Daily Writeups
3.81K subscribers
4 photos
134K links
Daily Bug Bounty / Cybersecurity Writeups
Source Code : https://github.com/Spix0r/writeup-miner
Download Telegram
⤷ Title: Apache Struts 2 REST Plugin XStream Deserialization: When XML Requests Become Remote Code Execution
════════════════════════
𐀪 Author: EternalSec
════════════════════════
ⴵ Time: Fri, 18 Sep 2026 06:24:01 GMT
════════════════════════
⌗ Tags: #vulnerability_assessment #rce #web_security #cybersecurity #apache_struts_2
⤷ Title: Claimed Bug Bounty Hunter Likely Used LLM to Build PhantomRaven npm Stealer
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Fri, 18 Sep 2026 14:48:03 +0530
════════════════════════
⌗ Tags: No_Tags
⤷ Title: Synology DSM Patches 8 Flaws, Two Critical Unauthenticated
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Fri, 18 Sep 2026 09:41:39 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Arbitrary File Write #CVE_2026_13639 #CVE_2026_13684 #DiskStation Manager #DSM #NAS security #Synology
⤷ Title: Critical HCL BigFix Vulnerabilities Expose Admin Accounts
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Fri, 18 Sep 2026 09:25:37 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2026_18963 #CVE_2026_67100 #CVE_2026_67101 #HCL BigFix #sql injection
⤷ Title: 4 Linux Kernel LPE Flaws Disclosed With Public PoC Exploits
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Fri, 18 Sep 2026 08:06:43 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2026_80844 #CVE_2026_81000 #DirtyAH6 #Linux Kernel #Local Privilege Escalation #privilege escalation #proof_of_concept
⤷ Title: PAPERMILL Cybercrime Cluster Delivers VenomRAT via Tax Lures
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Fri, 18 Sep 2026 08:00:21 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Cybercrime #DLL Sideloading #PAPERMILL #Silver Fox #VenomRAT
⤷ Title: Mass Assignment to Admin: How a Missing Allow-List Let Me Self-Promote to Administrator
════════════════════════
𐀪 Author: Neel Chauhan
════════════════════════
ⴵ Time: Fri, 18 Sep 2026 08:23:20 GMT
════════════════════════
⌗ Tags: #bola #penetration_testing #bug_bounty #mass_assignment
⤷ Title: Google Just Warned That AI Agents Are Hunting Bugs for Hackers.
════════════════════════
𐀪 Author: Riya Limba
════════════════════════
ⴵ Time: Fri, 18 Sep 2026 08:19:02 GMT
════════════════════════
⌗ Tags: #cybersecurity #ethical_hacking #bug_bounty #bug_bounty_tips #bug_bounty_writeup
⤷ Title: How I Use AI for Bug Hunting (Without Losing My Mind)
════════════════════════
𐀪 Author: Sukhveer Singh
════════════════════════
ⴵ Time: Fri, 18 Sep 2026 08:13:29 GMT
════════════════════════
⌗ Tags: #cybersecurity #bug_bounty #bug_hunting #bug_bounty_tips #bug_bounty_writeup
⤷ Title: Web LLM Attacks: Understanding the New Web Application Attack Surface
════════════════════════
𐀪 Author: Mazen Elsayed
════════════════════════
ⴵ Time: Fri, 18 Sep 2026 08:46:59 GMT
════════════════════════
⌗ Tags: #application_security #cybersecurity #web_security #artificial_intelligence #llm
⤷ Title: How WPA-PSK Works—and How Hackers Crack Weak Wi-Fi Passwords
════════════════════════
𐀪 Author: A. AntorCSE404
════════════════════════
ⴵ Time: Fri, 18 Sep 2026 09:09:08 GMT
════════════════════════
⌗ Tags: #hacking #wifihacking #programming #research #cybersecurity
⤷ Title: HackTheBox — Orion Writeup: 15 Minutes to User, 90 Minutes of Overthinking to Root
════════════════════════
𐀪 Author: PhongTapCode
════════════════════════
ⴵ Time: Fri, 18 Sep 2026 09:24:02 GMT
════════════════════════
⌗ Tags: #ctf_writeup #pentesting #infosec #hackthebox #ctf
⤷ Title: Reflected XSS via dangerouslySetInnerHTML: When the API Is Safe but the Frontend Isn’t
════════════════════════
𐀪 Author: Neel Chauhan
════════════════════════
ⴵ Time: Fri, 18 Sep 2026 08:12:55 GMT
════════════════════════
⌗ Tags: #penetration_testing #reflected_xss #xss_attack #xss_vulnerability
⤷ Title: Content Discovery | TryHackMe
════════════════════════
𐀪 Author: Tabrizabuzarov
════════════════════════
ⴵ Time: Fri, 18 Sep 2026 08:01:52 GMT
════════════════════════
⌗ Tags: #cybersecurity #penetration_testing
⤷ Title: Jax Sucks Alot (THM) Walkthrough
════════════════════════
𐀪 Author: L4ZZ3RJ0D
════════════════════════
ⴵ Time: Fri, 18 Sep 2026 09:25:10 GMT
════════════════════════
⌗ Tags: #ctf #tryhackme_walkthrough #info_sec_writeups #tryhackme #insecure_deserialization
⤷ Title: 10 GitHub Repositories Every Blue Teamer Must Bookmark
════════════════════════
𐀪 Author: Munaza Cyber
════════════════════════
ⴵ Time: Fri, 18 Sep 2026 09:10:10 GMT
════════════════════════
⌗ Tags: #soc_analyst #tech #cybersecurity #careers #ethical_hacking
⤷ Title: What Is Ethical Hacking? A Complete Beginner’s Guide to Ethical Hacking
════════════════════════
𐀪 Author: QNAYDS Academy
════════════════════════
ⴵ Time: Fri, 18 Sep 2026 09:05:31 GMT
════════════════════════
⌗ Tags: #beginners_guide #qnayds #ethical_hacking #manjeri #cybersecurity
⤷ Title: WeaselBiscuit Stealer Spreads via 13 npm Packages to Harvest Chrome Extension Storage
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Fri, 18 Sep 2026 16:10:06 +0530
════════════════════════
⌗ Tags: No_Tags
⤷ Title: Markdown Renderers: The XSS Factory Hiding in Every Modern App
════════════════════════
𐀪 Author: Nitin yadav
════════════════════════
ⴵ Time: Fri, 18 Sep 2026 11:31:01 GMT
════════════════════════
⌗ Tags: #bug_bounty #infosec #ethical_hacking #bug_bounty_tips #cybersecurity
⤷ Title: How to Pick the Right Penetration Test When There Are More Than a Dozen Kinds
════════════════════════
𐀪 Author: Invadel
════════════════════════
ⴵ Time: Fri, 18 Sep 2026 11:31:15 GMT
════════════════════════
⌗ Tags: #infosec #application_security #penetration_testing #cloud_security #cybersecurity
⤷ Title: OpenAI Got Hacked by Anthropic’s AI Models
════════════════════════
𐀪 Author: Jim Clyde Monge
════════════════════════
ⴵ Time: Fri, 18 Sep 2026 11:05:04 GMT
════════════════════════
⌗ Tags: #cybersecurity #anthropics #hacking #hacktronai #openai