Daily Writeups
3.52K subscribers
2 photos
129K links
Daily Bug Bounty / Cybersecurity Writeups
Source Code : https://github.com/Spix0r/writeup-miner
Download Telegram
Title: Stopping Bad Actors: Inside 1Password’s Security Model
════════════════════════
𐀪 Author: Ely
════════════════════════
Time: Fri, 10 Oct 2025 18:50:02 GMT
════════════════════════
Tags: #cryptography #typescript #password_manager #cybersecurity #web_development
Title: Critical Auth Bypass (CVE-2025-61928) in Better Auth Allows Hackers to Steal User API Keys
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Mon, 13 Oct 2025 00:30:48 +0000
════════════════════════
Tags: #Vulnerability Report #API Key Theft #Authentication Bypass #Better Auth #Critical Vulnerability #CVE_2025_61928 #Next.js #TypeScript
Title: Octoverse 2025: India to Surpass U.S. Developers; AI Becomes Baseline
════════════════════════
𐀪 Author: ddos
════════════════════════
Time: Fri, 31 Oct 2025 03:19:36 +0000
════════════════════════
Tags: #Technology #AI #Copilot #Github #India Developers #Octoverse #Software Development #TypeScript
Title: The AI Revolution in Writing:
════════════════════════
𐀪 Author: Ki Lov3 | Bestselling Indie Author
════════════════════════
Time: Sun, 02 Nov 2025 08:41:11 GMT
════════════════════════
Tags: #social_media #freelancing #cybersecurity #typescript #media
Title: Secure Practices Implementations in Node.js
════════════════════════
𐀪 Author: Mark O'Keeffe
════════════════════════
Time: Tue, 04 Nov 2025 10:35:50 GMT
════════════════════════
Tags: #application_security #typescript #secure_coding #nodejs #cyber_security_awareness
Title: Dev Oversight: Apple Accidentally Leaked Entire App Store Web Source Code via SourceMap
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Wed, 05 Nov 2025 03:15:54 +0000
════════════════════════
Tags: #Data Leak #App Store #Apple #Data Exposure #Procedural Lapse #source code #SourceMap #Svelte #TypeScript
Title: Dev Oversight: Apple Accidentally Leaked Entire App Store Web Source Code via SourceMap
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Wed, 05 Nov 2025 03:15:54 +0000
════════════════════════
Tags: #Data Leak #App Store #Apple #Data Exposure #Procedural Lapse #source code #SourceMap #Svelte #TypeScript
Title: Dev Oversight: Apple Accidentally Leaked Entire App Store Web Source Code via SourceMap
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Wed, 05 Nov 2025 03:15:54 +0000
════════════════════════
Tags: #Data Leak #App Store #Apple #Data Exposure #Procedural Lapse #source code #SourceMap #Svelte #TypeScript
Title: Stop Leaking Your Secrets: Solving the Hidden API Key/Secret Problem in Web Apps
════════════════════════
𐀪 Author: Jens@Fivesec
════════════════════════
Time: Wed, 05 Nov 2025 10:46:54 GMT
════════════════════════
Tags: #typescript #web_development #angular #cybersecurity #javascript
Title: Introducing dssrf: A Safe‑by‑Construction SSRF Defense Library for Node.js
════════════════════════
𐀪 Author: Relun Sec
════════════════════════
Time: Sun, 14 Dec 2025 09:57:35 GMT
════════════════════════
Tags: #ssrf #cybersecurity #typescript #security #javascript
Title: “Better Auth” Framework Alert: The Double-Slash Trick That Bypasses Security Controls
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Thu, 18 Dec 2025 00:33:26 +0000
════════════════════════
Tags: #Vulnerability Report #access control bypass #Better Auth #CVSS 8.6 #javascript #Path Normalization #Proxy Security #Rate Limit Evasion #rou3 #TypeScript #Web Security
Title: NestJS Validation That Actually Secures
════════════════════════
𐀪 Author: Syntal
════════════════════════
Time: Tue, 03 Feb 2026 07:31:01 GMT
════════════════════════
Tags: #backend #web_development #api_security #nestjs #typescript
Title: Poisoned Comments: Critical Orval Flaw (CVE-2026-25141) Injects Code
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Wed, 04 Feb 2026 00:36:11 +0000
════════════════════════
Tags: #Vulnerability Report #code_injection #CVE_2026_23947 #CVE_2026_25141 #Developer Tools #JavaScript Security #OpenAPI #Orval #Supply Chain Security #TypeScript #web development
Title: Password Hijack in the Modern Stack: Payload CMS Patches Critical 9.1 CVSS Reset Flaw
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Fri, 03 Apr 2026 14:30:48 +0000
════════════════════════
Tags: #Vulnerability Report #Backend Security #CVE_2026_34751 #Headless CMS #infosec #Next.js #password reset #Patch Alert #Payload CMS #React #TypeScript #Vulnerability #Web Security
Title: The WordPress Killer? Cloudflare Unveils EmDash, the AI-Native CMS Built for the Serverless Epoch
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Fri, 03 Apr 2026 09:15:52 +0000
════════════════════════
Tags: #Technology #AI_native #Astro 6.0 #cloudflare #cms #Cybersecurity 2026 #EmDash #open_source #serverless #TypeScript #V8 Isolate #WordPress Alternative
Title: High-Severity SSRF Flaw Uncovered in Angular’s Server-Side Rendering
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Fri, 17 Apr 2026 02:32:21 +0000
════════════════════════
Tags: #Vulnerability Report #@angular/platform_server #Angular #CVE #infosec #javascript #Origin Hijacking #Server_Side Rendering #SSR #ssrf #TypeScript #Web Security
Title: Stop Fighting “For you”: Making X’s Timeline Stick to Following + Latest
════════════════════════
𐀪 Author: DAC
════════════════════════
Time: Thu, 07 May 2026 14:17:46 GMT
════════════════════════
Tags: #chrome_extension #twitter #typescript #tools #xs
Title: From “Following Pin” to an Anti-Algorithm Fatigue Tool
════════════════════════
𐀪 Author: DAC
════════════════════════
Time: Fri, 08 May 2026 14:02:45 GMT
════════════════════════
Tags: #xs #frontend #chrome_extension #ux #typescript
Title: Better Auth SSRF Flaw CVE-2026-53513 (CVSS 9.6) Threatens 19M-Download Auth Library
════════════════════════
𐀪 Author: Do Son
════════════════════════
Time: Tue, 14 Jul 2026 01:00:18 +0000
════════════════════════
Tags: #Vulnerability Report #Account Takeover #Better Auth #CVE_2026_53513 #OIDC #SSO #ssrf #TypeScript Authentication