Daily Writeups
3.52K subscribers
2 photos
129K links
Daily Bug Bounty / Cybersecurity Writeups
Source Code : https://github.com/Spix0r/writeup-miner
Download Telegram
Title: CVE-2025-31191: Microsoft Exposes macOS Vulnerability Allowing App Sandbox Escape
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Mon, 05 May 2025 00:13:19 +0000
════════════════════════
Tags: #Vulnerability #Keychain Exploit #macOS vulnerability #Microsoft Threat Intelligence #Sandbox Escape #Security_Scoped Bookmarks
Title: Odyssey Stealer: macOS Under Attack by ClickFix-Driven Infostealer
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Sat, 28 Jun 2025 00:20:30 +0000
════════════════════════
Tags: #Malware #AppleScript #Browser Data #ClickFix #cryptocurrency #cybersecurity #Cyfirma #Infostealer #Keychain #macOS #malware #Odyssey Stealer #passwords
Title: PoC Available: macOS Sequoia Flaw Allows Keychain Dump and TCC Bypass (CVSS 9.8)
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Fri, 05 Sep 2025 03:20:11 +0000
════════════════════════
Tags: #Vulnerability #gcore vulnerability #Keychain #macOS Sequoia #privilege escalation #TCC Bypass
Title: “Can You Hear Me?” BlueNoroff Hackers Use Fake Audio Glitch to Breach macOS
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Thu, 05 Feb 2026 00:20:32 +0000
════════════════════════
Tags: #Cyber Security #Malware #BlueNoroff #Crypto Heist #Daylight Security #GhostCall #Keychain Theft #Lazarus Group #macOS security #malware #Microsoft Teams #social engineering
Title: Deceptive “DeepSeek-Claw” Skill Hijacks OpenClaw Agents to Steal Credentials
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Thu, 07 May 2026 07:01:56 +0000
════════════════════════
Tags: #Malware #AI Agents #AI security #cybersecurity #DeepSeek_Claw #GhostLoader #infosec #Keychain Theft #malware #OpenClaw #Remcos RAT #social engineering #Zscaler ThreatLabz
Title: The Terminal Trap: How the “ClickFix” Scam Tricks Mac Users into Self-Infecting with Data-Stealing Malware
════════════════════════
𐀪 Author: ddos
════════════════════════
Time: Mon, 11 May 2026 03:25:10 +0000
════════════════════════
Tags: #Malware #AMOS #Apple XProtect #ClickFix #Cryptocurrency Theft #Cybersecurity 2026 #Data Stealer #Keychain Security #macos #MacSync #malware #Shub Stealer #Terminal
Title: The Script Editor Trap: New macOS “Reaper” Malware Bypasses Terminal Defenses to Steal Keychains
════════════════════════
𐀪 Author: ddos
════════════════════════
Time: Wed, 20 May 2026 07:22:37 +0000
════════════════════════
Tags: #Malware #applescript URI Scheme #Gatekeeper xattr Evasion #Keychain Exfiltration #LaunchAgent Persistence #macOS Reaper Malware #macOS Tahoe Security Bypass #Remote Access Trojan #Script Editor Exploit #SentinelOne Threat Intel #SHub Infostealer
Title: Amos Stealer Targets macOS Keychain Files and Browser Passwords
════════════════════════
𐀪 Author: Deeba Ahmed
════════════════════════
Time: Tue, 16 Jun 2026 16:27:00 +0000
════════════════════════
Tags: #Security #Malware #AMOS Stealer #CyberProof #Cybersecurity #Infostealer #Keychain #macOS #Scam #Social Engineering
Title: Stop leaving API keys in .env files
════════════════════════
𐀪 Author: nickelnox
════════════════════════
Time: Tue, 11 Aug 2026 02:23:09 GMT
════════════════════════
Tags: #ai #secretmanagement #api_security #keychain