Daily Writeups
3.52K subscribers
2 photos
129K links
Daily Bug Bounty / Cybersecurity Writeups
Source Code : https://github.com/Spix0r/writeup-miner
Download Telegram
Title: Spy Games or Glitch? The Truth Behind Venezuela’s BGP Leak
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Thu, 08 Jan 2026 00:25:48 +0000
════════════════════════
Tags: #Data Leak #AS8048 #ASPA #BGP Leak #Bryton Herdes #CANTV #cloudflare #Internet Infrastructure #network_security #Route Hijacking #Venezuela
Title: One Request to Rule Them All: Critical Trendnet Flaw (CVE-2025-15471) Allows Total Takeover
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Thu, 08 Jan 2026 00:17:16 +0000
════════════════════════
Tags: #Vulnerability Report #Command Injection #CVE_2025_15471 #Firmware Security #IoT Vulnerability #rce #TEW_713RE #Trendnet #Wi_Fi security
Title: “Ghost Tap” Rising: New Wave of Android Malware Turns Phones into Digital Pickpockets
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Thu, 08 Jan 2026 00:11:17 +0000
════════════════════════
Tags: #Cybercriminals #Android Malware #Cybercrime #financial fraud #Ghost Tap #Group_IB #mobile security #NFC Security #Telegram scams
Title: CVE-2025-60262: Critical Misconfiguration in H3C Wireless Gear Hands Control to Hackers
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Thu, 08 Jan 2026 00:06:07 +0000
════════════════════════
Tags: #Vulnerability Report #Critical Vulnerability #CVE_2025_60262 #H3C #Network Infrastructure #privilege escalation #root access #vsftpd #Wireless Security
Title: Taiwan Faces 2.6 Million Cyberattacks Daily from China
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Thu, 08 Jan 2026 00:01:43 +0000
════════════════════════
Tags: #Cyber Security #APT41 #Critical Infrastructure #Cyber Warfare #Energy Sector Security #Hybrid Warfare #infosec #Mustang Panda #Taiwan NSB
Title: Lo-Fi TryHackMe Write UP
════════════════════════
𐀪 Author: cat0x01
════════════════════════
Time: Thu, 08 Jan 2026 00:48:59 GMT
════════════════════════
Tags: #ctf #bug_bounty #pentesting #hacking #cybersecurity
Title: TryHackMe: Willow Writeup
════════════════════════
𐀪 Author: cbev
════════════════════════
Time: Thu, 08 Jan 2026 01:42:11 GMT
════════════════════════
Tags: #information_security #tryhackme #pentesting #cybersecurity
Title: From Ghostcat to Root: A Comprehensive Walkthrough of the Thompson Lab
════════════════════════
𐀪 Author: Justin Jude Cabodil
════════════════════════
Time: Thu, 08 Jan 2026 00:43:32 GMT
════════════════════════
Tags: #tryhackme #ajp #linux
Title: CISA KEV Alert: HPE’s Maximum CVSS Score Flaw and a Zombie PowerPoint Bug
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Thu, 08 Jan 2026 03:55:40 +0000
════════════════════════
Tags: #Vulnerability Report #CISA #CVE_2009_0556 #CVE_2025_37164 #HPE OneView #Infrastructure Security #KEV Catalog #Microsoft PowerPoint #vulnerability management #zero_day
Title: Public Exploit Released: Critical n8n Flaw CVE-2026-21858 Exposes 100k Servers
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Thu, 08 Jan 2026 03:44:33 +0000
════════════════════════
Tags: #Vulnerability Report #API security #CVE_2026_21858 #Cyera #DevSecOps #n8n #Public Exploit #RCE (Remote Code Execution) #Workflow Automation
Title: GoBruteforcer Returns: How AI Code Snippets Fueled a 50,000-Server Botnet
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Thu, 08 Jan 2026 02:45:28 +0000
════════════════════════
Tags: #Malware #AI_Generated Code #botnet #brute force attack #Check Point Research #Crypto theft #GoBruteforcer #Linux Security #Malware Analysis
Title: CVE-2025-67859: Critical Auth Bypass Discovered in Popular Linux Battery Utility
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Thu, 08 Jan 2026 02:28:26 +0000
════════════════════════
Tags: #Vulnerability Report #CVE_2025_67859 #Denial of Service (DoS) #Linux Security #Polkit #Power Management #privilege escalation #SUSE #TLP
Title: CrazyHunter: The “Ruthless” Ransomware Stalking Healthcare
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Thu, 08 Jan 2026 02:17:34 +0000
════════════════════════
Tags: #Malware #Active Directory Security #BYOVD (Bring Your Own Vulnerable Driver) #CrazyHunter #healthcare security #Malware Analysis #ransomware #SharpGPOAbuse #Trellix
Title: GitLab Patch: High-Severity XSS & AI Flaws Expose User Data
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Thu, 08 Jan 2026 02:08:26 +0000
════════════════════════
Tags: #Vulnerability Report #Application Security #CVE_2025_9222 #DevSecOps #gitlab #GitLab Duo #software update #vulnerability management #XSS (Cross_Site Scripting)
Title: Recruiting Google Gemini’s Email Summarizer as a Phishing Aid
════════════════════════
𐀪 Author: Mike Sheward
════════════════════════
Time: Thu, 08 Jan 2026 03:23:09 GMT
════════════════════════
Tags: #llm #infosec #gemini #ai #bug_bounty
Title: LangChain Serialization Vulnerabilities: When LLMs Generate Exploits
════════════════════════
𐀪 Author: David Anderson
════════════════════════
Time: Thu, 08 Jan 2026 02:25:24 GMT
════════════════════════
Tags: #cybersecurity #infosec #artificial_intelligence #ai #application_security
Title: Archa CTF 2026 — Mobile (Writeups)
════════════════════════
𐀪 Author: CynPhone
════════════════════════
Time: Thu, 08 Jan 2026 03:38:01 GMT
════════════════════════
Tags: #mobile_games #hacking #ctf_writeup #mobile_security #ctf
Title: Why Spotify’s latest problem could change music forever
════════════════════════
𐀪 Author: Abstract Mind
════════════════════════
Time: Thu, 08 Jan 2026 03:28:33 GMT
════════════════════════
Tags: #cybersecurity #artificial_intelligence #hacking #security
Title: Token Leakage in Password Reset Flows
════════════════════════
𐀪 Author: Muhammed Asfan | Cybersecurity Analyst
════════════════════════
Time: Thu, 08 Jan 2026 03:15:12 GMT
════════════════════════
Tags: #bug_bounty_writeup #bug_bounty_tips #pentesting #passwords #cybersecurity