Daily Writeups
3.53K subscribers
2 photos
130K links
Daily Bug Bounty / Cybersecurity Writeups
Source Code : https://github.com/Spix0r/writeup-miner
Download Telegram
Title: Understanding Web Application Logs for Security Investigation
════════════════════════
𐀪 Author: CipherX9F Security
════════════════════════
Time: Tue, 10 Mar 2026 19:02:55 GMT
════════════════════════
Tags: #vapt #web_security #cipherx9f_security #penetration_testing #web_penetration_testing
Title: Tryhackme AD: Basic Enumeration Write-Up
════════════════════════
𐀪 Author: Harmonax
════════════════════════
Time: Tue, 10 Mar 2026 20:52:56 GMT
════════════════════════
Tags: #active_directory #red_team #microsoft #pentesting #tryhackme
Title: Cal AI, New Owner of MyFitnessPal, Hit by Alleged Breach of 3 Million Users
════════════════════════
𐀪 Author: Waqas
════════════════════════
Time: Tue, 10 Mar 2026 21:58:59 +0000
════════════════════════
Tags: #Data Breaches #AI #BreachForums #Cal AI #Cyber Attack #Cybersecurity #data breach #Fitness #MyFitnessPal #Vibecodelegend
Title: Lab: Reflected XSS into HTML context with most tags and attributes blocked
════════════════════════
𐀪 Author: mayhack
════════════════════════
Time: Tue, 10 Mar 2026 22:23:24 GMT
════════════════════════
Tags: #ctf #cybersecurity #xss_attack #hacking #bug_bounty
Title: The Global Advanced Persistent Threat (APT) Landscape: Strategic Evolution, Taxonomic Mapping, and…
════════════════════════
𐀪 Author: Mr_MalMan
════════════════════════
Time: Tue, 10 Mar 2026 22:41:50 GMT
════════════════════════
Tags: #cybersecurity #hacking #war #apt #malware
Title: Layered Polymorphic String Encryption
════════════════════════
𐀪 Author: S12 - 0x12Dark Development
════════════════════════
Time: Tue, 10 Mar 2026 21:32:31 GMT
════════════════════════
Tags: #hacking #pentesting #malware #red_team #cybersecurity
Title: From Zero to Domain Admin: Compromising Active Directory in Attacktive Directory (TryHackMe)
════════════════════════
𐀪 Author: razzee
════════════════════════
Time: Tue, 10 Mar 2026 22:38:18 GMT
════════════════════════
Tags: #penetration_testing #tryhackme #ethical_hacking #active_directory #cybersecurity
Title: HTB Arctic: Remote Command Execution to JuicyPotato Privesc
════════════════════════
𐀪 Author: Onurcan Genç
════════════════════════
Time: Tue, 10 Mar 2026 22:31:06 GMT
════════════════════════
Tags: #privilege_escalation #cybersecurity #penetration_testing #hackthebox #capture_the_flag
Title: Advanced XPath Injection Guide (Authentication Bypass → Data Exfiltration → Blind Extraction)
════════════════════════
𐀪 Author: Raman Gautam | rghx
════════════════════════
Time: Tue, 10 Mar 2026 22:20:05 GMT
════════════════════════
Tags: #web_development #xpath #cybersecurity #security #penetration_testing
Title: I Switched Sides: What It’s Like Investigating an Attack Instead of Running One
════════════════════════
𐀪 Author: Robert Perez
════════════════════════
Time: Tue, 10 Mar 2026 22:16:36 GMT
════════════════════════
Tags: #cybersecurity #ethical_hacking #penetration_testing #blue_team #splunk
Title: Abusing AD-DACL: GenericWrite
════════════════════════
𐀪 Author: Youssef Said Thabet
════════════════════════
Time: Tue, 10 Mar 2026 21:14:15 GMT
════════════════════════
Tags: #active_directory_attack #active_directory #dacl #penetration_testing
Title: TryHackMe Writeup: Active Directory Basic Enumeration (Jr-Pentester AD v01)
════════════════════════
𐀪 Author: Nazwass
════════════════════════
Time: Tue, 10 Mar 2026 21:52:37 GMT
════════════════════════
Tags: #tryhackme #enumeration #tryhackme_writeup #cybersecurity #tryhackme_walkthrough
Title: Lab: SQL injection UNION attack, retrieving data from other tables
════════════════════════
𐀪 Author: Songül Kızılay Özügürler
════════════════════════
Time: Tue, 10 Mar 2026 22:59:12 GMT
════════════════════════
Tags: #web_security #bug_bounty #sql_injection #ethical_hacking #cybersecurity
Title: Maximum 10.0 CVSS Flaws in OneUptime Allow Full Account Takeovers and RCE
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Wed, 11 Mar 2026 00:41:20 +0000
════════════════════════
Tags: #Vulnerability Report #Authorization Bypass #CVE_2026_30956 #CVE_2026_30957 #cybersecurity #infosec #OneUptime #Playwright #rce #Remote Code Execution #Tenant Isolation
Title: Malicious npm Package “pino-sdk-v2” Caught Harvesting Secrets
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Wed, 11 Mar 2026 00:37:11 +0000
════════════════════════
Tags: #Malware #cybersecurity #DevSecOps #Discord Webhook Exfiltration #infosec #Malware Analysis #Node.js Security #npm Supply Chain Attack #pino_sdk_v2 #SafeDep #Typosquatting
Title: APT-C-23 Weaponized Israel’s ‘Red Alert’ App for Mobile Espionage
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Wed, 11 Mar 2026 00:33:58 +0000
════════════════════════
Tags: #Cybercriminals #Acronis TRU #Android Malware #APT_C_23 #Arid Viper #cybersecurity #infosec #Mobile Espionage #Red Alert Trojan #threat intelligence #Trojanized App
Title: Microsoft Exposes How Hackers Use Generative Models as a Force Multiplier
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Wed, 11 Mar 2026 00:26:18 +0000
════════════════════════
Tags: #Cybercriminals #AI Memory Poisoning #Cyber Security #Generative AI #infosec #Malicious AI #Microsoft Threat Intelligence #North Korean APT #Prompt injection #social engineering #threat intelligence
Title: The Vibe-Coding Trap: Fake Claude Code Installers Unleash Amatera Malware via Search Ads
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Wed, 11 Mar 2026 00:21:33 +0000
════════════════════════
Tags: #Malware #Amatera Malware #Claude Code #CLI Security #cybersecurity #DevSecOps #info_stealer #infosec #InstallFix #Malvertising #threat intelligence
Title: Zscaler Uncovers 8,000+ Domains and APT Backdoors Exploiting Middle East Tensions
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Wed, 11 Mar 2026 00:18:32 +0000
════════════════════════
Tags: #Cybercriminals #cybersecurity #Geopolitical Threats #infosec #LOTUSLITE Backdoor #Middle East Cyber Threats #Mustang Panda #phishing scams #StealC malware #threat intelligence #Zscaler ThreatLabz
Title: North Korean APT Unleashes DEV#POPPER RAT via GitHub to Drain Crypto Wallets
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Wed, 11 Mar 2026 00:12:27 +0000
════════════════════════
Tags: #Malware #Cryptocurrency Theft #cybersecurity #DEV#POPPER #eSentire TRU #GitHub Malware #infosec #North Korean APT #OmniStealer #Remote Access Trojan #supply chain attack
Title: CL-UNK-1068: The Stealthy Chinese Threat Actor Haunting Asian Infrastructure
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Wed, 11 Mar 2026 00:08:39 +0000
════════════════════════
Tags: #Cybercriminals #Chinese APT #CL_UNK_1068 #cyber_espionage #cybersecurity #data exfiltration #GodZilla Web Shell #infosec #LOLBins #threat intelligence #Unit 42