Daily Writeups
3.3K subscribers
1 photo
116K links
Daily Bug Bounty / Cybersecurity Writeups
Source Code : https://github.com/Spix0r/writeup-miner
Download Telegram
Title: CVE-2025-64439: RCE Flaw Detected in LangGraph: Agent Orchestration Framework at Risk
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Mon, 10 Nov 2025 00:29:51 +0000
════════════════════════
Tags: #Vulnerability Report #AI agent #Checkpoint #CVE_2025_64439 #JsonPlusSerializer #LangGraph #rce #Remote Code Execution
Title: High-Severity Elastic Defend Flaw (CVE-2025-37735) Allows Local Attackers to Delete Arbitrary Files as SYSTEM
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Mon, 10 Nov 2025 00:19:18 +0000
════════════════════════
Tags: #Vulnerability Report #Arbitrary File Deletion #CVE_2025_37735 #Elastic Defend #endpoint protection #privilege escalation #Windows Security
Title: China APT Infiltrates US Policy Nonprofit in Months-Long Espionage Campaign Using DLL Sideloading
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Mon, 10 Nov 2025 00:16:35 +0000
════════════════════════
Tags: #Cyber Security #APT41 #Broadcom #China APT #DLL Sideloading #Espionage #Non_Profit Target #Scheduled Task #US Policy
Title: MSP Nightmare: Medusa & DragonForce Exploit SimpleHelp RMM Flaws for SYSTEM Access
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Mon, 10 Nov 2025 00:11:28 +0000
════════════════════════
Tags: #Cybercriminals #CVE_2024_57726 #DragonForce #Medusa #MSP #ransomware #RMM #SimpleHelp #SupplyChain #SystemAccess
Title: PoC Exploit Released for CVE-2025-55680 – Windows Cloud Files Mini Filter Driver Elevation of Privilege Flaw
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Mon, 10 Nov 2025 00:01:01 +0000
════════════════════════
Tags: #Vulnerability Report #Cloud Files Minifilter #CVE_2025_55680 #privilege escalation #race condition #TOCTOU #Windows LPE
Title: Why a Degree Won’t Get You a High Paying Cyber Job in Singapore -Offensive Security Roles are…
════════════════════════
𐀪 Author: Yua Mikanana
════════════════════════
Time: Mon, 10 Nov 2025 00:53:43 GMT
════════════════════════
Tags: #cybersecurity #singapore #cyber #technology #hacking
Title: CyCTF 2025 — Reverse “TakeAHook”
════════════════════════
𐀪 Author: VampireXRay
════════════════════════
Time: Mon, 10 Nov 2025 00:46:39 GMT
════════════════════════
Tags: #hacking #cybersecurity #cve #reverse_engineering #ctf
Title: Proving Grounds - LaVita
════════════════════════
𐀪 Author: jniket
════════════════════════
Time: Mon, 10 Nov 2025 00:33:39 GMT
════════════════════════
Tags: #provinggrounds #hacking #penetration_testing #linux #cybersecurity
Title: Why Russian Ransomware Gangs Never Attack Their Own Backyard
════════════════════════
𐀪 Author: David SEHYEON Baek
════════════════════════
Time: Mon, 10 Nov 2025 00:23:31 GMT
════════════════════════
Tags: #hacking #cybercrime #cybersecurity #russia #ransomware
Title: The Business of Harvesting VPN Credentials for Resale
════════════════════════
𐀪 Author: David SEHYEON Baek
════════════════════════
Time: Sun, 09 Nov 2025 23:51:06 GMT
════════════════════════
Tags: #cybersecurity #passwords #vpn #hacking #cybercrime
Title: Plotted-TMS— TryHackMe Walkthrough | Romedix
════════════════════════
𐀪 Author: Romedix
════════════════════════
Time: Mon, 10 Nov 2025 01:48:22 GMT
════════════════════════
Tags: #cybersecurity #red_team #tryhackme_walkthrough #tryhackme #ctf_walkthrough
Title: When GRC and Heatmaps Do More Harm Than Good to Cyber Risk Management — Building the Language of…
════════════════════════
𐀪 Author: Juan Pablo Castro
════════════════════════
Time: Mon, 10 Nov 2025 01:07:14 GMT
════════════════════════
Tags: #risk_management #cybersecurity #cyber_risk #heatmap #grc
Title: How to Protect Public APIs Without API Keys
════════════════════════
𐀪 Author: Cybamatica
════════════════════════
Time: Mon, 10 Nov 2025 01:05:52 GMT
════════════════════════
Tags: #rest_api #cyber_security_awareness #api_security #cybersecurity #api_development
Title: Scenario based answers helpful for understanding concepts and interview
════════════════════════
𐀪 Author: The Commoness
════════════════════════
Time: Mon, 10 Nov 2025 00:58:55 GMT
════════════════════════
Tags: #cybersecurity_training #cybersecurity #ethical_hacking #cybersecurity_awareness #interview_questions
Title: LetsDefend | Learn Sigma | Challenge Walkthrough
════════════════════════
𐀪 Author: Drew Arpino
════════════════════════
Time: Mon, 10 Nov 2025 00:02:05 GMT
════════════════════════
Tags: #sigma_rules #letsdefendio #lets_defend #cybersecurity #blue_team
Title: The Builder's Notes: Your CFO Just Called — Except It's a $2.4M Deepfake and Your AI Approved It
════════════════════════
𐀪 Author: Piyoosh Rai
════════════════════════
Time: Mon, 10 Nov 2025 00:02:05 GMT
════════════════════════
Tags: #fintech #machine_learning #technology #artificial_intelligence #cybersecurity
Title: GDIOCSpider: The New Open-Source Python Tool for GDrive Incident Response
════════════════════════
𐀪 Author: ddos
════════════════════════
Time: Mon, 10 Nov 2025 03:01:11 +0000
════════════════════════
Tags: #Open Source Tool #CybersecurityTool #GDIOCSpider #GDrive #IncidentResponse #IOCExtraction #IOCFlagger #OpenSource #python
Title: Microsoft Speeds Up Windows Recovery (QMR) & Allows Smart App Control Toggle
════════════════════════
𐀪 Author: ddos
════════════════════════
Time: Mon, 10 Nov 2025 02:55:14 +0000
════════════════════════
Tags: #Windows #Microsoft #QMR #Recovery #SAC #SecurityUpdate #Windows11 #WindowsResiliencyInitiative #WinRE
Title: 2027 Time Bomb: Covert NuGet Packages Target SQL and PLCs with Scheduled Sabotage
════════════════════════
𐀪 Author: ddos
════════════════════════
Time: Mon, 10 Nov 2025 02:53:09 +0000
════════════════════════
Tags: #Malware #.NET #cybersecurity #IndustrialControl #NuGet #PLC #PostgreSQL #sabotage #SQLServer #SupplyChainAttack