Daily Writeups
3.56K subscribers
2 photos
130K links
Daily Bug Bounty / Cybersecurity Writeups
Source Code : https://github.com/Spix0r/writeup-miner
Download Telegram
Title: Millions at Risk: Apache HTTP Server Fixes Critical Remote Code Execution Flaw
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Tue, 05 May 2026 02:11:02 +0000
════════════════════════
Tags: #Vulnerability Report #Apache HTTP Server #CVE_2026_23918 #double_free #HTTP/2 #infosec #mod_auth_digest #Patch Alert #rce #Remote Code Execution #SysAdmin #Web Security
Title: Emergency Patch: Critical RCE Vulnerability in Apache HTTP Server 2.4.67 Threatens Millions of Systems
════════════════════════
𐀪 Author: ddos
════════════════════════
Time: Wed, 06 May 2026 07:31:31 +0000
════════════════════════
Tags: #Vulnerability #Apache HTTP Server #CVE_2026_23918 #CVE_2026_24072 #Cybersecurity 2026 #HTTP/2 #mod_rewrite #Patch Management #privilege escalation #RCE #remote code execution #Server Security
Title: How a Single ;/ Bypassed a Cloud WAF and Reached Protected Spring Boot Endpoints
════════════════════════
𐀪 Author: Alareqi
════════════════════════
Time: Sun, 10 May 2026 10:17:55 GMT
════════════════════════
Tags: #bug_bounty #cybersecurity #url #http_request #prompt_injection_attack
Title: Bir HTTP İsteği Gerçekten Nerede Biter?
════════════════════════
𐀪 Author: Zeki Kayaalp
════════════════════════
Time: Wed, 13 May 2026 20:24:38 GMT
════════════════════════
Tags: #cybersecurity #web_security #http_request #bug_bounty #http_request_smuggling
Title: Nginx Releases Critical Update: Six Vulnerabilities Patched in New Stable Version
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Thu, 14 May 2026 10:13:51 +0000
════════════════════════
Tags: #Vulnerability Report #CVE_2026_42945 #Cyber Security #heap overflow #HTTP/3 #infosec #memory corruption #nginx #NGINX 1.30.1 #Patch Alert #QUIC #rce #Web Server Security
Title: AppSecMaster Beginner Track — Challenge 1: HTTP Methods-1 Walkthrough
════════════════════════
𐀪 Author: 0xKishore
════════════════════════
Time: Wed, 27 May 2026 11:51:31 GMT
════════════════════════
Tags: #info_sec_writeups #penetration_testing #http_request #appsecmaster #cybersecurity
Title: HTTP/2 Bomb Exploit Details and PoC Publicly Disclosed
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Wed, 03 Jun 2026 04:05:31 +0000
════════════════════════
Tags: #Vulnerability Report #CVE_2026_49975 #Denial of Service #HPACK Vulnerability #HTTP/2 Bomb #Public Exploit Code #Web Server Security
Title: The HTTP/2 Bomb: Sophisticated Denial-of-Service Exploitation Threatens Core Web Servers
════════════════════════
𐀪 Author: ddos
════════════════════════
Time: Thu, 04 Jun 2026 03:58:07 +0000
════════════════════════
Tags: #Vulnerability #Calif threat intelligence #CVE_2026_49975 DoS attack #HPACK compression bomb #HTTP/2 Bomb exploit #OpenAI Codex server vulnerability #Slowloris memory exhaustion
Title: What TryHackMe Vulnversity Taught Me About HTTP Enumeration, File Upload RCE, and Linux Privilege…
════════════════════════
𐀪 Author: Shivam Sharma
════════════════════════
Time: Fri, 05 Jun 2026 05:31:00 GMT
════════════════════════
Tags: #web_enumeration #pentesting #http_enumeration #tryhackme #linux_priv_esc
Title: Massive Remediation: Microsoft Resolves Historic Influx of Flaws in June 2026 Patch Tuesday
════════════════════════
𐀪 Author: ddos
════════════════════════
Time: Wed, 10 Jun 2026 03:33:22 +0000
════════════════════════
Tags: #Vulnerability #Windows #BitLocker bypass fix #critical RCE bugs #GreenPlasma vulnerability #HTTP/2 Bomb exploit #Patch Tuesday flaws #Windows June 2026 updates
Title: PeopleSoft RCE Security Bug: New Oracle Fix
════════════════════════
𐀪 Author: Do Son
════════════════════════
Time: Thu, 11 Jun 2026 04:40:22 +0000
════════════════════════
Tags: #Vulnerability Report #CVE_2026_35273 #HTTP Exploit #Oracle Patch #patch management #PeopleSoft Enterprise #Remote Code Execution #Unauthenticated Attack
Title: A Single Swapped HTTP Host Header Can Quietly Hijack an Entire Account
════════════════════════
𐀪 Author: Sambhab Sahoo
════════════════════════
Time: Fri, 12 Jun 2026 02:35:37 GMT
════════════════════════
Tags: #ethical_hacking #infosec #cybersecurity #http_request #burpsuite
Title: F5 Patches Two Critical NGINX Flaws in HTTP/3 and HTTP/2 Modules (CVE-2026-42530, CVE-2026-42055)
════════════════════════
𐀪 Author: Do Son
════════════════════════
Time: Fri, 19 Jun 2026 02:23:02 +0000
════════════════════════
Tags: #Vulnerability Report #buffer overflow #CVE_2026_42055 #CVE_2026_42530 #F5 #HTTP/3 #nginx #NGINX vulnerabilities #use after free
Title: HTTP Request Smuggling vs HTTP Request Pipelining: Why They’re Often Confused
════════════════════════
𐀪 Author: Amit Pal | amitpxl
════════════════════════
Time: Fri, 19 Jun 2026 13:51:09 GMT
════════════════════════
Tags: #cybersecurity #web_security #http_request_smuggling #application_security #web_application_security
Title: Quick overview of RFC 10008: The HTTP QUERY Method
════════════════════════
𐀪 Author: Sanjeev Jaiswal (Jassi)
════════════════════════
Time: Fri, 03 Jul 2026 09:35:19 GMT
════════════════════════
Tags: #api_security #rfc_10008 #application_security #web_development #http_methods
Title: HTTP QUERY Method Explained:
════════════════════════
𐀪 Author: Simran Madhok
════════════════════════
Time: Sat, 04 Jul 2026 16:28:50 GMT
════════════════════════
Tags: #http_query #api_development #rest_api #api_security #web_development
Title: HTTP QUERY Method: A New Era for API Query Operations
════════════════════════
𐀪 Author: Shubham Girme
════════════════════════
Time: Wed, 15 Jul 2026 11:03:40 GMT
════════════════════════
Tags: #http_query_method #http_methods #query_vs_get_vs_post #api_security #https
Title: HTTP Request Smuggling: Turning Two Servers Against Each Other on a Single TCP Connection
════════════════════════
𐀪 Author: Furkanalpgunay
════════════════════════
Time: Sat, 18 Jul 2026 11:22:27 GMT
════════════════════════
Tags: #bug_bounty #http_request_smuggling #cybersecurity #penetration_testing #web_security
Title: HTTP/2 DoS Vulnerability Lets Attackers Exhaust Server Memory via Stalled Flow Control
════════════════════════
𐀪 Author: Do Son
════════════════════════
Time: Thu, 23 Jul 2026 15:00:18 +0000
════════════════════════
Tags: #Vulnerability Report #Apache Traffic Server #CVE_2026_44909 #CVE_2026_59173 #CVE_2026_59762 #Denial of Service #HTTP/2 DoS vulnerability #memory exhaustion #stalled flow control
Title: Node.js Patches 11 Vulnerabilities in July 2026 Security Release
════════════════════════
𐀪 Author: Do Son
════════════════════════
Time: Wed, 29 Jul 2026 15:29:29 +0000
════════════════════════
Tags: #Vulnerability Report #CVE_2026_56846 #CVE_2026_56848 #CVE_2026_58043 #HTTP/2 #Node.js Security #nodejs #use after free