Daily Writeups
3.52K subscribers
2 photos
129K links
Daily Bug Bounty / Cybersecurity Writeups
Source Code : https://github.com/Spix0r/writeup-miner
Download Telegram
Title: Improper Authentication in a famous Trading website
════════════════════════
𐀪 Author: Anonymousshetty
════════════════════════
Time: Tue, 14 Jan 2025 14:59:48 GMT
════════════════════════
Tags: #bug_bounty #cybersecurity #ethical_hacking #improper_access_control #bug_bounty_tips
Title: OWASP LLM Top 10 — Improper Output Handling in AI Systems
════════════════════════
𐀪 Author: Anil Kumar Nandibhatla
════════════════════════
Time: Fri, 31 Jan 2025 05:29:45 GMT
════════════════════════
Tags: #llm #best_practices #owasp #improper_output_handling #cybersecurity
Title: $200 Easy Bounty: Improper Rate Limiting Exploit
════════════════════════
𐀪 Author: It4chis3c
════════════════════════
Time: Thu, 06 Feb 2025 05:54:29 GMT
════════════════════════
Tags: #bounties #rate_limit_bypass #bug_bounty_writeup #improper_access_control #secrets
Title: CVE-2025-2492: Critical ASUS Router Vulnerability Requires Immediate Firmware Update
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Mon, 21 Apr 2025 00:33:55 +0000
════════════════════════
Tags: #Vulnerability #AiCloud #ASUS #CVE_2025_2492 #cybersecurity #firmware update #improper authentication #Remote Access #router security
Title: How I Registered an Account Using Someone Else’s Email (Without Ever Verifying It)
════════════════════════
𐀪 Author: ASC Lages
════════════════════════
Time: Wed, 30 Apr 2025 02:48:17 GMT
════════════════════════
Tags: #improper_authentication #bugbounty_story #authentication_bypass #api_security
Title: Breaking Boundaries: Vertical Privilege Escalation to Admin via Insecure Direct Request
════════════════════════
𐀪 Author: Asad Ullah Evan
════════════════════════
Time: Tue, 27 May 2025 17:32:30 GMT
════════════════════════
Tags: #hunting #web_penetration_testing #privilege_escalation #bug_bounty #improper_access_control
Title: Leak of Internal Reference Name at Multiple Locations.
════════════════════════
𐀪 Author: xploiterr
════════════════════════
Time: Tue, 29 Jul 2025 23:15:29 GMT
════════════════════════
Tags: #improper_access_control #bug_bounty #bugbounty_tips
Title: QNAP Patches Critical Flaw (CVE-2025-52856) with CVSS 9.3
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Fri, 29 Aug 2025 18:15:32 +0000
════════════════════════
Tags: #Vulnerability Report #CVE_2025_52856 #CVE_2025_52861 #cybersecurity #improper authentication #NVR #Path Traversal #QNAP #QVR #Vulnerability
Title: API9:2023 — Improper Inventory Management
════════════════════════
𐀪 Author: Apifort
════════════════════════
Time: Tue, 23 Sep 2025 07:38:11 GMT
════════════════════════
Tags: #api_security #cybersecurity #apifort #owasp_api_security_top_10 #improper_inventory
Title: GitLab Patches High Runner Hijacking Flaw (CVE-2025-11702) and Multiple DoS Vulnerabilities
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Wed, 22 Oct 2025 09:20:28 +0000
════════════════════════
Tags: #Vulnerability Report #CI/CD security #CVE_2025_11702 #dos #gitlab #Improper Access Control #Runner Hijacking #security patch
Title: Elastic Patches High-Severity Privilege Escalation Flaw in Elastic Cloud Enterprise (CVE-2025-37736)
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Mon, 03 Nov 2025 00:00:22 +0000
════════════════════════
Tags: #Vulnerability Report #API Bypass #CVE_2025_37736 #ECE #Elastic #Improper Authorization #privilege escalation #Readonly User
Title: Critical Dell Data Lakehouse Vulnerability (CVE-2025-46608) Allows Privilege Escalation
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Thu, 13 Nov 2025 01:47:40 +0000
════════════════════════
Tags: #Vulnerability Report #Critical Vulnerability #CVE_2025_46608 #Dell Data Lakehouse #Improper Access Control #privilege escalation
Title: 2FA bypass after fix via manually injecting “isVerifyAuth” cookie in local storage
════════════════════════
𐀪 Author: Mahmoud Magdy
════════════════════════
Time: Wed, 11 Feb 2026 17:12:28 GMT
════════════════════════
Tags: #improper_authentication #2fa_bypass #bug_bounty_tips #otp_bypass #bug_bounty_writeup
Title: Under Active Attack: Critical 9.1 CVSS FortiClient EMS Flaw Exploited in the Wild
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Sat, 04 Apr 2026 01:35:30 +0000
════════════════════════
Tags: #Vulnerability Report #CVE_2026_35616 #Enterprise Security #exploited in the wild #FortiClient EMS #Fortinet #Hotfix #Improper Access Control #infosec #rce #security patch #zero_day
Title: Bug Bounty Journey — Valid Report Part 11
════════════════════════
𐀪 Author: 0xF3r4t
════════════════════════
Time: Mon, 06 Apr 2026 18:58:02 GMT
════════════════════════
Tags: #web_application_security #bug_bounty #improper_access_control #intigriti
Title: How a Throwaway Email Walked Me Into Someone Else’s Tenant — Unauthorized PII Information Access
════════════════════════
𐀪 Author: Thamotharan Vajramani
════════════════════════
Time: Wed, 20 May 2026 16:41:42 GMT
════════════════════════
Tags: #bug_bounty_tips #bug_bounty_writeup #unauthorized_access #improper_access_control #bug_bounty