Daily Writeups
3.55K subscribers
2 photos
130K links
Daily Bug Bounty / Cybersecurity Writeups
Source Code : https://github.com/Spix0r/writeup-miner
Download Telegram
Title: New China Linked VoidLink Linux Malware Targets Major Cloud Providers
════════════════════════
𐀪 Author: Deeba Ahmed
════════════════════════
Time: Wed, 14 Jan 2026 18:37:24 +0000
════════════════════════
Tags: #Malware #Security #Alibaba #AWS #Azure #China #cloud #Cyber Attack #Cyber Crime #Cybersecurity #Google Cloud #Tencent #VoidLink
Title: Structure and reliability in e-commerce platforms
════════════════════════
𐀪 Author: Owais Sultan
════════════════════════
Time: Wed, 14 Jan 2026 18:02:33 +0000
════════════════════════
Tags: #eCommerce #Technology #Business #Online Shopping
Title: A 5-Day Bug Bounty Hunt on a Telecom Target: From Recon to RXSS and Open Redirect
════════════════════════
𐀪 Author: SpiX-7
════════════════════════
Time: Wed, 14 Jan 2026 18:25:14 GMT
════════════════════════
Tags: #bug_bounty_tips #cybersecurity #bug_bounty_writeup #bug_bounty #web_penetration_testing
Title: Host Header Injection: A Practical Methodology for Security Testing
════════════════════════
𐀪 Author: Israel Aráoz Severiche
════════════════════════
Time: Wed, 14 Jan 2026 18:09:55 GMT
════════════════════════
Tags: #pentesting #bug_bounty #web_security #hacking #ethical_hacking
Title: Como o Instagram teve dados de usuários expostos em janeiro de 2026: a falha de redefinição de…
════════════════════════
𐀪 Author: Henrique Ribeiro
════════════════════════
Time: Wed, 14 Jan 2026 19:36:53 GMT
════════════════════════
Tags: #api_security #instagram #data_security #infosec #cybersecurity
Title: SUID Permission — The Silent Door to Privilege Escalation
════════════════════════
𐀪 Author: PriOFF
════════════════════════
Time: Wed, 14 Jan 2026 19:12:40 GMT
════════════════════════
Tags: #cybersecurity #linux_security #ethical_hacking #privilege_escalation #penetration_testing
Title: An SSRF Sink You’re Probably Skipping (It Earned Me $700 in Bounties)
════════════════════════
𐀪 Author: Thomas A.
════════════════════════
Time: Wed, 14 Jan 2026 20:42:29 GMT
════════════════════════
Tags: #bug_bounty #cybersecurity #penetration_testing #bug_bounty_writeup #technology
Title: Hacked Despite 2FA: My LinkedIn Hack Lessons
════════════════════════
𐀪 Author: Ebube Nwankwo
════════════════════════
Time: Wed, 14 Jan 2026 21:34:48 GMT
════════════════════════
Tags: #hacking #cybersecurity #2fa_bypass #tech #linkedin
Title: TryHackMe : Blue Machine Writeup
════════════════════════
𐀪 Author: Azzam Mohammed (WHHacker)
════════════════════════
Time: Wed, 14 Jan 2026 20:38:08 GMT
════════════════════════
Tags: #windows_security #ethical_hacking #penetration_testing #tryhackme #cyebrsecurity
Title: What College Gave Me That Online Platforms Didn’t
════════════════════════
𐀪 Author: Crystal_cascade14
════════════════════════
Time: Wed, 14 Jan 2026 15:40:01 GMT
════════════════════════
Tags: #tryhackme #cybersecurity #ethical_hacking #wowenintech #tech_education
Title: Building a Secure, Enterprise-Grade API with AWS: A Deep Dive into API Gateway, Custom Domains, and…
════════════════════════
𐀪 Author: Sasmitha Dasanayaka
════════════════════════
Time: Wed, 14 Jan 2026 21:43:41 GMT
════════════════════════
Tags: #aws_cdk #aws_route53 #lambda_authorizer #api_security #aws_private_api_gateway
Title: What Will Matter for API Security 2026: The Patterns Behind 2025’s Breaches and the Risks Teams Are…
════════════════════════
𐀪 Author: Akansha Shukla
════════════════════════
Time: Wed, 14 Jan 2026 21:28:20 GMT
════════════════════════
Tags: #owasp_api_security_top_10 #secure_coding #api_development #api_security #secure_api
Title: Security Analysis and Hardening of a Python Web Application
════════════════════════
𐀪 Author: William Azaria Simanjuntak
════════════════════════
Time: Wed, 14 Jan 2026 23:31:50 GMT
════════════════════════
Tags: #application_security #web_development #programming #cybersecurity #python
Title: 30 Days of Red Team: Day 16 — Windows Privilege Escalation
════════════════════════
𐀪 Author: Maxwell Cross
════════════════════════
Time: Wed, 14 Jan 2026 22:32:04 GMT
════════════════════════
Tags: #ethical_hacking #hacking #infosec #windows #cybersecurity
Title: HTB Labs — Tier 1 — “Crocodile” Machine Walkthrough | By: CyberAlp0
════════════════════════
𐀪 Author: Mohamed Maher
════════════════════════
Time: Wed, 14 Jan 2026 23:21:09 GMT
════════════════════════
Tags: #crocodile #web_application_security #hackthebox_writeup #ftp_client #penetration_testing
Title: HPE Aruba Patches High-Severity DoS and Data Leak Flaws in Instant On Devices
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Thu, 15 Jan 2026 00:36:11 +0000
════════════════════════
Tags: #Vulnerability Report #Access Point Vulnerability #CVE_2025_37165 #CVE_2025_37166 #Denial of Service #firmware update #HPE Networking #Instant On #network_security #SMB Security
Title: Zoho Patches Critical “9.1” Flaw in ADSelfService Plus
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Thu, 15 Jan 2026 00:31:54 +0000
════════════════════════
Tags: #Vulnerability Report #Access Management #active directory #ADSelfService Plus #CVE_2025_11250 #CVSS 9.1 #Identity Security #ManageEngine #Patch Alert #SSO Security
Title: SHADOW#REACTOR Malware Builds Remcos RAT via Text Files
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Thu, 15 Jan 2026 00:27:15 +0000
════════════════════════
Tags: #Malware #Cyber Security #Fileless Malware #living_off_the_land #Malware Analysis #MSBuild #powershell #Remcos RAT #Securonix #SHADOW#REACTOR #Text_Based Payload
Title: One API Call to Hijack: Critical Cal.com Flaw (CVE-2026-23478, CVSS 10) Bypasses 2FA
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Thu, 15 Jan 2026 00:22:26 +0000
════════════════════════
Tags: #Vulnerability Report #Account Takeover #Authentication Bypass #Cal.com #CVE_2026_23478 #CVSS 10 #JWT Manipulation #NextAuth #Open Source Security #Patch Alert #Scheduling Software
Title: “Browser-in-the-Browser” Attack Escalates: Trellix Reports Surge in Sophisticated Facebook Phishing
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Thu, 15 Jan 2026 00:18:49 +0000
════════════════════════
Tags: #Cybercriminals #BitB #Browser In The Browser #Credential Harvesting #Cyber Security #Facebook Security #Netlify #phishing #social engineering #Trellix #Vercel
Title: High-Severity Flaws in HPE Aruba Networking Expose Mobility Controllers to Attack
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Thu, 15 Jan 2026 00:11:39 +0000
════════════════════════
Tags: #Vulnerability Report #AOS_10 #AOS_8 #Arbitrary File Deletion #Command Injection #CVE_2025_37168 #CVE_2025_37169 #Denial of Service #HPE Aruba Networking #network_security #Patch Alert