Daily Writeups
3.93K subscribers
4 photos
135K links
Daily Bug Bounty / Cybersecurity Writeups
Source Code : https://github.com/Spix0r/writeup-miner
Download Telegram
⤷ Title: bWAPP: HTML Injection — Reflected (GET) Challenge (Low & Medium Security)
════════════════════════
𐀪 Author: Kamal S
════════════════════════
ⴵ Time: Sat, 09 May 2026 12:04:24 GMT
════════════════════════
⌗ Tags: #injection #owasp #html_injection #bwapp #bug_bounty
⤷ Title: HTML Should Have Embedded Markdown 30 Years Ago
════════════════════════
𐀪 Author: Outermostkt
════════════════════════
ⴵ Time: Sun, 17 May 2026 02:08:54 GMT
════════════════════════
⌗ Tags: #thariq #ai #xs #html #markdown
⤷ Title: The Sleeper Agent Bug: How One HTML Payload Lay Hidden for Months to Attack My Inbox ⏳
════════════════════════
𐀪 Author: LordofHeaven
════════════════════════
ⴵ Time: Tue, 19 May 2026 09:00:53 GMT
════════════════════════
⌗ Tags: #html_injection #web_security #infosec #coffinxp #bug_bounty
⤷ Title: Living Off the HTA Land: How Hackers Weaponize a 1999 Windows Utility for Silent Malware Delivery
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 21 May 2026 07:04:27 +0000
════════════════════════
⌗ Tags: #Malware #Amatera Info Harvester #ClickFix Social Engineering LummaStealer #ClipBanker Crypto Stealer #CountLoader Staging Framework #Emmenhtal Loader #HTML Application HTA Payload #Living off the Land Binaries #MSHTA Weaponization Malware Delivery #mshta.exe Windows Binary #PurpleFox Rootkit Lineage
⤷ Title: HTML Injection in Outbound Emails: An Overlooked Security Risk
════════════════════════
𐀪 Author: vibhuti bhatt
════════════════════════
ⴵ Time: Fri, 05 Jun 2026 12:26:37 GMT
════════════════════════
⌗ Tags: #html_injection #vulnerability #application_security #pentesting #injection_in_email
⤷ Title: Telegram Bots Receive Rich HTML and Markdown Formatting Options
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Tue, 16 Jun 2026 08:44:45 +0000
════════════════════════
⌗ Tags: #Technology #bot development #HTML formatting #Markdown #Rich Text #Telegram Bots
⤷ Title: I Turned a “What’s Your Name?” Field Into a Malicious Link — My First HTML Injection
════════════════════════
𐀪 Author: Prashant Raj
════════════════════════
ⴵ Time: Wed, 17 Jun 2026 10:46:00 GMT
════════════════════════
⌗ Tags: #bug_bounty #cybersecurity #bug_hunting #html_injection #technology
⤷ Title: I Found a Bug That Looks Harmless But Can Still Get You Paid
════════════════════════
𐀪 Author: Yamini Yadav_369
════════════════════════
ⴵ Time: Thu, 18 Jun 2026 00:03:53 GMT
════════════════════════
⌗ Tags: #cybersecurity #ethical_hacking #html #medium #bug_bounty
⤷ Title: bWAPP HTML Injection — Reflected (URL) and Stored (Blog)
════════════════════════
𐀪 Author: Kamal S
════════════════════════
ⴵ Time: Sun, 21 Jun 2026 14:03:38 GMT
════════════════════════
⌗ Tags: #injection #html_injection #owasp #bug_bounty #bwapp
⤷ Title: CSRF: When Your Browser Snitches Behind Your Back
════════════════════════
𐀪 Author: Ziyad
════════════════════════
ⴵ Time: Tue, 23 Jun 2026 01:34:55 GMT
════════════════════════
⌗ Tags: #web_development #html #csrf #cybersecurity #penetration_testing
⤷ Title: From a “Self-XSS” to a Convincing UI Spoof: A Bug Bounty Story That Ended as a Duplicate.
════════════════════════
𐀪 Author: kjulius
════════════════════════
ⴵ Time: Fri, 26 Jun 2026 19:47:30 GMT
════════════════════════
⌗ Tags: #phishing #html #reflected_xss #self_xss #bug_bounty
⤷ Title: GitLab Patch Release Fixes Eight Flaws, Including a High-Severity XSS Bug (CVE-2026-6896)
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Thu, 09 Jul 2026 02:15:16 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Cross_Site Scripting #CVE_2026_13320 #CVE_2026_6896 #DevSecOps #GitLab EE #GitLab patch release #HTML Injection
⤷ Title: How I Turned an “Informative” HTML Injection into My First Paid Bounty
════════════════════════
𐀪 Author: Muhammadmaftuhk
════════════════════════
ⴵ Time: Mon, 27 Jul 2026 23:57:41 GMT
════════════════════════
⌗ Tags: #web_security #html_injection #bug_bounty #bug_bounty_writeup #cybersecurity
⤷ Title: DCRat Campaign Uses SVG HTML Smuggling to Deliver DarkCrystal RAT
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Tue, 18 Aug 2026 01:01:09 +0000
════════════════════════
⌗ Tags: #Malware #DarkCrystal RAT #DCRat #DLL Sideloading #Html Smuggling #phishing #Process Hollowing #Trellix