Daily Writeups
3.51K subscribers
2 photos
129K links
Daily Bug Bounty / Cybersecurity Writeups
Source Code : https://github.com/Spix0r/writeup-miner
Download Telegram
Title: SSRF via Content-Type in Apache — Auditor | FahemSec
════════════════════════
𐀪 Author: Abdelrahman Radwan
════════════════════════
Time: Wed, 28 Jan 2026 17:28:34 GMT
════════════════════════
Tags: #ssrf #crlf_injection #apache
Title: Portswigger : SSRF Exploitation
════════════════════════
𐀪 Author: Sandeep Singh Sisodiya
════════════════════════
Time: Fri, 23 Jan 2026 20:58:19 GMT
════════════════════════
Tags: #websecurity_testing #portswigger #cybersecurity #ssrf
Title: 10-Year-Old Code Commit Just Gave Attackers Root on Thousands of Linux Boxes — CVE-2026–24061
════════════════════════
𐀪 Author: Lakshan Sameera
════════════════════════
Time: Fri, 30 Jan 2026 17:31:26 GMT
════════════════════════
Tags: #proof_of_concept #rce #telnet #cve202624061 #analysis
Title: Smart Home (BUET CTF 2026 Preliminary) — Pre-Auth RCE via eval in a JSON-RPC “command” API |…
════════════════════════
𐀪 Author: Sakibul Ali Khan
════════════════════════
Time: Sat, 24 Jan 2026 19:34:56 GMT
════════════════════════
Tags: #cve_2025_68271 #buet_ctf_2026_preliminary #json_rpc_api #openc3_cosmos #rce
Title: [Templates]  —  Exploiting PugJS Server-Side Template Injection to Remote Shell Access
════════════════════════
𐀪 Author: Bash Overflow
════════════════════════
Time: Fri, 23 Jan 2026 10:08:11 GMT
════════════════════════
Tags: #bug_bounty #rce #pugjs_ssti #pug_template_injection #ssti
Title: 1. What Is Escaping?
════════════════════════
𐀪 Author: Reda Ouzidane
════════════════════════
Time: Fri, 30 Jan 2026 13:03:07 GMT
════════════════════════
Tags: #xss_bypass #xss_vulnerability #xss_attack #reflected_xss #stored_xss
Title: Vulnerabilidad XSS
════════════════════════
𐀪 Author: M4rc0sX
════════════════════════
Time: Tue, 27 Jan 2026 19:18:55 GMT
════════════════════════
Tags: #stored_xss #xss_vulnerability #reflected_xss #xss_bypass #xss_attack
Title: Lab: URL normalisation |Portswigger
════════════════════════
𐀪 Author: L4V4NY4 AGR3
════════════════════════
Time: Tue, 27 Jan 2026 07:28:44 GMT
════════════════════════
Tags: #xss_vulnerability #portswigger #malicious_url #caches_normalization #url_normalisation
Title: Cross-Site Scripting (XSS): From Basics to Battle-Tested Defense
════════════════════════
𐀪 Author: Prateek Kumar
════════════════════════
Time: Mon, 26 Jan 2026 17:15:20 GMT
════════════════════════
Tags: #xss_vulnerability #sanitation #xss_attack #real_world_example #secure_coding
Title: XSS — Merry XSSMas
════════════════════════
𐀪 Author: ezemba fortune
════════════════════════
Time: Sat, 24 Jan 2026 12:37:50 GMT
════════════════════════
Tags: #xss_vulnerability
Title: MyExpense: 1 Lab WalkThrough
════════════════════════
𐀪 Author: Ankush Prasad Sah
════════════════════════
Time: Wed, 21 Jan 2026 13:32:48 GMT
════════════════════════
Tags: #red_teaming #cybersecurity #sql #expenses #xss_vulnerability
Title: How I Discovered the RXSS and Bypassed the WAF
════════════════════════
𐀪 Author: Hink_1250
════════════════════════
Time: Wed, 21 Jan 2026 12:56:03 GMT
════════════════════════
Tags: #xss_vulnerability #bypass #reflected_xss #xss_attack #xss_bypass
Title: DOM-Based Open Redirection
════════════════════════
𐀪 Author: Bash Overflow
════════════════════════
Time: Tue, 20 Jan 2026 09:28:37 GMT
════════════════════════
Tags: #bug_bounty_tips #dom_xss #bug_bounty #open_redirect #xss_vulnerability
Title: How I hacked NASA with an RCE!!!
════════════════════════
𐀪 Author: Rubayet Hasan aka MR_Prey3r
════════════════════════
Time: Sun, 25 Jan 2026 17:24:01 GMT
════════════════════════
Tags: #bug_bounty_tips #rce_vulnerability #bug_bounty_writeup #bug_bounty #penetration_testing
Title: FG-IR-25–084 (CVE-2025–25249) Teknik Analiz: cw_acd Heap Overflow ve RCE Tehdidi
════════════════════════
𐀪 Author: gökay.
════════════════════════
Time: Tue, 20 Jan 2026 07:50:34 GMT
════════════════════════
Tags: #fortinet #fortigate #heap_overflow #cve #rce_vulnerability
Title: SQL INTERSECT and EXCEPT Explained
════════════════════════
𐀪 Author: Quipoin
════════════════════════
Time: Sat, 31 Jan 2026 05:05:08 GMT
════════════════════════
Tags: #sqlite #sqlalchemy #sql_injection #sql #sql_server
Title: Blind SQL Injection Attacks
════════════════════════
𐀪 Author: Amrsmooke
════════════════════════
Time: Fri, 30 Jan 2026 12:37:20 GMT
════════════════════════
Tags: #sql_injection #hacking #cybersecurity #penetration_testing #bug_bounty
Title: Challenge Lab: SQL Basics (Basics)
════════════════════════
𐀪 Author: Jadem Yasser
════════════════════════
Time: Thu, 29 Jan 2026 04:59:25 GMT
════════════════════════
Tags: #hack_smarter #sql #sql_injection #sql_server #database
Title: SQL Injection (SQLI)
════════════════════════
𐀪 Author: M4rc0sX
════════════════════════
Time: Wed, 28 Jan 2026 19:51:09 GMT
════════════════════════
Tags: #sql_injection_attack #blind_sql_injection #sql_injection
Title: PortSwigger SQL Injection Labs — Part 1
════════════════════════
𐀪 Author: Emirkilicer
════════════════════════
Time: Wed, 28 Jan 2026 15:49:44 GMT
════════════════════════
Tags: #sql_injection #web_security #application_security #cybersecurity #penetration_testing
Title: Technical Bug Bounty Methodology: Deep Recon, Automation and Human Insight
════════════════════════
𐀪 Author: NullSecurityX
════════════════════════
Time: Thu, 29 Jan 2026 17:47:00 GMT
════════════════════════
Tags: #bug_bounty_writeup #cybersecurity #bug_bounty #bug_bounty_tips #bug_bounty_methodology