Daily Writeups
3.53K subscribers
2 photos
130K links
Daily Bug Bounty / Cybersecurity Writeups
Source Code : https://github.com/Spix0r/writeup-miner
Download Telegram
Title: Tap-and-Steal: Over 760 Android Apps Exploit NFC/HCE for Payment Card Theft in Global Financial Scam
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Mon, 03 Nov 2025 00:32:14 +0000
════════════════════════
Tags: #Cybercriminals #Android NFC #Brazil #financial fraud #Host Card Emulation #Payment Card Theft #russia #Telegram C2
Title: Chinese APT UNC6384 Pivots to Europe, Exploits Windows LNK Flaw to Deploy PlugX via Canon DLL Sideloading
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Mon, 03 Nov 2025 00:29:48 +0000
════════════════════════
Tags: #Cyber Security #Vulnerability Report #Chinese APT #DLL Sideloading #Espionage #European Diplomacy #LNK Exploit #PlugX #UNC6384 #ZDI_CAN_25373
Title: Android AI Scam Defense Blocks 10 Billion Monthly Threats; Users 58% More Likely to Avoid Scam Texts Than iOS
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Mon, 03 Nov 2025 00:26:48 +0000
════════════════════════
Tags: #Android #Cybercriminals #AI Scam Protection #Android security #Call Protection #Google Messages #iOS Comparison #Mobile Fraud #YouGov
Title: North Korean APTs Upgrade Arsenal: Kimsuky Uses Stealthy HttpTroy, Lazarus Deploys New BLINDINGCAN RAT
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Mon, 03 Nov 2025 00:22:58 +0000
════════════════════════
Tags: #Cyber Security #Malware #BLINDINGCAN #Cyberespionage #DLL Sideloading #HttpTroy #Kimsuky #Lazarus Group #North Korea APT #Stealth Malware
Title: Tangerine Turkey Cryptomining Worm Spreads Via USB Drives, Hides Payloads with VBScript and LOLBins
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Mon, 03 Nov 2025 00:04:57 +0000
════════════════════════
Tags: #Malware #cryptomining #defense evasion #LOLBins #persistence #Tangerine Turkey #USB malware #VBScript Worm #XMRig
Title: Copyright Pivot: Getty Images Partners with Perplexity AI to Tackle Content Attribution
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Mon, 03 Nov 2025 00:01:36 +0000
════════════════════════
Tags: #Technology #AI Search #Attribution #content #copyright #Getty Images #Lawsuit #Licensing #Perplexity.ai
Title: Elastic Patches High-Severity Privilege Escalation Flaw in Elastic Cloud Enterprise (CVE-2025-37736)
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Mon, 03 Nov 2025 00:00:22 +0000
════════════════════════
Tags: #Vulnerability Report #API Bypass #CVE_2025_37736 #ECE #Elastic #Improper Authorization #privilege escalation #Readonly User
Title: Testing XSS in chatbot instances
════════════════════════
𐀪 Author: 4osp3l
════════════════════════
Time: Sun, 02 Nov 2025 23:54:23 GMT
════════════════════════
Tags: #bug_bounty #xss_attack
Title: The Digital Hoarder’s Dilemma: Why Your Backup Strategy Is Probably Broken (And How to Fix It)
════════════════════════
𐀪 Author: Aeon Flex, Elriel Assoc. 2133 [NEON MAXIMA]
════════════════════════
Time: Mon, 03 Nov 2025 01:14:35 GMT
════════════════════════
Tags: #cybersecurity #programming #technology #privacy #hacking
Title: The Delicate and Destructive Art of the Side Project Graveyard
════════════════════════
𐀪 Author: Aeon Flex, Elriel Assoc. 2133 [NEON MAXIMA]
════════════════════════
Time: Mon, 03 Nov 2025 00:18:56 GMT
════════════════════════
Tags: #productivity #hacking #coding #side_project #technology
Title: Invisible Entry Points: Why DNS, Ports, and IP Hygiene Define Web Security
════════════════════════
𐀪 Author: Cybamatica
════════════════════════
Time: Mon, 03 Nov 2025 01:36:18 GMT
════════════════════════
Tags: #network_security #dns #infosec #cybersecurity #web_security
Title: PortSwigger Labs: Server Side Request Forgery (SSRF) Writeup (ALL LABS)
════════════════════════
𐀪 Author: awes0meness
════════════════════════
Time: Mon, 03 Nov 2025 01:56:41 GMT
════════════════════════
Tags: #burpsuite #penetration_testing #portswigger #web_application_security #cybersecurity
Title: PortSwigger Labs: Prototype Pollution Writeup (All labs)
════════════════════════
𐀪 Author: awes0meness
════════════════════════
Time: Mon, 03 Nov 2025 01:48:31 GMT
════════════════════════
Tags: #penetration_testing #web_application_security #portswigger #cybersecurity #burpsuite
Title: Ini Cara Gampang Bikin Sistem Jebol!
════════════════════════
𐀪 Author: Jadi Hacker
════════════════════════
Time: Mon, 03 Nov 2025 01:37:57 GMT
════════════════════════
Tags: #owasp #websecurity_testing #cybersecurity #penetration_testing #broken_access_control
Title: Inside OAuth 2.0: The Four Roles Powering Every ‘Sign in with Google
════════════════════════
𐀪 Author: Himanshu Soni
════════════════════════
Time: Mon, 03 Nov 2025 00:01:55 GMT
════════════════════════
Tags: #software_development #data_science #artificial_intelligence #cybersecurity #software_engineering
Title: Threat Intelligence Fundamentals: Turning Data Into Defense
════════════════════════
𐀪 Author: Cybersecurity Simplified
════════════════════════
Time: Mon, 03 Nov 2025 00:01:55 GMT
════════════════════════
Tags: #information_security #threat_intelligence #women_in_tech #cybersecurity
Title: Blue Team Labs Online | Memory Analysis — Ransomware | Walkthrough
════════════════════════
𐀪 Author: Drew Arpino
════════════════════════
Time: Mon, 03 Nov 2025 00:01:55 GMT
════════════════════════
Tags: #blueteamlabs #btlo #blueteamlabsonline #blue_team #cybersecurity