labs #macOS Malware #MacSync Stealer #swift #ZK_Call Messenger
Title: “Operation IconCat”: Hackers Masquerade as Security Giants to Target Israeli Firms
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Wed, 24 Dec 2025 00:23:08 +0000
════════════════════════
Tags: #Cyber Security #Check Point #cyber_espionage #Icon Spoofing #Israel #Operation IconCat #PYTRIC #RUSTRIC #SentinelOne #Seqrite Labs #UNG0801 #Western Asia #wiper malware