Daily Writeups
3.51K subscribers
2 photos
129K links
Daily Bug Bounty / Cybersecurity Writeups
Source Code : https://github.com/Spix0r/writeup-miner
Download Telegram
Title: Supply Chain Attack: Malicious Rust Crates Steal Solana and Ethereum Private Keys
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Fri, 26 Sep 2025 00:32:26 +0000
════════════════════════
Tags: #Malware #Crates.io #Crypto Stealer #Ethereum #private keys #Rust #security alert #Solana #supply chain attack #Typosquatting
Title: Cisco Zero-Day CVE-2025-20362 Under Attack: VPN Flaw in ASA/FTD Exposes Restricted Resources
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Fri, 26 Sep 2025 00:30:49 +0000
════════════════════════
Tags: #Vulnerability Report #ASA #cisco #CVE_2025_20362 #FTD #Secure Firewall #security update #unauthorized access #vpn #zero_day
Title: CVE-2025-54831: Apache Airflow Bug Exposes Sensitive Connection Passwords to Read-Only Users
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Fri, 26 Sep 2025 00:29:41 +0000
════════════════════════
Tags: #Vulnerability Report #Apache Airflow #Connection Credentials #CVE_2025_54831 #data leak #open_source #security vulnerability #Workflow Management
Title: BRICKSTORM Malware: China-Linked Hackers Stealthily Target US Tech and Legal Firms for 393 Days
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Fri, 26 Sep 2025 00:23:03 +0000
════════════════════════
Tags: #Cyber Security #Malware #backdoor #BRICKSTORM #China_nexus #Espionage #Go malware #SaaS #supply chain attack #UNC5221 #vmware
Title: GitLab Fixes High-Severity DoS Flaws: Unauthenticated Attackers Could Crash Instances
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Fri, 26 Sep 2025 00:16:12 +0000
════════════════════════
Tags: #Vulnerability Report #CVE_2025_10858 #Denial of Service #dos #gitlab #High Severity #JSON Attack #Patch Now #security update
Title: NVIDIA Patches High-Severity Code Injection Flaws in Megatron-LM AI Framework
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Fri, 26 Sep 2025 00:12:36 +0000
════════════════════════
Tags: #Vulnerability Report #AI Framework #code_injection #CVE_2025_23348 #LLM #Megatron_LM #nvidia #security update #Vulnerability
Title: AI vs. AI: Microsoft Blocks Phishing Attack Using LLM-Generated Obfuscated Code
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Fri, 26 Sep 2025 00:10:38 +0000
════════════════════════
Tags: #Cybercriminals #AI_Enhanced Threat #Credential Phishing #cybersecurity #LLM #Microsoft Defender #Microsoft Security Copilot #Obfuscation #SVG
Title: New Lone None Stealer Malware Hijacks Crypto Wallets via Fake Copyright Takedown Notices
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Fri, 26 Sep 2025 00:05:04 +0000
════════════════════════
Tags: #Malware #Cofense #copyright scam #Cryptocurrency Theft #Lone None Stealer #phishing #PXA Stealer #Stealer malware #Telegram C2
Title: LNK Stomping: Attackers Bypass Windows Security by Stripping the ‘Mark of the Web’
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Fri, 26 Sep 2025 00:00:41 +0000
════════════════════════
Tags: #Cybercriminals #AhnLab #CVE_2024_38217 #cyberattack #evasion #LNK Stomping #Mark_of_the_Web #MotW #Windows Security
Title: Beyond Burp Suite: Top 8 Underused Tools for Web App Security Testing (2025)
════════════════════════
𐀪 Author: Andrei Ivan
════════════════════════
Time: Fri, 26 Sep 2025 00:31:25 GMT
════════════════════════
Tags: #pentesting #web_security #penetration_testing #bug_bounty #cybersecurity_tools
Title: Stored XSS via PDF Upload in Live chat⚠️
════════════════════════
𐀪 Author: 0verRida
════════════════════════
Time: Fri, 26 Sep 2025 00:21:48 GMT
════════════════════════
Tags: #cybersecurity #pentesting #bug_bounty_writeup #bug_bounty_tips #bug_bounty
Title: How a JavaScript Developer Could Prevent Supply-Chain Attacks
════════════════════════
𐀪 Author: Emily Xiong
════════════════════════
Time: Fri, 26 Sep 2025 01:44:51 GMT
════════════════════════
Tags: #npm #javascript #hacking
Title: Part II — From Orbit to Exploit: Understanding the PWNSAT test case
════════════════════════
𐀪 Author: PWNSAT
════════════════════════
Time: Fri, 26 Sep 2025 01:14:43 GMT
════════════════════════
Tags: #cybersecurity #pwnsat #hacking #satellite #aeroespace
Title: From AI Fear to Terms of Service: A Security Professional’s Reality Check
════════════════════════
𐀪 Author: Imanologya
════════════════════════
Time: Fri, 26 Sep 2025 01:40:26 GMT
════════════════════════
Tags: #technology #cybersecurity #ai
Title: Patch Fatigue vs. Risk Context: Rethinking Vulnerability Remediation Priorities
════════════════════════
𐀪 Author: Sai Krishna Kakarla
════════════════════════
Time: Fri, 26 Sep 2025 00:46:00 GMT
════════════════════════
Tags: #vulnerability_management #threat_intelligence #cybersecurity #patch_management #risk
Title: Part 4: From backyard to battlefield, The Flight Controller.
════════════════════════
𐀪 Author: Pipeline
════════════════════════
Time: Fri, 26 Sep 2025 00:35:09 GMT
════════════════════════
Tags: #programming #technology #life #cybersecurity #drones
Title: Enhancement of Cloudbric WAF+ Completed
════════════════════════
𐀪 Author: Cloudbric
════════════════════════
Time: Fri, 26 Sep 2025 00:32:17 GMT
════════════════════════
Tags: #waf #cybersecurity #saas #cloudbric
Title: Cloudbric WAF+ 서비스 고도화 완료
════════════════════════
𐀪 Author: Cloudbric
════════════════════════
Time: Fri, 26 Sep 2025 00:31:17 GMT
════════════════════════
Tags: #saas #cloudbric #waf #cybersecurity
Title: VMware ile FortiGate Lab Kurulumu
════════════════════════
𐀪 Author: Onur Altuğ
════════════════════════
Time: Fri, 26 Sep 2025 00:08:00 GMT
════════════════════════
Tags: #vmware #network #cybersecurity #firewall #fortinet
Title: Critical Flaws in Supermicro BMC Enable Irreversible AI Server Rootkits Below the OS Level
════════════════════════
𐀪 Author: ddos
════════════════════════
Time: Fri, 26 Sep 2025 03:59:57 +0000
════════════════════════
Tags: #Vulnerability #Binarly #BMC #CVE_2025_7937 #data center #firmware #rootkit #Supermicro #Supply Chain #UEFI
Title: Global Cybercrime Crackdown: Interpol Operation HAECHI VI Recovers $439 Million in Stolen Assets
════════════════════════
𐀪 Author: ddos
════════════════════════
Time: Fri, 26 Sep 2025 03:58:03 +0000
════════════════════════
Tags: #Cybercriminals #BEC #cryptocurrency #cybercrime #Financial Crime #I_GRIP #Interpol #Money Laundering #Operation HAECHI VI