Daily Writeups
3.53K subscribers
2 photos
129K links
Daily Bug Bounty / Cybersecurity Writeups
Source Code : https://github.com/Spix0r/writeup-miner
Download Telegram
Title: The Proxifier Trap: The “Fileless” Marathon Stealing Your Crypto
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Tue, 14 Apr 2026 04:15:18 +0000
════════════════════════
Tags: #Malware #ClipBanker #Cryptocurrency Theft #Fileless Malware #GitHub Malware #infosec #kaspersky #powershell #Proxifier #SEO Poisoning #Trojan
Title: New Stealth Attack Chain Weaponizes Legitimate Remote Access Software
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Tue, 14 Apr 2026 09:21:28 +0000
════════════════════════
Tags: #Malware #.NET Reflection #Adobe Acrobat #cybersecurity #Fileless Malware #In_Memory Execution #infosec #ScreenConnect #UAC bypass #VBScript Loader #Zscaler ThreatLabz
Title: The Friend Request from Pyongyang: How APT37 Hijacks Facebook to Deploy RokRAT
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Wed, 15 Apr 2026 07:40:02 +0000
════════════════════════
Tags: #Cybercriminals #APT37 #Code Cave Injection #Facebook Phishing #Fileless Malware #Genians Security Center #North Korean APT #PE Patching #RokRAT #social engineering #Wondershare PDFelement #Zoho WorkDrive
Title: RondoDox Botnet Hijacks Everything from IoT to Fortnite
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Tue, 21 Apr 2026 02:01:00 +0000
════════════════════════
Tags: #Malware #anti_debugging #Bitsight #botnet #dos attack #Fileless Malware #infosec #IoT security #Malware Analysis #Monero mining #Nanomites #RondoDox #XMRig
Title: PureRAT Unmasked: The Stealthy, Multi-Stage “Dynamic Loader” Targeting Windows
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Thu, 23 Apr 2026 02:00:16 +0000
════════════════════════
Tags: #Malware #cybersecurity #Fileless Malware #infosec #Malware Analysis #Process Hollowing #PureRAT #rat #Remote Access Trojan #steganography #Trellix #UAC bypass
Title: Inside the Stealthy Evolution of Vidar Infostealer
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Tue, 28 Apr 2026 07:06:31 +0000
════════════════════════
Tags: #Malware #ClickFix #Crypto theft #cybersecurity #Fileless Malware #infosec #Infostealer #living_off_the_land #malware #social engineering #Telegram C2 #Vidar
Title: New Quasar Linux (QLNX) RAT Hijacks Cloud Keys and NPM Tokens
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Wed, 06 May 2026 08:11:06 +0000
════════════════════════
Tags: #Malware #AWS Credentials #DevOps Security #eBPF Rootkit #Fileless Malware #infosec #Linux RAT #npm Security #PyPI #QLNX #Quasar Linux #supply chain attack #Trend Micro
Title: The InstallFix Trap: Fake Claude AI Google Ads Drop Fileless RedLine Malware on Developers
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Fri, 08 May 2026 06:11:33 +0000
════════════════════════
Tags: #Malware #AMSI Bypass #Anthropic #Claude AI #ClickFix #cybersecurity #Fileless Malware #Google Ads Phishing #infosec #InstallFix #Redline stealer #Threat Intel
Title: Fileless Python Malware Uses Humanitarian Lures to Deploy Full-Spectrum Surveillance
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Mon, 11 May 2026 06:11:11 +0000
════════════════════════
Tags: #Malware #CRIL #Cyberespionage #Cyble #Fileless Malware #GitHub abuse #infosec #phishing #Pyarmor #Python Malware #social engineering #threat intelligence
Title: CountLoader Malware Weaponizes EtherHiding to Deploy Stealth Crypto Clippers
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Mon, 18 May 2026 09:15:54 +0000
════════════════════════
Tags: #Malware #AMSI Bypass #CountLoader #Crypto theft #Cryptocurrency Clipper #Cyber Security #EtherHiding #Fileless Malware #infosec #McAfee Labs #threat intelligence
Title: Under the PyInstaller Mask: Point Wild Exposes XWorm V7.4 Stealth Loader and AMSI Bypass
════════════════════════
𐀪 Author: ddos
════════════════════════
Time: Wed, 20 May 2026 07:49:06 +0000
════════════════════════
Tags: #Malware #.NET Reflection Plugins #AES Encrypted C2 Configuration #AMSI Bypass In_Memory Execution #Fileless Remote Administrative Trojan #Hidden System File Attributes #Point Wild Threat Intelligence #PyInstaller Loader Forensic #Runtime Windows API Resolving #Win.Kernel_Svc_AJ8iOw.exe #XWorm V7.4 Malware
Title: China-Linked Hackers Deploy “TencShell” Backdoor via Faux Web Font Files
════════════════════════
𐀪 Author: ddos
════════════════════════
Time: Wed, 20 May 2026 07:45:33 +0000
════════════════════════
Tags: #Malware #Cato CTRL Threat Research #Donut Shellcode In_Memory Execution #Fileless Position_Independent Code #Rshell Framework Customization #State_Sponsored Cyber Espionage #Tencent API Impersonation #TencShell Backdoor Malware #Third_Party Identity Compromise #Web Font Masquerading #Windows Registry Persistence
Title: Microsoft’s Retired IE Tool MSHTA Now Being Used in Fileless Malware Attacks
════════════════════════
𐀪 Author: Deeba Ahmed
════════════════════════
Time: Thu, 21 May 2026 10:18:11 +0000
════════════════════════
Tags: #Security #Malware #Microsoft #Cyber Attack #Cybersecurity #Fileless #LOLBIN #MSHTA #Vulnerability
Title: In-Memory Financial Theft: Inside Banana RAT’s Operator-Driven Attacks on Brazilian Banks
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Mon, 25 May 2026 06:47:33 +0000
════════════════════════
Tags: #Malware #Banana RAT #Banking Trojan #Cyber Security #Fileless Execution #In_Memory Exploit #infosec #Malware_as_a_Service #Pix_QR Interception #Powershell obfuscation #SHADOW_WATER_063 #TrendAI Counter Threat Unit
Title: Global Malicious AI Installer Campaign Targets Developer Workstations
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Wed, 27 May 2026 06:37:53 +0000
════════════════════════
Tags: #Cybercriminals #Claude Code #developer security #EclecticIQ #Fileless Malware #Gemini CLI #Infostealer Campaign #SEO Poisoning
Title: Advanced Lazarus Memory-Only Toolset Deeply Analyzed by Fox-IT
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Fri, 29 May 2026 06:33:06 +0000
════════════════════════
Tags: #Malware #DPAPILoader #Fileless Malware #Fox_IT #Lazarus Group #Memory_Only Malware #RemotePE #RemotePELoader #threat intelligence