Daily Writeups
3.52K subscribers
2 photos
129K links
Daily Bug Bounty / Cybersecurity Writeups
Source Code : https://github.com/Spix0r/writeup-miner
Download Telegram
Title: RingReaper: Stealthy Linux Agent Abuses io_uring to Bypass EDR System Call Monitoring
════════════════════════
𐀪 Author: ddos
════════════════════════
Time: Thu, 27 Nov 2025 11:28:39 +0000
════════════════════════
Tags: #Open Source Tool #EDR Bypass #io_uring #Linux Security #post_exploitation #Red Team #RingReaper #Stealth #System Calls
Title: RedExt: New Red Team Tool Uses Chrome Extension for Covert Browser Data Exfiltration
════════════════════════
𐀪 Author: ddos
════════════════════════
Time: Fri, 28 Nov 2025 02:04:35 +0000
════════════════════════
Tags: #Open Source Tool #browser data #Chrome extension #Cybersecurity Tool #Flask C2 #Manifest V3 #post_exploitation #Red Team #RedExt
Title: DCOMRunAs: Covert Technique for Remote Code Execution in a Logged-on Session
════════════════════════
𐀪 Author: ddos
════════════════════════
Time: Sat, 29 Nov 2025 03:31:40 +0000
════════════════════════
Tags: #Open Source Tool #DCOM #DCOMRunAs #DLL hijacking #Lateral Movement #post_exploitation #remote code execution #Windows Security
Title: ChromeAlone: Stealthy Browser Implant Steals Sessions and Phishes for YubiKeys
════════════════════════
𐀪 Author: ddos
════════════════════════
Time: Fri, 05 Dec 2025 03:59:35 +0000
════════════════════════
Tags: #Open Source Tool #Browser Implant #ChromeAlone #Credential Theft #EDR Bypass #post_exploitation #Red Team Tool #SOCKS Proxy #WebAuthn Phishing
Title: Sauron: Fast Active Directory Tool Maps Credential Privileges and Nested Groups in Seconds
════════════════════════
𐀪 Author: ddos
════════════════════════
Time: Tue, 09 Dec 2025 03:42:55 +0000
════════════════════════
Tags: #Open Source Tool #Active Directory #AD Enumeration #Credential Context #cybersecurity #Group Policy #LDAP #post_exploitation #Red Team Tool #Sauron
Title: Unmasking Mythic: Kaspersky Reveals How to Detect the Stealthy Open-Source Post-Exploitation Framework
════════════════════════
𐀪 Author: ddos
════════════════════════
Time: Mon, 15 Dec 2025 07:18:31 +0000
════════════════════════
Tags: #Cybercriminals #APT #C2 framework #Cobalt Strike #kaspersky #Mythic #Network Detection #open source #post_exploitation #Suricata #UUID
Title: Silent Pivot: Exploiting SpeechRuntimeMove for Stealthy Lateral Movement via DCOM
════════════════════════
𐀪 Author: ddos
════════════════════════
Time: Wed, 17 Dec 2025 04:57:03 +0000
════════════════════════
Tags: #Open Source Tool #COM Hijacking #DCOM #DLL Sideloading #Lateral Movement #post_exploitation #red teaming #Remote Registry #SpeechRuntime #Windows Security
Title: The Admin’s Shadow: How Hackers Turned the Nezha Monitoring Tool into a Stealth RAT
════════════════════════
𐀪 Author: ddos
════════════════════════
Time: Wed, 24 Dec 2025 02:38:40 +0000
════════════════════════
Tags: #Malware #Cyber Security 2025 #Evasion #Nezha #NT AUTHORITY\SYSTEM #Ontinue #open source #post_exploitation #Qualys #RAT #RMM Abuse #Root Access
Title: The Ghost in the Machine: Master Stealth with the Orsted C2 Framework
════════════════════════
𐀪 Author: ddos
════════════════════════
Time: Fri, 26 Dec 2025 02:44:26 +0000
════════════════════════
Tags: #Open Source Tool #AMSI Evasion #Command and Control #cybersecurity #Go_lang #Ligolo_ng #Orsted C2 #Penetration Testing #post_exploitation #red teaming #Sandbox Deception
Title: The Nim Shadow: Conquest C2 Redefines Stealth for 2026 Red Teams
════════════════════════
𐀪 Author: ddos
════════════════════════
Time: Fri, 16 Jan 2026 03:47:54 +0000
════════════════════════
Tags: #Open Source Tool #adversary simulation #Conquest C2 #Dear ImGui #evasion techniques #InfoSec 2026 #Monarch Agent #Nim Programming #Penetration Testing #post_exploitation #red teaming