Daily Writeups
3.52K subscribers
2 photos
129K links
Daily Bug Bounty / Cybersecurity Writeups
Source Code : https://github.com/Spix0r/writeup-miner
Download Telegram
Title: VaultGemma: Google’s New AI Model Is the First with Differential Privacy
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Mon, 15 Sep 2025 01:31:47 +0000
════════════════════════
Tags: #Technology #AI #Differential Privacy #Gemma #google #Hugging Face #Kaggle #LLM #open_source #privacy #VaultGemma
Title: AI Hub Hijacked: Polymorphic Android RAT Abuses Hugging Face to Steal Data
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Wed, 04 Feb 2026 00:11:27 +0000
════════════════════════
Tags: #Malware #Accessibility Services Abuse #Android RAT #Banking Trojan #Bitdefender #Cybercrime #Hugging Face #mobile security #Polymorphic Malware #Premium Club #TrustBastion
Title: The Apache 2.0 Revolution: Google’s Gemma 4 Shatters the Open-Source Intelligence Ceiling
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Fri, 03 Apr 2026 07:15:17 +0000
════════════════════════
Tags: #Technology #AI 2026 #Apache 2.0 #Edge AI #Gemini 3 Pro #Gemma 4 #google #Hugging Face #LLM #machine_learning #Mixture_of_Experts #open_source
Title: Unpatched CVSS 10 Alert: ChromaDB Python Server Grants Pre-Auth RCE via Malicious Hugging Face Models
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Thu, 21 May 2026 01:45:25 +0000
════════════════════════
Tags: #Vulnerability Report #ChromaDB #CVE_2026_45829 #Cyber Security #FastAPI #HiddenLayer #Hugging Face #infosec #Machine Learning Security #Pre_Authentication RCE #trust_remote_code #Vector Database
Title: ChromaToast Exploit: Unpatched CVSS 10.0 Flaw Grants Pre-Auth RCE in ChromaDB Python Server
════════════════════════
𐀪 Author: ddos
════════════════════════
Time: Thu, 21 May 2026 06:59:37 +0000
════════════════════════
Tags: #Vulnerability #ChromaDB CVE_2026_45829 #HiddenLayer ChromaToast Research #Hugging Face Model Hijacking #Pre_Authentication Code Injection #Python FastAPI Server Vulnerability #Rust Implementation Mitigation #Shodan Internet Exposure #trust_remote_code Parameter #Unpatched Remote Code Execution #Vector Database Exploit
Title: The AI Model That Hijacks the Computer That Loads It
════════════════════════
𐀪 Author: Pop123
════════════════════════
Time: Sat, 20 Jun 2026 18:09:00 GMT
════════════════════════
Tags: #cybersecurity #technology #hacking #hugging_face #artificial_intelligence
Title: Hugging Face Discloses Production Breach Driven by an Autonomous AI Agent
════════════════════════
𐀪 Author: Do Son
════════════════════════
Time: Sat, 18 Jul 2026 16:21:07 +0000
════════════════════════
Tags: #Data Leak #AI agent #AI security #autonomous attack #Credential Theft #Data Breach #GLM #Hugging Face #Incident Response
Title: Hugging Face Suffers Autonomous AI Attack
════════════════════════
𐀪 Author: Nam Phong
════════════════════════
Time: Mon, 20 Jul 2026 07:55:36 +0000
════════════════════════
Tags: #Data Leak #Autonomous AI #Cyber Security #Hugging Face #Open Source Models
Title: Hugging Face Says Autonomous AI Agent System Breached Production Infrastructure
════════════════════════
𐀪 Author: Waqas
════════════════════════
Time: Mon, 20 Jul 2026 21:06:48 +0000
════════════════════════
Tags: #Security #Artificial Intelligence #Cyber Attacks #Data Breaches #Agentic AI #AI Agents #Cyber Attack #Cyber Crime #Cybersecurity #data breach #Hugging Face #Machine Learning
Title: OpenAI Autonomous Agent Escapes Sandbox to Breach Hugging Face
════════════════════════
𐀪 Author: Do Son
════════════════════════
Time: Wed, 22 Jul 2026 04:13:53 +0000
════════════════════════
Tags: #Vulnerability Report #AI Sandbox Bypass #Autonomous Cyberattack #GPT_5 #Hugging Face Hack #OpenAI Agent Escape