Daily Writeups
3.55K subscribers
2 photos
130K links
Daily Bug Bounty / Cybersecurity Writeups
Source Code : https://github.com/Spix0r/writeup-miner
Download Telegram
Title: TakeOver Room on TryHackMe Review
════════════════════════
𐀪 Author: Jarred Stoll
════════════════════════
Time: Thu, 28 May 2026 03:29:10 GMT
════════════════════════
Tags: #tryhackme #tryhackme_writeup #hacking
Title: Understanding Network Attacks Through the OSI Model — Part 2: Visualizing Attack Kill Chain &…
════════════════════════
𐀪 Author: LeiFeng
════════════════════════
Time: Wed, 27 May 2026 07:58:13 GMT
════════════════════════
Tags: #network_security #infosec #osi_model #cybersecurity
Title: ReportVerse (Medium) — SSRF via PDF Renderer | Webverse Labs Writeup
════════════════════════
𐀪 Author: Razzle Mouse
════════════════════════
Time: Thu, 28 May 2026 03:30:32 GMT
════════════════════════
Tags: #ssrf
Title: The One GraphQL Query That Finds IDORs in Seconds (And Why Most Hunters Skip It)
════════════════════════
𐀪 Author: Decline
════════════════════════
Time: Thu, 28 May 2026 04:58:44 GMT
════════════════════════
Tags: #bug_hunting #bug_bounty_writeup #bug_bounty_tips #bugbounty_writeup #bug_bounty
Title: New CypherLoc Scareware Kit Implements Sophisticated Browser Locks
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Thu, 28 May 2026 06:04:05 +0000
════════════════════════
Tags: #Cybercriminals #Barracuda Research #Browser Lock #CypherLoc #infosec #Phishing Campaign #Scareware #Tech Support Scam
Title: Emerging Deprecation Protocols Within the Codex Model Ecosystem
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Thu, 28 May 2026 04:38:05 +0000
════════════════════════
Tags: #Technology #AI code generation regressions #API enterprise model lifecycle #ChatGPT premium model configurations #custom engineering development pipelines #free tier GPT_5.5 default #GPT_5.3_Codex retired ChatGPT #GPT_5.5 model degradation latency #OpenAI Codex Spark architecture #OpenAI June 2 deprecation #OpenAI legacy model deprecation
Title: Critical FortiClient EMS Exploitation Campaign Spreads New EKZ Infostealer Payload
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Thu, 28 May 2026 04:25:31 +0000
════════════════════════
Tags: #Vulnerability Report #Arctic Wolf #credential stealer #CVE_2026_35616 #EKZ Infostealer #endpoint security #FortiClient EMS #PowerShell Malware
Title: Telemetry Interception: The Unauthorized Routing of Motorola’s Amazon Gateway
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Thu, 28 May 2026 03:32:30 +0000
════════════════════════
Tags: #Technology #Allison Yi product management statement #Amazon affiliate code injection #Android launcher app hijacking #Device Native mobile ad monetization #disable Motorola Smart Feed #kira_abboud.com tracking domain #mobile bloatware browser detour #Motorola Razr 60 Ultra app drawer bug #Motorola Smart Feed redirect
Title: Windows DNS Client RCE: 9.8 CVSS & Public PoC Disclosed
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Thu, 28 May 2026 03:17:51 +0000
════════════════════════
Tags: #Vulnerability #CVSS 9.8 #heap overflow #Public PoC Exploit #Remote Code Execution #Windows DNS Client
Title: IBM Patches Critical Authentication Bypass in Engineering Platform
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Thu, 28 May 2026 03:03:03 +0000
════════════════════════
Tags: #Vulnerability Report #Authentication Bypass #CVE_2026_3660 #IBM #IBM ELM #Jazz Foundation #Security Bulletin #Software Patch
Title: I Found a Critical Vulnerability — They Paid Me $15,500
════════════════════════
𐀪 Author: cyber security
════════════════════════
Time: Thu, 28 May 2026 05:56:13 GMT
════════════════════════
Tags: #ethical_hacking #infosec #technology #cybersecurity #bug_bounty
Title: Domain Compromise & Dual RMM Abuse
════════════════════════
𐀪 Author: Shahzeb M
════════════════════════
Time: Thu, 28 May 2026 05:32:45 GMT
════════════════════════
Tags: #cybersecurity #hacking #threat_hunting #blue_team #incident_response
Title: Intercepting Network Traffic Through ARP Spoofing
════════════════════════
𐀪 Author: Aastha Thakker
════════════════════════
Time: Thu, 28 May 2026 06:16:00 GMT
════════════════════════
Tags: #cybersecurity #networking #ethical_hacking #arp_spoofing #infosec
Title: Common Services Basic Recognition
════════════════════════
𐀪 Author: 4zer7y
════════════════════════
Time: Thu, 28 May 2026 06:38:15 GMT
════════════════════════
Tags: #cybersecurity #penetration_testing #pentesting
Title: API Security in 2026: The Complete Developer Guide (Attacks, Fixes, and Real Code)
════════════════════════
𐀪 Author: Tarxemo
════════════════════════
Time: Thu, 28 May 2026 06:06:37 GMT
════════════════════════
Tags: #api_security #django #backend_development #nodejs #web_security
Title: JINX-0164 Targets Cryptocurrency Firms with Fake Recruiter Lures and macOS Malware
════════════════════════
𐀪 Author: Unknown
════════════════════════
Time: Thu, 28 May 2026 13:24:48 +0530
════════════════════════
Tags: No_Tags
Title: The CodexUI Android Anomalous Supply-Chain Inversion: A Paradox of Developer Malevolence
════════════════════════
𐀪 Author: ddos
════════════════════════
Time: Thu, 28 May 2026 08:50:08 +0000
════════════════════════
Tags: #Malware #AnyClaw token harvesting #BrutalStrike developer repository poisoning #chunk_PUR70UAG.js backdoor #CodexUI Android token stealing #codexui_android npm package malware #OpenAI Codex key theft #OpenClaw Codex Claude AI Agent app #sentry.anyclaw.store exfiltration #software supply chain security #supply chain attack npm 2026
Title: The Escalating Rift Over Zero-Day Disclosures: Microsoft Condemns Uncoordinated Vulnerability Release
════════════════════════
𐀪 Author: ddos
════════════════════════
Time: Thu, 28 May 2026 08:47:14 +0000
════════════════════════
Tags: #Microsoft #Vulnerability #GitHub profile ban retaliation #GreenPlasma privilege escalation tool #Microsoft Threat Intelligence defense response #Nightmare Eclipse security researcher #physical full disk encryption attack #pre_boot authentication TPM PIN mitigation #uncoordinated vulnerability disclosure dispute #Windows Recovery Environment bypass #WinRE FsTx folder vulnerability #YellowKey BitLocker zero_day exploit
Title: North Korea-Aligned Void Dokkaebi Evolves with Binary Obfuscation
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Thu, 28 May 2026 08:36:07 +0000
════════════════════════
Tags: #Malware #BeaverTail #Cryptocurrency Theft #Cython Malware #developer security #Famous Chollima #InvisibleFerret #Void Dokkaebi
Title: CIFSwitch Local Root Exploit: Public Details and PoC Disclosed
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Thu, 28 May 2026 08:01:55 +0000
════════════════════════
Tags: #Linux #Vulnerability Report #Asim Manizada #cifs_utils #CIFSwitch #Linux Kernel #Local Privilege Escalation #Public PoC #vulnerability disclosure
Title: New Showboat Linux Malware Targets Global Telecommunications
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Thu, 28 May 2026 07:10:39 +0000
════════════════════════
Tags: #Malware #Black Lotus Labs #Linux post_exploitation #PRC Threat Actors #Showboat malware #Telecommunications cyberattack #threat intelligence