Daily Writeups
3.54K subscribers
2 photos
130K links
Daily Bug Bounty / Cybersecurity Writeups
Source Code : https://github.com/Spix0r/writeup-miner
Download Telegram
Title: Living Off the HTA Land: How Hackers Weaponize a 1999 Windows Utility for Silent Malware Delivery
════════════════════════
𐀪 Author: ddos
════════════════════════
Time: Thu, 21 May 2026 07:04:27 +0000
════════════════════════
Tags: #Malware #Amatera Info Harvester #ClickFix Social Engineering LummaStealer #ClipBanker Crypto Stealer #CountLoader Staging Framework #Emmenhtal Loader #HTML Application HTA Payload #Living off the Land Binaries #MSHTA Weaponization Malware Delivery #mshta.exe Windows Binary #PurpleFox Rootkit Lineage
Title: HTML Injection in Outbound Emails: An Overlooked Security Risk
════════════════════════
𐀪 Author: vibhuti bhatt
════════════════════════
Time: Fri, 05 Jun 2026 12:26:37 GMT
════════════════════════
Tags: #html_injection #vulnerability #application_security #pentesting #injection_in_email
Title: Telegram Bots Receive Rich HTML and Markdown Formatting Options
════════════════════════
𐀪 Author: Do Son
════════════════════════
Time: Tue, 16 Jun 2026 08:44:45 +0000
════════════════════════
Tags: #Technology #bot development #HTML formatting #Markdown #Rich Text #Telegram Bots
Title: I Turned a “What’s Your Name?” Field Into a Malicious Link — My First HTML Injection
════════════════════════
𐀪 Author: Prashant Raj
════════════════════════
Time: Wed, 17 Jun 2026 10:46:00 GMT
════════════════════════
Tags: #bug_bounty #cybersecurity #bug_hunting #html_injection #technology
Title: I Found a Bug That Looks Harmless But Can Still Get You Paid
════════════════════════
𐀪 Author: Yamini Yadav_369
════════════════════════
Time: Thu, 18 Jun 2026 00:03:53 GMT
════════════════════════
Tags: #cybersecurity #ethical_hacking #html #medium #bug_bounty
Title: bWAPP HTML Injection — Reflected (URL) and Stored (Blog)
════════════════════════
𐀪 Author: Kamal S
════════════════════════
Time: Sun, 21 Jun 2026 14:03:38 GMT
════════════════════════
Tags: #injection #html_injection #owasp #bug_bounty #bwapp
Title: CSRF: When Your Browser Snitches Behind Your Back
════════════════════════
𐀪 Author: Ziyad
════════════════════════
Time: Tue, 23 Jun 2026 01:34:55 GMT
════════════════════════
Tags: #web_development #html #csrf #cybersecurity #penetration_testing
Title: From a “Self-XSS” to a Convincing UI Spoof: A Bug Bounty Story That Ended as a Duplicate.
════════════════════════
𐀪 Author: kjulius
════════════════════════
Time: Fri, 26 Jun 2026 19:47:30 GMT
════════════════════════
Tags: #phishing #html #reflected_xss #self_xss #bug_bounty
Title: GitLab Patch Release Fixes Eight Flaws, Including a High-Severity XSS Bug (CVE-2026-6896)
════════════════════════
𐀪 Author: Do Son
════════════════════════
Time: Thu, 09 Jul 2026 02:15:16 +0000
════════════════════════
Tags: #Vulnerability Report #Cross_Site Scripting #CVE_2026_13320 #CVE_2026_6896 #DevSecOps #GitLab EE #GitLab patch release #HTML Injection
Title: How I Turned an “Informative” HTML Injection into My First Paid Bounty
════════════════════════
𐀪 Author: Muhammadmaftuhk
════════════════════════
Time: Mon, 27 Jul 2026 23:57:41 GMT
════════════════════════
Tags: #web_security #html_injection #bug_bounty #bug_bounty_writeup #cybersecurity