Daily Writeups
3.54K subscribers
2 photos
130K links
Daily Bug Bounty / Cybersecurity Writeups
Source Code : https://github.com/Spix0r/writeup-miner
Download Telegram
πŸ”–New Writeup❗️
β€”β€”β€”β€”β€”β€”β€”β€”β€”β€”β€”β€”β€”β€”β€”
πŸ—“Date: Tue, 18 Apr 2023 23:31:21 GMT
β€”β€”β€”β€”β€”β€”β€”β€”β€”β€”β€”β€”β€”β€”β€”
✏️Title: Chinese Hackers Turn Google’s Ethical Hacking Tool into a Security Threat: Cybersecurity Experts…
β€”β€”β€”β€”β€”β€”β€”β€”β€”β€”β€”β€”β€”β€”β€”
πŸ“ŽLink: https://medium.com/p/10865b2fac90
β€”β€”β€”β€”β€”β€”β€”β€”β€”β€”β€”β€”β€”β€”β€”
Tags: #cybercrime #tag #hacking #cybersecurity #news
β€· Title: TAG-124: A Deep Dive into the Traffic Distribution System Powering Malware Campaigns
════════════════════════
π€ͺ Author: do son
════════════════════════
β΄΅ Time: Wed, 05 Feb 2025 01:50:10 +0000
════════════════════════
βŒ— Tags: #Cyber Security #Malware #CleanUpLoader #D3F@ck Loader #Interlock #Rhysida #SocGholish #TA866/Asylum Ambuscade #TAG_124 #traffic distribution system
β€· Title: MintsLoader Malware: Advanced Evasion Techniques Target Industrial Sector
════════════════════════
π€ͺ Author: Ddos
════════════════════════
β΄΅ Time: Sun, 04 May 2025 00:32:09 +0000
════════════════════════
βŒ— Tags: #Malware #Cybercrime #evasion techniques #malware #MintsLoader #Payload Delivery #TAG_124 #threat analysis
β€· Title: Russian-Aligned TAG-110 Targets Tajikistan Governments with Stealthy Cyber-Espionage
════════════════════════
π€ͺ Author: Ddos
════════════════════════
β΄΅ Time: Mon, 26 May 2025 00:20:40 +0000
════════════════════════
βŒ— Tags: #Cyber Security #APT28 #cyber_espionage #cybersecurity #Government #malware #phishing #russia #TAG_110 #Tajikistan
β€· Title: GrayAlpha’s Expanding Arsenal: FIN7-Aligned Threat Actor Deploys Custom Loaders to Spread NetSupport RAT
════════════════════════
π€ͺ Author: Ddos
════════════════════════
β΄΅ Time: Tue, 17 Jun 2025 00:02:46 +0000
════════════════════════
βŒ— Tags: #Cybercriminals #7_Zip #Cybercrime #cybersecurity #Fake Browser Updates #FIN7 #GrayAlpha #Insikt Group #NetSupport RAT #powershell #ransomware #Recorded Future #TAG_124 #TDS
β€· Title: Pakistan-Aligned APT36 Unleashes DRAT V2: New Delphi RAT Targets Indian Government
════════════════════════
π€ͺ Author: ddos
════════════════════════
β΄΅ Time: Tue, 08 Jul 2025 02:43:31 +0000
════════════════════════
βŒ— Tags: #Malware #APT36 #ClickFix #Cyberespionage #DRAT V2 #Government #India #phishing #RAT #Remote Access Trojan #SideCopy #TAG_140 #Transparent Tribe
β€· Title: Reflected XSS in HTML Context with All Standard Tags Blocked Except Custom Ones
════════════════════════
π€ͺ Author: Bash Overflow
════════════════════════
β΄΅ Time: Sat, 02 Aug 2025 11:23:24 GMT
════════════════════════
βŒ— Tags: #tag_filter_bypass #xss_in_html_context #reflected_xss #xss_payload #bug_bounty
β€· Title: Blind Eagle’s Expanding Cyber Campaigns: Five Clusters Targeting Colombia’s Government and Beyond
════════════════════════
π€ͺ Author: ddos
════════════════════════
β΄΅ Time: Fri, 29 Aug 2025 04:44:19 +0000
════════════════════════
βŒ— Tags: #Cybercriminals #Blind Eagle #Colombia #Cyber Espionage #phishing attacks #RAT malware #Recorded Future #supply chain threats #TAG_144
β€· Title: Google Patches Actively Exploited Chrome Zero-Day Flaw (CVE-2025-13223) in Emergency Update
════════════════════════
π€ͺ Author: Ddos
════════════════════════
β΄΅ Time: Mon, 17 Nov 2025 23:03:13 +0000
════════════════════════
βŒ— Tags: #Vulnerability Report #browser security #chrome #CVE_2025_13223 #cybersecurity #google #patch #Remote Code Execution #tag #Type Confusion #V8 #zero_day
β€· Title: New MaaS Operator TAG-150 Uses ClickFix Lure and Custom CastleLoader to Compromise 469 US Devices
════════════════════════
π€ͺ Author: Ddos
════════════════════════
β΄΅ Time: Mon, 01 Dec 2025 00:19:22 +0000
════════════════════════
βŒ— Tags: #Cybercriminals #CastleLoader #CastleRAT #ClickFix #Darktrace #MaaS #Remote Access Trojan #social engineering #TAG_150
β€· Title: CastleLoader PhaaS: GrayBravo Escalates Attacks on Logistics & Booking.com
════════════════════════
π€ͺ Author: ddos
════════════════════════
β΄΅ Time: Sat, 13 Dec 2025 10:28:44 +0000
════════════════════════
βŒ— Tags: #Cybercriminals #Booking.com #CastleLoader #cybercrime #GrayBravo #Logistics #Malware_as_a_Service #PhaaS #phishing #Recorded Future #TAG_160
β€· Title: The Mutable Tag Trap: Critical 9.4 CVSS Attack on Xygeni GitHub Action Exposes CI/CD Pipelines
════════════════════════
π€ͺ Author: Ddos
════════════════════════
β΄΅ Time: Thu, 12 Mar 2026 04:26:38 +0000
════════════════════════
βŒ— Tags: #Malware #Vulnerability Report #C2 Backdoor #CI/CD security #CVE_2026_31976 #cybersecurity #DevSecOps #GitHub Actions #infosec #supply chain attack #Tag Poisoning #Xygeni
β€· Title: The Tag Trap: How a Single Commit Swap Turned Xygeni’s GitHub Action into a Clandestine Backdoor
════════════════════════
π€ͺ Author: ddos
════════════════════════
β΄΅ Time: Thu, 12 Mar 2026 07:21:26 +0000
════════════════════════
βŒ— Tags: #Malware #CI/CD Security #DevOps Security #GitHub Actions #GitHub Token Theft #malware #RCE #StepSecurity #supply chain attack #Tag Poisoning #Tech News 2026 #v5 tag #Xygeni
❀1
β€· Title: TAG-182 Threat Cluster Spreads MarkiRAT Malware
════════════════════════
π€ͺ Author: Do Son
════════════════════════
β΄΅ Time: Mon, 06 Jul 2026 07:58:54 +0000
════════════════════════
βŒ— Tags: #Cybercriminals #Insikt Group #Iran Surveillance #MarkiRAT #Recorded Future #TAG_182