Daily Writeups
3.3K subscribers
1 photo
116K links
Daily Bug Bounty / Cybersecurity Writeups
Source Code : https://github.com/Spix0r/writeup-miner
Download Telegram
Title: Secrets That Survive Everything: The Runtime Security Gap Left Unguarded
════════════════════════
𐀪 Author: Kumar G
════════════════════════
Time: Tue, 07 Apr 2026 14:11:35 GMT
════════════════════════
Tags: #cybersecurity #penetration_testing #security #web_development #javascript
Title: Axios npm Supply Chain Attack: Inside the 3-Hour Compromise That Delivered a Cross-Platform RAT
════════════════════════
𐀪 Author: Ankit Mishra
════════════════════════
Time: Wed, 08 Apr 2026 08:25:21 GMT
════════════════════════
Tags: #npm #cybersecurity #infosec #supply_chain_security #javascript
Title: CVE-2026-34208 (CVSS 10): Critical Sandbox Escape Uncovered in SandboxJS
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Wed, 08 Apr 2026 13:07:55 +0000
════════════════════════
Tags: #Vulnerability Report #CVE_2026_34208 #cybersecurity #Host Poisoning #infosec #JavaScript Security #Node.js #rce #Sandbox Breach #Sandbox Escape #SandboxJS #supply chain attack
Title: JIT Heap Spray Explained: A Simple Guide for Beginners
════════════════════════
𐀪 Author: Ashen Bhagya
════════════════════════
Time: Thu, 09 Apr 2026 06:47:28 GMT
════════════════════════
Tags: #computer_security #javascript #programming_basic #cybersecurity #ethical_hacking
Title: Code Red for AI: CVSS-10 Vulnerability in Flowise Under Active Attack from Starlink IP
════════════════════════
𐀪 Author: ddos
════════════════════════
Time: Thu, 09 Apr 2026 08:16:34 +0000
════════════════════════
Tags: #Vulnerability #AI security #CustomMCP #CVE_2025_59528 #Flowise #InfoSec 2026 #JavaScript Injection #Patch Alert #RCE #remote code execution #VulnCheck #Zero Trust
Title: Denial of Service Alert: React Server Components Vulnerability Causes CPU Spikes
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Thu, 09 Apr 2026 09:44:46 +0000
════════════════════════
Tags: #Vulnerability Report #CVE_2026_23869 #Denial of Service #dos #infosec #JavaScript Security #Node.js #React #React Server Components #RSC #web development #Webpack
Title: Frontend Secrets Exposed: Vite Patches Critical Security Bypass in Dev Server
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Thu, 09 Apr 2026 12:15:24 +0000
════════════════════════
Tags: #Vulnerability Report #Arbitrary File Read #CVE_2026_39363 #CVE_2026_39364 #cybersecurity #Dev Tools #Frontend Development #HMR #infosec #javascript #Vite #Web Security
Title: Learning About Post-message Vulnerabilities
════════════════════════
𐀪 Author: Raunak Gupta Aka Biscuit
════════════════════════
Time: Fri, 10 Apr 2026 08:51:06 GMT
════════════════════════
Tags: #javascript #programming #cybersecurity #ethical_hacking #bug_bounty
Title: CVE-2026-40175 (CVSS 10): Critical Axios Vulnerability and Exploit Code Disclosed Publicly
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Sun, 12 Apr 2026 17:10:09 +0000
════════════════════════
Tags: #Vulnerability Report #AWS IMDSv2 #Axios #Cloud Security #CVE_2026_40175 #Header injection #infosec #javascript #Node.js #Prototype Pollution #rce #request smuggling
Title: The Stealthy Evolution of the DesckVB RAT Infection Chain
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Mon, 13 Apr 2026 01:34:25 +0000
════════════════════════
Tags: #Malware #.NET Reflection #C2 #cybersecurity #DesckVB RAT #Fileless Malware #In_Memory Attack #JavaScript Trojan #Lat61 #malware #powershell #Process Hijacking