Daily Writeups
3.52K subscribers
2 photos
129K links
Daily Bug Bounty / Cybersecurity Writeups
Source Code : https://github.com/Spix0r/writeup-miner
Download Telegram
Title: China-Nexus Espionage: ScatterBrain Obfuscation Tactics Revealed
════════════════════════
𐀪 Author: do son
════════════════════════
Time: Fri, 31 Jan 2025 01:46:04 +0000
════════════════════════
Tags: #Malware #APT41 #Complete Headerless Mode #Complete Mode #Control Flow Graph #POISONPLUG #POISONPLUG.SHADOW #ScatterBrain #Selective Mode #ShadowPad
Title: Updated ShadowPad Malware Facilitates Ransomware Deployment in Global Attacks
════════════════════════
𐀪 Author: do son
════════════════════════
Time: Fri, 21 Feb 2025 01:43:35 +0000
════════════════════════
Tags: #Malware #APT41 #Earth Baku #Earth Freybug #Earth Longzhi #ransomware #ShadowPad #ShadowPad malware
Title: China-Aligned APTs Launch “Premier Pass-as-a-Service,” Sharing Access in Coordinated Global Espionage
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Mon, 27 Oct 2025 00:10:55 +0000
════════════════════════
Tags: #Cyber Security #APT Collaboration #China APT #cyber_espionage #Earth Estries #Earth Naga #Premier Pass_as_a_Service #ShadowPad
Title: Critical WSUS RCE (CVE-2025-59287) Actively Exploited to Deploy ShadowPad Backdoor
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Fri, 21 Nov 2025 00:06:54 +0000
════════════════════════
Tags: #Cyber Security #Vulnerability Report #AhnLab #APT #backdoor #CVE_2025_59287 #cyber attack #rce #security advisory #ShadowPad #Windows Server #WSUS
Title: Critical WSUS RCE (CVE-2025-59287) Actively Exploited to Deploy ShadowPad Espionage Tool
════════════════════════
𐀪 Author: ddos
════════════════════════
Time: Tue, 25 Nov 2025 03:30:12 +0000
════════════════════════
Tags: #Vulnerability #AhnLab #China APT #CVE_2025_59287 #Cyber Espionage #Patch Now #RCE #ShadowPad #Windows Server #WSUS
Title: The Living Mesh: Ink Dragon Turns European Government Servers into a Global ShadowPad Relay Network
════════════════════════
𐀪 Author: ddos
════════════════════════
Time: Thu, 18 Dec 2025 03:52:47 +0000
════════════════════════
Tags: #Cyber Security #APT #Check Point Research #Cyber Espionage #Earth Alux #European Security #FINALDRAFT #IIS Malware #Ink Dragon #ShadowPad #SharePoint Exploit
Title: The Silent Listener: New DRBControl Backdoor Variant Uses Network Sniffing to Evade Detection
════════════════════════
𐀪 Author: ddos
════════════════════════
Time: Thu, 18 Dec 2025 03:48:07 +0000
════════════════════════
Tags: #Malware #APT27 #APT41 #Cyber Espionage #DLL Sideloading #DRBControl #IIJ #malware analysis #Mofu Loader #Promiscuous Mode #ShadowPad #Type 1 Backdoor
Title: Ink Dragon’s Global Mesh: How Chinese Spies Turn Compromised Government Servers into C2 Relay Nodes
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Thu, 18 Dec 2025 00:27:49 +0000
════════════════════════
Tags: #Cyber Security #Malware #APT41 #ASP.NET #Check Point Research #cyber_espionage #Earth Alux #IIS Listener #Ink Dragon #Microsoft Graph API #Relay Network #ShadowPad
Title: The “All-in-One” Spy: DKnife Malware Hijacks Routers to Swap Downloads
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Mon, 09 Feb 2026 00:38:42 +0000
════════════════════════
Tags: #Cyber Security #Malware #AiTM #Chinese Threat Actors #Cisco Talos #DarkNimbus #DKnife #Edge Devices #Malware Analysis #router security #ShadowPad #Traffic Manipulation #yitiji
Title: Shattering the Edge: Cisco Talos Unmasks “DKnife,” the 7-Module Framework Hijacking Your Router
════════════════════════
𐀪 Author: ddos
════════════════════════
Time: Mon, 09 Feb 2026 04:19:48 +0000
════════════════════════
Tags: #Malware #AitM attack #China_nexus APT #Cisco Talos #DarkNimbus #DKnife #edge device security #Linux malware #network infrastructure #router malware #ShadowPad #Tech News 2026 #WizardNet
Title: The N-Day Nightmare: How SHADOW-EARTH-053 Breaches Governments Using “Old” Exploits
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Tue, 05 May 2026 07:02:51 +0000
════════════════════════
Tags: #Cyber Security #Vulnerability Report #Asia Cybersecurity #China_Aligned APT #Cyberespionage #DLL Sideloading #Godzilla #GodZilla Web Shell #NATO Security #ProxyLogon #SHADOW_EARTH_053 #ShadowPad #TrendAI Research #Web Shell