Daily Writeups
3.48K subscribers
2 photos
128K links
Daily Bug Bounty / Cybersecurity Writeups
Source Code : https://github.com/Spix0r/writeup-miner
Download Telegram
Title: Malicious Packages Weaponize OAST for Stealthy Data Exfiltration and Reconnaissance
════════════════════════
𐀪 Author: do son
════════════════════════
Time: Mon, 06 Jan 2025 01:41:00 +0000
════════════════════════
Tags: #Cyber Security #Malware #npm #OAST techniques #PyPI #RubyGems
Title: Alert: Malicious RubyGems Impersonate Fastlane Plugins, Steal CI/CD Data
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Wed, 04 Jun 2025 00:24:29 +0000
════════════════════════
Tags: #Malware #CI/CD #cybersecurity #Fastlane #malware #RubyGems #Software security #supply chain attack #Telegram #Typosquatting #Vietnam
Title: RubyGems Under Attack: 60 Malicious Packages Found Stealing Credentials from Grey-Hat Marketers
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Fri, 08 Aug 2025 03:00:37 +0000
════════════════════════
Tags: #Malware #cybersecurity #Grey_Hat Marketing #Infostealer #malware #Ruby #RubyGems #supply chain attack #Typosquatting
Title: Rack Security Update: High-Severity Flaw Bypasses Parameter Limit, Exposing Apps to DoS Attacks
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Fri, 26 Sep 2025 08:37:36 +0000
════════════════════════
Tags: #Vulnerability Report #CVE_2025_59830 #Denial of Service #dos #QueryParser #Rack #Ruby #RubyGems #Web Security
Title: Rate Limiting Your Rails API with Rack::Attack gem
════════════════════════
𐀪 Author: Talha Khalid
════════════════════════
Time: Mon, 02 Mar 2026 00:52:59 GMT
════════════════════════
Tags: #api_rate_limiting #api_security #ruby_on_rails #web_development #rubygems
Title: Waking the Sleepers: The BufferZoneCorp Campaign Poisoning Ruby and Go Ecosystems
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Sat, 02 May 2026 03:23:31 +0000
════════════════════════
Tags: #Malware #BufferZoneCorp #CI/CD security #Credential Theft #cybersecurity #Go Modules #infosec #knot_theory #malware #RubyGems #Socket #supply chain attack
Title: GemStuffer: Attackers Weaponize RubyGems as a Covert Data Drop for UK Gov Scraping
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Wed, 13 May 2026 04:21:32 +0000
════════════════════════
Tags: #Malware #Cyber Security #data exfiltration #GemStuffer #infosec #Malware Analysis #ModernGov #Ruby Security #RubyGems #Socket #supply chain attack #UK Council Security
Title: RubyGems Under Siege: New Account Registrations Suspended After Massive Malware Incursion
════════════════════════
𐀪 Author: ddos
════════════════════════
Time: Wed, 13 May 2026 09:00:18 +0000
════════════════════════
Tags: #Cybercriminals #Cyber Security News #Infosec #Maciej Mensfeld #Malware 2026 #Mend.io #open source security #Package Manager Security #Ruby on Rails #RubyGems #supply chain attack #TeamPCP