Daily Writeups
3.53K subscribers
2 photos
130K links
Daily Bug Bounty / Cybersecurity Writeups
Source Code : https://github.com/Spix0r/writeup-miner
Download Telegram
Title: Under 10 Hours: The marimo Terminal RCE Exploited in a Record-Breaking AI Sprint
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Mon, 13 Apr 2026 03:26:15 +0000
════════════════════════
Tags: #Vulnerability Report #AI Exploitation #CVE_2026_39987 #cybersecurity #infosec #Marimo #Python #rce #Sysdig #threat intelligence #WebSocket Security
Title: CVE-2026-33626: High-Severity SSRF Exploited in the Wild to Hijack AI Inference Engines
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Thu, 23 Apr 2026 02:37:27 +0000
════════════════════════
Tags: #Vulnerability Report #AI security #Cloud Security #CVE_2026_33626 #Cyber Defense #IMDSv2 #InternVL2 #LLM Inference #LMDeploy #Qwen2_VL #Server_Side Request Forgery #ssrf #Sysdig TRT
Title: Critical LiteLLM SQL Injection (CVE-2026-42208) Exploited in the Wild
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Tue, 28 Apr 2026 01:53:32 +0000
════════════════════════
Tags: #Vulnerability Report #AI security #CVE_2026_42208 #cybersecurity #Data Breach #Exploit #infosec #LiteLLM #Patch Alert #PostgreSQL #sql injection #Sysdig
Title: PraisonAI CVE-2026-44338 Exploited in the Wild Hours After Patch Disclosure
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Wed, 13 May 2026 02:00:36 +0000
════════════════════════
Tags: #Vulnerability Report #AI security #Authentication Bypass #CVE_2026_44338 #Cyber Security #Exploit in the Wild #infosec #LLM Security #Multi_Agent Orchestration #PraisonAI #Sysdig TRT
Title: SaaS-Style Cybercrime: Attackers Weaponize Langflow RCE and NATS Messaging for Ultra-Scalable C2
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Mon, 18 May 2026 08:06:31 +0000
════════════════════════
Tags: #Cybercriminals #AI Pipeline Security #CISA KEV #container escape #CVE_2026_33017 #Distributed Messaging #infosec #Langflow #NATS_as_C2 #Patch Alert #Remote Code Execution #Sysdig TRT
Title: NATS-as-C2: Critical Langflow Exploit Exploded to Fuel “LLMjacking” and Cloud Credential Theft
════════════════════════
𐀪 Author: ddos
════════════════════════
Time: Tue, 19 May 2026 07:02:20 +0000
════════════════════════
Tags: #Vulnerability #AI Agent security #AWS Bedrock Exploitation #Cloud Credential Theft #CVE_2026_33017 #KeyHunter Botnet #Langflow Vulnerability #LLMjacking #NATS_as_C2 #Sysdig Threat Research #uTLS Fingerprinting
Title: The Rise of the Algorithmic Intruder: AI-Driven Exploitation of Marimo Servers
════════════════════════
𐀪 Author: ddos
════════════════════════
Time: Mon, 01 Jun 2026 04:07:17 +0000
════════════════════════
Tags: #Cybercriminals #Vulnerability #AI agent cyberattack #autonomous malware post_exploitation #database exfiltration vector #Marimo CVE_2026_39987 exploit #notebook pre_auth RCE #Sysdig threat intelligence
Title: Sysdig Details JADEPUFFER, the First Documented Agentic Ransomware Operation
════════════════════════
𐀪 Author: Waqas
════════════════════════
Time: Thu, 02 Jul 2026 10:22:21 +0000
════════════════════════
Tags: #Security #Artificial Intelligence #Cyber Attacks #Malware #Agentic AI #AI Agent #Cyber Attack #Cyber Crime #Cybersecurity #data breach #JADEPUFFER #LLM #Ransomware #Sysdig #Vulnerability
Title: JADEPUFFER Marks the First AI-Driven Agentic Ransomware Attack
════════════════════════
𐀪 Author: Do Son
════════════════════════
Time: Fri, 10 Jul 2026 06:11:59 +0000
════════════════════════
Tags: #Malware #agentic ransomware #AI_driven ransomware #CVE_2025_3248 #JADEPUFFER #Langflow #Nacos #ransomware #Sysdig