Daily Writeups
3.53K subscribers
2 photos
130K links
Daily Bug Bounty / Cybersecurity Writeups
Source Code : https://github.com/Spix0r/writeup-miner
Download Telegram
Title: CVE-2026-40884: Critical 9.8 Bypass Hits goshs SFTP Servers
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Thu, 16 Apr 2026 12:06:01 +0000
════════════════════════
Tags: #Vulnerability Report #Authentication Bypass #CVE_2026_40884 #CVSS 9.8 #cybersecurity #Go Security #goshs #infosec #pentesting tools #SFTP #SimpleHTTPServer
Title: Unpatch Ollama Flaw: Malicious Model Uploads Can Leak Server Heap Memory
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Thu, 23 Apr 2026 13:05:24 +0000
════════════════════════
Tags: #Vulnerability Report #AI security #CVE_2026_5757 #GGUF #Go Security #Heap Leak #Information Disclosure #infosec #LLM Security #Ollama #Quantization Engine #zero_day
Title: Apache Thrift Issues Massive Patch for Critical Cross-Language Flaws
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Tue, 28 Apr 2026 12:03:00 +0000
════════════════════════
Tags: #Vulnerability Report #Apache Thrift #C++ #CVE_2026_41603 #cybersecurity #go #infosec #java #memory corruption #mitm #Node.js #RPC Security #swift
Title: Minirat’s Stealth Supply Chain Attack Targets macOS Developers
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Fri, 01 May 2026 01:59:57 +0000
════════════════════════
Tags: #Malware #@velora_dex/sdk #2026 #cybersecurity #developer security #go #infosec #macOS #Malware Analysis #Minirat #npm #Remote Access Trojan #supply chain attack
Title: Waking the Sleepers: The BufferZoneCorp Campaign Poisoning Ruby and Go Ecosystems
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Sat, 02 May 2026 03:23:31 +0000
════════════════════════
Tags: #Malware #BufferZoneCorp #CI/CD security #Credential Theft #cybersecurity #Go Modules #infosec #knot_theory #malware #RubyGems #Socket #supply chain attack
Title: Poisoned Code: Stealthy Malicious Go Module Backdoor Discovered in Long-Running Typosquat
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Mon, 25 May 2026 09:01:53 +0000
════════════════════════
Tags: #Malware #DNS TXT backdoor #Go module #proxy.golang.org #rce #Remote Code Execution #shopspring/decimal #shopsprint/decimal #Socket Security #supply chain attack #typosquat
Title: AI Honeypots Snare Decentralized Cryptominer Dropper
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Mon, 01 Jun 2026 06:03:24 +0000
════════════════════════
Tags: #Malware #Akamai SIRT #cryptomining #Go malware #libp2p #Ollama Security #P2P Malware #threat intelligence #XMRig
Title: Prinz Eugen Ransomware Encrypts Recent Files First and Leaves No Note
════════════════════════
𐀪 Author: Nam Phong
════════════════════════
Time: Tue, 23 Jun 2026 03:41:09 +0000
════════════════════════
Tags: #Malware #Go Malware #Prinz Eugen #ransomware #RDP #Standard Bank #ThreatDown
Title: PolinRider Supply Chain Attack Spans npm, Go, Chrome
════════════════════════
𐀪 Author: Nam Phong
════════════════════════
Time: Mon, 06 Jul 2026 08:38:34 +0000
════════════════════════
Tags: #Malware #Contagious Interview #Famous Chollima #Go Modules Security #North Korea Hackers #NPM Malware #PolinRider #supply chain attack
Title: Gitea RCE Flaw CVE-2026-60004 (CVSS 9.8): Details and PoC Exploit Publicly Disclosed
════════════════════════
𐀪 Author: Do Son
════════════════════════
Time: Wed, 29 Jul 2026 07:59:11 +0000
════════════════════════
Tags: #Vulnerability Report #CVE_2026_60004 #diffpatch #Git Hook #Gitea #go #rce #Remote Code Execution