Daily Writeups
3.49K subscribers
2 photos
128K links
Daily Bug Bounty / Cybersecurity Writeups
Source Code : https://github.com/Spix0r/writeup-miner
Download Telegram
Title: The Invisible Hijack: How AI-Powered “DeepLoad” Malware Vanishes into Your Lock Screen
════════════════════════
𐀪 Author: ddos
════════════════════════
Time: Thu, 02 Apr 2026 07:43:00 +0000
════════════════════════
Tags: #Malware #AI cybersecurity #ClickFix #Credential Theft #DeepLoad #Fileless Attack #LockAppHost.exe #Malware 2026 #Powershell obfuscation #ReliaQuest #WMI Persistence
Title: The New CitrixBleed: Critical CVE-2026-3055 Under Active Attack to Hijack Admin Sessions
════════════════════════
𐀪 Author: ddos
════════════════════════
Time: Thu, 02 Apr 2026 07:37:15 +0000
════════════════════════
Tags: #Vulnerability #ADC #Citrix #CitrixBleed #CVE_2026_3055 #Cyber attack 2026 #Gateway #Infosec #NetScaler #SAML #Session Hijacking #vulnerability #WatchTowr
Title: Critical 9.2 Flaw in Gigabyte Control Center Grants Remote Access
════════════════════════
𐀪 Author: ddos
════════════════════════
Time: Thu, 02 Apr 2026 07:35:09 +0000
════════════════════════
Tags: #Vulnerability #CVE_2026_4415 #Cyber Security 2026 #Firmware Update #GCC #Gigabyte #Gigabyte Control Center #Hardware Security #Laptop Vulnerability #Motherboard Security #remote code execution
Title: The Kernel’s Ghost Hunter: Unmasking Stealth Rootkits with klint
════════════════════════
𐀪 Author: ddos
════════════════════════
Time: Wed, 01 Apr 2026 08:52:29 +0000
════════════════════════
Tags: #Open Source Tool #BPF Security #Cybersecurity 2026 #Infosec Tools #Kernel Integrity #klint #Linux Kernel #malware analysis #open source #Rootkit Detection #Syscall Hijacking #Threat Hunting
Title: Under Active Attack: Critical 9.1 CVSS FortiClient EMS Flaw Exploited in the Wild
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Sat, 04 Apr 2026 01:35:30 +0000
════════════════════════
Tags: #Vulnerability Report #CVE_2026_35616 #Enterprise Security #exploited in the wild #FortiClient EMS #Fortinet #Hotfix #Improper Access Control #infosec #rce #security patch #zero_day
Title: Apache Traffic Server Patches “Double-Header” DoS and Request Smuggling Flaws
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Fri, 03 Apr 2026 15:07:53 +0000
════════════════════════
Tags: #Vulnerability Report #Apache Software Foundation #Apache Traffic Server #ATS #Caching #CVE_2025_58136 #CVE_2025_65114 #Denial of Service #infosec #request smuggling #security update #Web Proxy
Title: Password Hijack in the Modern Stack: Payload CMS Patches Critical 9.1 CVSS Reset Flaw
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Fri, 03 Apr 2026 14:30:48 +0000
════════════════════════
Tags: #Vulnerability Report #Backend Security #CVE_2026_34751 #Headless CMS #infosec #Next.js #password reset #Patch Alert #Payload CMS #React #TypeScript #Vulnerability #Web Security
Title: CVE-2026-4370 (CVSS 10): Critical Juju Flaw Grants Attackers Total Infrastructure Control
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Fri, 03 Apr 2026 14:01:34 +0000
════════════════════════
Tags: #Vulnerability Report #Application Management #Canonical #Cloud Security #CVE_2026_4370 #CVSS 10.0 #Dqlite #infosec #Juju #Kubernetes #Orchestration #Patch Alert #tls
Title: Breaking the Input: Sandbox Escape Hits libinput, Exposing Leading Linux Desktops
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Fri, 03 Apr 2026 13:02:48 +0000
════════════════════════
Tags: #Vulnerability Report #CVE_2026_35093 #CVE_2026_35094 #Fedora #gnome #infosec #kde #KWin #libinput #Linux Security #Lua Vulnerability #Mutter #Patch Alert #Sandbox Escape
Title: The MuPDF Vulnerability Turning “Safe” PDFs into System Hijackers
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Fri, 03 Apr 2026 12:00:29 +0000
════════════════════════
Tags: #Vulnerability Report #Artifex #CVE_2026_3308 #heap overflow #infosec #integer overflow #Linux Security #Memory Management #MuPDF #PDF Security #rce #Vulnerability
Title: The EU’s AWS “Master Key”: How a Compromised Trivy Update Leaked 340GB of Data
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Fri, 03 Apr 2026 09:40:11 +0000
════════════════════════
Tags: #Data Leak #API Key Theft #aws security #CERT_EU #CI/CD security #data leak #EU Security #European Commission #infosec #ShinyHunters #supply chain attack #TeamPCP #Trivy
Title: The WordPress Killer? Cloudflare Unveils EmDash, the AI-Native CMS Built for the Serverless Epoch
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Fri, 03 Apr 2026 09:15:52 +0000
════════════════════════
Tags: #Technology #AI_native #Astro 6.0 #cloudflare #cms #Cybersecurity 2026 #EmDash #open_source #serverless #TypeScript #V8 Isolate #WordPress Alternative
Title: OpenSSH 10.3 Patches Command Execution and “scp” Privilege Escalation
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Fri, 03 Apr 2026 08:00:11 +0000
════════════════════════
Tags: #Vulnerability Report #Command Injection #CVE_2026_35385 #CVE_2026_35386 #infosec #Linux Security #OpenSSH #OpenSSH 10.3 #Patch Alert #privilege escalation #Remote Access #SCP #SSH security
Title: The Resurrection of the Beam: Google Challenges AirDrop with Android 17’s “Tap to Share”
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Fri, 03 Apr 2026 07:23:37 +0000
════════════════════════
Tags: #Android #AirDrop #Android 17 #Android 4.0 Beam #Google Play Services #NameDrop #NFC #Quick Share #Samsung One UI 9 #Smartphone Ecosystem #Tap to Share #Tech News 2026 #UWB
Title: Inside the Rapid Evolution of the BlankGrabber Stealer
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Fri, 03 Apr 2026 07:15:56 +0000
════════════════════════
Tags: #Malware #BlankGrabber #Browser Secrets #Certutil #Cyber Security #data exfiltration #Discord Security #github #info_stealer #Python Malware #Splunk Threat Research #Telegram C2
Title: The Apache 2.0 Revolution: Google’s Gemma 4 Shatters the Open-Source Intelligence Ceiling
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Fri, 03 Apr 2026 07:15:17 +0000
════════════════════════
Tags: #Technology #AI 2026 #Apache 2.0 #Edge AI #Gemini 3 Pro #Gemma 4 #google #Hugging Face #LLM #machine_learning #Mixture_of_Experts #open_source
Title: The Lobster Craze: How OpenClaw is Triggering a High-Stakes AI Agent Arms Race in China
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Fri, 03 Apr 2026 07:10:16 +0000
════════════════════════
Tags: #Technology #AI Agents #ByteDance #HyperOS #Lobster Husbandry #Mirror Site #OpenAI #OpenClaw #OPPO #Peter Steinberger #Sam Altman #soul.md #WeChat #Xiaomi
Title: Microsoft’s Declaration of Independence: The New MAI Models Challenging OpenAI and Google
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Fri, 03 Apr 2026 07:00:43 +0000
════════════════════════
Tags: #Technology #artificial intelligence #Cloud Computing #GPU Efficiency #MAI_Image_2 #MAI_Transcribe_1 #MAI_Voice_1 #Microsoft #Microsoft Foundry #Mustafa Suleyman #OpenAI #Tech News 2026
Title: Apple Severs All Payment Processing in Russia Following Government Mandates
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Fri, 03 Apr 2026 06:49:01 +0000
════════════════════════
Tags: #Technology #App Store #Apple #Digital Sovereignty #iCloud #in_app purchases #payments #russia #sanctions #Tech News 2026 #VPN Crackdown
Title: Critical 9.8 CVSS RCE Vulnerabilities Exposed in Progress ShareFile
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Fri, 03 Apr 2026 06:18:14 +0000
════════════════════════
Tags: #Vulnerability Report #CVE_2026_2699 #CVE_2026_2701 #File Transfer Security #infosec #Patch Alert #Progress ShareFile #rce #Remote Code Execution #Storage Zones Controller #Vulnerability #watchTowr