Daily Writeups
3.52K subscribers
2 photos
129K links
Daily Bug Bounty / Cybersecurity Writeups
Source Code : https://github.com/Spix0r/writeup-miner
Download Telegram
Title: Critical HIKVISION applyCT Flaw (CVE-2025-34067, CVSS 10.0): Unauthenticated RCE Via Fastjson
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Fri, 04 Jul 2025 00:33:55 +0000
════════════════════════
Tags: #Vulnerability Report #applyCT #CVE_2025_34067 #cybersecurity #Deserialization #Fastjson #HikCentral #Hikvision #rce #Remote Code Execution #Security Management Platform #Vulnerability
👍1
Title: Stealthy WordPress Malware Uncovered: SEO Spam Plugin Mimics Your Domain to Evade Detection
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Fri, 04 Jul 2025 00:28:42 +0000
════════════════════════
Tags: #Malware #Black Hat SEO #Cloaking #cybersecurity #malware #Obfuscation #plugin #Search Engine Optimization #SEO Spam #Sucuri #Web Security #wordpress
Title: SCATTERED SPIDER Infiltrates Airlines: Ransomware, vCenter Hijacks, and Voice Phishing Unleashed
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Fri, 04 Jul 2025 00:22:19 +0000
════════════════════════
Tags: #Cybercriminals #airline cyberattacks #Cloud Security #CrowdStrike #Cybercrime #identity compromise #ransomware #Scattered Spider #Vishing #VMware ESXi
Title: Anthropic MCP Server Flaws: Path Traversal & Symlink Attacks Allow RCE
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Fri, 04 Jul 2025 00:19:59 +0000
════════════════════════
Tags: #Vulnerability Report #AI security #Anthropic #CVE_2025_53109 #CVE_2025_53110 #cybersecurity #MCP #Model Context Protocol #Path Traversal #privilege escalation #rce #Remote Code Execution #Symlink #Vulnerability
Title: Apache APISIX Flaw (CVE-2025-46647): Token Issuer Bypass in OpenID Connect Allows Cross-Issuer Access
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Fri, 04 Jul 2025 00:13:00 +0000
════════════════════════
Tags: #Vulnerability Report
Title: Exposed JDWP Debug Ports Under Attack: Cryptominers Infiltrating Java Apps in Hours
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Fri, 04 Jul 2025 00:07:06 +0000
════════════════════════
Tags: #Malware #Cryptojacking #cryptomining #cybersecurity #HoneyPot #Java Debug Wire Protocol #JDWP #malware #rce #Remote Code Execution #TeamCity #Wiz Research Team
Title: Account Takeover via OTP Brute Force in E-commerce Platform .
════════════════════════
𐀪 Author: Waleed Osama
════════════════════════
Time: Fri, 04 Jul 2025 00:37:37 GMT
════════════════════════
Tags: #bug_bounty #development #brute_force #account_takeover #hacking
Title: GoBuster: Tu Herramienta Esencial para la Enumeración Web, el Pentesting y Bug Bounty
════════════════════════
𐀪 Author: JPablo13
════════════════════════
Time: Fri, 04 Jul 2025 00:02:54 GMT
════════════════════════
Tags: #penetration_testing #ethical_hacking #bug_bounty #infosec #cybersecurity
Title: How I Unlocked Premium Features for Free via a Simple API Trick (Privilege Escalation Story)
════════════════════════
𐀪 Author: MostReal
════════════════════════
Time: Thu, 03 Jul 2025 23:19:12 GMT
════════════════════════
Tags: #bug_bounty_tips #bug_bounty #privilege_escalation #cybersecurity #bug_bounty_writeup
Title: HOW TO EXPLOIT ESC2 IN ADCS — IN DETAIL
════════════════════════
𐀪 Author: 0xZ3US
════════════════════════
Time: Fri, 04 Jul 2025 00:46:58 GMT
════════════════════════
Tags: #red_teaming #hacking #adc #learn_hacking
Title: ️ Mobile Pentesting: Keamanan Aplikasi Android AndroGOAT
════════════════════════
𐀪 Author: Alex
════════════════════════
Time: Fri, 04 Jul 2025 00:41:53 GMT
════════════════════════
Tags: #mobile_penetration_test #cybersecurity #android
Title: dnSpy—Static Analysis of a .NET Malware
════════════════════════
𐀪 Author: R.D.Tarun
════════════════════════
Time: Fri, 04 Jul 2025 00:25:35 GMT
════════════════════════
Tags: #malware_analysis #spyware #dotnet #cybersecurity #malware
Title: CTF US Cyber Open 2025 Writeup
════════════════════════
𐀪 Author: Dee
════════════════════════
Time: Fri, 04 Jul 2025 00:24:54 GMT
════════════════════════
Tags: #ctf_writeup #ctf #cybersecurity
Title: Deep Web y Dark Web: ¿Un misterio oculto o una realidad mal contada?
════════════════════════
𐀪 Author: Tiziano Mass
════════════════════════
Time: Thu, 03 Jul 2025 23:37:59 GMT
════════════════════════
Tags: #deep_web #tor #ciberseguridad #cybersecurity #darkweb
Title: Fortinet Secure SD-WAN: A Comprehensive Guide
════════════════════════
𐀪 Author: Juara IT Solutions
════════════════════════
Time: Thu, 03 Jul 2025 23:32:52 GMT
════════════════════════
Tags: #sd_wan #cloud_security #cybersecurity #fortinet #network_security
Title: Part 3: In-Memory Execution Methods — How Malware Lives Rent-Free in Your System
════════════════════════
𐀪 Author: Kunal Rajour
════════════════════════
Time: Thu, 03 Jul 2025 22:55:44 GMT
════════════════════════
Tags: #information_security #fileless_malware #cybersecurity #malware #memes
Title: TryHackMe | Friday Overtime Room — Cyber Threat Intelligence
════════════════════════
𐀪 Author: the Journal of a Cyber Security Enthusiast
════════════════════════
Time: Thu, 03 Jul 2025 23:54:00 GMT
════════════════════════
Tags: #virustotal #cyber_threat_intelligence #friday_overtime #tryhackme #tryhackme_walkthrough
Title: Hacking, Virtual Machines, Linux, and Networking: Your Guide to the Digital World!
════════════════════════
𐀪 Author: Naveen J
════════════════════════
Time: Fri, 04 Jul 2025 02:43:47 GMT
════════════════════════
Tags: #computer_science #artificial_intelligence #hacking #cybersecurity #technology
Title: 200+ Life Hacks Review
════════════════════════
𐀪 Author: xuanthuan123
════════════════════════
Time: Fri, 04 Jul 2025 01:55:20 GMT
════════════════════════
Tags: #hacking #hacks #li̇fe #200
Title: Ejercicio Active Directory, VPN Pivoting y Escalada de Privilegios
════════════════════════
𐀪 Author: Luis Angel Ramirez Mendoza
════════════════════════
Time: Fri, 04 Jul 2025 01:44:50 GMT
════════════════════════
Tags: #metodologia #pentesting #ciberseguridad #hacking #red_team