Daily Writeups
3.54K subscribers
2 photos
130K links
Daily Bug Bounty / Cybersecurity Writeups
Source Code : https://github.com/Spix0r/writeup-miner
Download Telegram
Title: How to Build a Role-Based Access Control (RBAC) System
════════════════════════
𐀪 Author: Ushani Saubhagya
════════════════════════
Time: Sat, 13 Jun 2026 11:53:32 GMT
════════════════════════
Tags: #authentication #authorization #role_based_access_control #software_security #application_security
Title: Avo Flaw CVE-2026-55518 Enables Privilege Escalation in Rails Apps
════════════════════════
𐀪 Author: Do Son
════════════════════════
Time: Mon, 22 Jun 2026 01:11:11 +0000
════════════════════════
Tags: #Vulnerability Report #admin panel #Authorization Bypass #Avo #CVE_2026_55518 #Missing Authorization #privilege escalation #Rails Security #ruby on rails
Title: 5 Authorization Mistakes I Keep Finding During Manual Application Security Testing
════════════════════════
𐀪 Author: Mohammed Khaleel ul hasan
════════════════════════
Time: Tue, 30 Jun 2026 09:18:23 GMT
════════════════════════
Tags: #security #web_application_security #application_security #authorization #pentesting
Title: API Authorization Testing: Insecure Object-Level Access Leading to Unauthorized User Management
════════════════════════
𐀪 Author: Ethical Hacker
════════════════════════
Time: Mon, 06 Jul 2026 14:55:37 GMT
════════════════════════
Tags: #api_security #rbac_access_control #authorization #cyber_security_solutions #bug_bounty
Title: Authorization at Scale:
Policy, Resource, and Tenant Boundaries in ASP.NET Core (.NET 9 Guide P3)

════════════════════════
𐀪 Author: Oleksii Sokol
════════════════════════
Time: Fri, 10 Jul 2026 11:01:25 GMT
════════════════════════
Tags: #authorization #api_security #dotnet #software_architecture #aspnetcore
Title: Authorization Bypass via Privilege Persistence After Role Downgrade in Hasura PromptQL
════════════════════════
𐀪 Author: Ahmed Embaby
════════════════════════
Time: Sat, 18 Jul 2026 15:12:35 GMT
════════════════════════
Tags: #web_security #authorization #bug_bounty #cybersecurity #graphql
1
Title: The Bug Bounty Playbook: IDOR
════════════════════════
𐀪 Author: Abhishek meena
════════════════════════
Time: Mon, 20 Jul 2026 22:27:44 GMT
════════════════════════
Tags: #bug_bounty #web_security #idor #authorization #hackerone
Title: Unpatched Plane Authorization Bypass CVE-2026-15342 Exposes Other Workspaces
════════════════════════
𐀪 Author: Do Son
════════════════════════
Time: Mon, 27 Jul 2026 13:03:32 +0000
════════════════════════
Tags: #Vulnerability Report #Authorization Bypass #broken access control #CERT/CC #CVE_2026_15342 #Multi_Tenant #open_source #Plane #Project Management #unpatched #VU#762226
Title: Apache ActiveMQ Patches Authorization Bypass and DoS Flaws
════════════════════════
𐀪 Author: Do Son
════════════════════════
Time: Tue, 28 Jul 2026 02:05:15 +0000
════════════════════════
Tags: #Vulnerability Report #ActiveMQ vulnerability #Apache ActiveMQ #Authorization Bypass #CVE_2026_59878 #CVE_2026_61487 #Denial of Service #Message Broker Security
Title: OpenDJ Vulnerabilities: Authorization Bypass (CVSS 9.6) and Unauthenticated SSRF (CVSS 9.4)
════════════════════════
𐀪 Author: Do Son
════════════════════════
Time: Wed, 29 Jul 2026 14:02:59 +0000
════════════════════════
Tags: #Vulnerability Report #Authorization Bypass #CVE_2026_62373 #CVE_2026_62375 #Deserialization #LDAP #Open Identity Platform #OpenDJ #ssrf
Title: How Unauthenticated Queries Exposed User PII and Privileged Accounts
════════════════════════
𐀪 Author: Sudheer
════════════════════════
Time: Thu, 13 Aug 2026 07:26:04 GMT
════════════════════════
Tags: #authorization #api_security #bug_bounty #authentication #web_security_testing