Daily Writeups
3.62K subscribers
4 photos
130K links
Daily Bug Bounty / Cybersecurity Writeups
Source Code : https://github.com/Spix0r/writeup-miner
Download Telegram
Title: CISA KEV Alert: GeoServer XXE Flaw Under Active Attack Risks Data Theft & Internal Network Scanning
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Fri, 12 Dec 2025 03:00:51 +0000
════════════════════════
Tags: #Vulnerability Report #Active Exploitation #CISA KEV #CVE_2025_58360 #Data Theft #GeoServer #ssrf #XML External Entity #xxe
Title: Apache SIS Patch Blocks XML Attack That Leaks Server Files
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Tue, 06 Jan 2026 02:07:54 +0000
════════════════════════
Tags: #Vulnerability Report #Apache SIS #Apache Software Foundation #CVE_2025_68280 #Geospatial Security #GeoTIFF #GML #GPX #Information Disclosure #Java security #Metadata Security #XML Injection #xxe
Title: XXE Bypass CTF Challange (Bugforge)
════════════════════════
𐀪 Author: blackm4c
════════════════════════
Time: Tue, 06 Jan 2026 19:03:10 GMT
════════════════════════
Tags: #hacking #xxe_injection #web_attack #xxe #ctf
Title: Tanuki -Writeup
════════════════════════
𐀪 Author: 7s26Simon
════════════════════════
Time: Wed, 07 Jan 2026 00:15:02 GMT
════════════════════════
Tags: #ctf_writeup #bug_bounty_writeup #cybersecurity #bugforge #xxe
Title: The XML Trap: Critical Struts 2 Flaw CVE-2025-68493 Exposes Data
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Mon, 12 Jan 2026 01:46:54 +0000
════════════════════════
Tags: #Vulnerability Report #Apache Struts 2 #CVE_2025_68493 #Denial of Service #Java security #ssrf #XWork #XXE Injection #ZAST.AI
Title: Bypassing the Gatekeeper: Public Exploit Released for Cisco ISE Flaw
════════════════════════
𐀪 Author: ddos
════════════════════════
Time: Mon, 12 Jan 2026 04:45:16 +0000
════════════════════════
Tags: #Vulnerability #Cisco #Cisco ISE #CVE_2026_20029 #Cybersecurity 2026 #Identity Management #Network Access Control #Patch Alert #Proof of Concept #Snort 3 #XXE #Zero Trust
Title: Identity at Risk: Apache Syncope Patches Critical Login XSS & XXE Flaws
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Tue, 03 Feb 2026 01:41:41 +0000
════════════════════════
Tags: #Vulnerability Report #Apache Syncope #CVE_2026_23794 #CVE_2026_23795 #IAM Security #Identity Management #Open Source Security #Patch Alert #Session Hijacking #XSS #xxe
Title: Triple Threat Patched: Zimbra 10.1.16 Fixes XSS, XXE & LDAP Injection
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Fri, 13 Feb 2026 00:33:15 +0000
════════════════════════
Tags: #Vulnerability Report #Collaboration Suite #CSRF #Email Security #LDAP injection #Patch Alert #security update #XSS #xxe #Zimbra #Zimbra 10.1.16
Title: SOAP picoCTF Web Exploitation Medium Challenge | XXE Injection
════════════════════════
𐀪 Author: Fadil Adzima
════════════════════════
Time: Fri, 27 Feb 2026 11:12:06 GMT
════════════════════════
Tags: #hacking #picoctf #xxe_injection #medium_challenge #web_exploitation
Title: The File That Answered Back — XXE Hidden in Cell A2
════════════════════════
𐀪 Author: Alvin Ferdiansyah
════════════════════════
Time: Tue, 21 Apr 2026 17:05:28 GMT
════════════════════════
Tags: #xml #bug_bounty_writeup #bug_bounty #file_upload_vulnerability #xxe