Daily Writeups
3.47K subscribers
2 photos
127K links
Daily Bug Bounty / Cybersecurity Writeups
Source Code : https://github.com/Spix0r/writeup-miner
Download Telegram
Title: How I Found 100+ Exposed AWS Keys in Public Git Repos
════════════════════════
𐀪 Author: Anmol Singh Yadav
════════════════════════
Time: Mon, 17 Feb 2025 19:46:44 GMT
════════════════════════
Tags: #cloud_security #aws #devsecops #github_security #hacking
Title: A maintainer’s guide to vulnerability disclosure: GitHub tools to make it simple
════════════════════════
𐀪 Author: Nancy Gariché
════════════════════════
Time: Mon, 24 Mar 2025 16:00:33 +0000
════════════════════════
Tags: #Security #Supply chain security #Vulnerability research #CVE integration #cybersecurity #GitHub Security Tools #open source security #private vulnerability reporting #security advisories #vulnerability disclosure
Title: Vulnerability Discovery and Exploit Development via GitHub
════════════════════════
𐀪 Author: Esra Kayhan
════════════════════════
Time: Sun, 20 Jul 2025 15:23:00 GMT
════════════════════════
Tags: #exploit_development #github_security #ethical_hacking #cybersecurity #technology
Title: Securing Your GitHub Codebase: 6 Essential Tools Every Developer Must Know
════════════════════════
𐀪 Author: Vedant Vartak
════════════════════════
Time: Fri, 12 Sep 2025 00:53:52 GMT
════════════════════════
Tags: #code_security #github #github_security #cybersecurity
Title: How I found Critical Bugs Easily on GitHub
════════════════════════
𐀪 Author: mohamed metwally
════════════════════════
Time: Sun, 14 Sep 2025 19:49:07 GMT
════════════════════════
Tags: #vulnerability_research #cybersecurity #information_disclosure #github_security #bug_bounty
Title: Kicking off Cybersecurity Awareness Month 2025: Researcher Spotlights and Enhanced Incentives
════════════════════════
𐀪 Author: Shilpa Kumari
════════════════════════
Time: Fri, 26 Sep 2025 15:00:00 +0000
════════════════════════
Tags: #Security #Vulnerability research #bug bounty #cybersecurity #Cybersecurity Awareness Month #GitHub Security
Title: Kicking off Cybersecurity Awareness Month 2025: Researcher spotlights and enhanced incentives
════════════════════════
𐀪 Author: Shilpa Kumari
════════════════════════
Time: Fri, 26 Sep 2025 15:00:00 +0000
════════════════════════
Tags: #Security #Vulnerability research #bug bounty #cybersecurity #Cybersecurity Awareness Month #GitHub Security
Title: How a top bug bounty researcher got their start in security
════════════════════════
𐀪 Author: Shilpa Kumari
════════════════════════
Time: Tue, 07 Oct 2025 16:00:00 +0000
════════════════════════
Tags: #Application security #Security #Supply chain security #Vulnerability research #Web application security #bug bounty #cybersecurity #Cybersecurity Awareness Month #GitHub Security
Title: Top security researcher shares their bug bounty process
════════════════════════
𐀪 Author: Shilpa Kumari
════════════════════════
Time: Wed, 22 Oct 2025 16:00:00 +0000
════════════════════════
Tags: #Application security #Security #Supply chain security #Vulnerability research #Web application security #bug bounty #cybersecurity #Cybersecurity Awareness Month #GitHub Security
Title: Shadow Commits: The Stealthy “Force Push” Attack That Compromised Plone’s GitHub Repositories
════════════════════════
𐀪 Author: ddos
════════════════════════
Time: Tue, 03 Feb 2026 07:57:22 +0000
════════════════════════
Tags: #Malware #credential exfiltration #force push attack #GitHub rulesets #GitHub security breach #malicious JavaScript #open source security #Personal Access Token (PAT) #Plone CMS #RCE exploit #Supply Chain Security
Title: What to do when you receive a vulnerability report: A step-by-step guide for maintainers
════════════════════════
𐀪 Author: Nancy Gariché
════════════════════════
Time: Mon, 24 Mar 2025 16:00:33 +0000
════════════════════════
Tags: #Security #Supply chain security #Vulnerability research #CVE integration #cybersecurity #GitHub Security Lab #GitHub Security Tools #open source security #private vulnerability reporting #security advisories #vulnerability disclosure
Title: What does a cybersecurity researcher do and how do you get started?
════════════════════════
𐀪 Author: Nancy Gariché
════════════════════════
Time: Wed, 29 Jan 2025 17:00:31 +0000
════════════════════════
Tags: #Security #Vulnerability research #application security #Career in Cybersecurity #cybersecurity #GitHub Security Lab #security research #Vulnerability Detection
Title: Hack the AI agent: Build agentic AI security skills with the GitHub Secure Code Game
════════════════════════
𐀪 Author: Joseph Katsioloudes
════════════════════════
Time: Tue, 14 Apr 2026 18:17:59 +0000
════════════════════════
Tags: #AI & ML #Security #agentic AI security #AI security #coding training #cybersecurity #GitHub Security Lab #secure coding
Title: Void Dokkaebi Unmasked: The “Worm-Like” Supply Chain Threat Targeting Developers
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Thu, 23 Apr 2026 06:24:51 +0000
════════════════════════
Tags: #Malware #Blockchain Staging #CI/CD security #Famous Chollima #GitHub Security #infosec #North Korea APT #Open Source Security #supply chain attack #TrendMicro #Void Dokkaebi #VS Code Malware
Title: Checkmarx Falls Victim to Credential Harvesting Attack
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Wed, 29 Apr 2026 01:54:29 +0000
════════════════════════
Tags: #Cybercriminals #breach #Checkmarx #cybersecurity #data exfiltration #GitHub Security #infosec #LAPSUS$ #Malicious code #Software Integrity #supply chain attack #Trivy
Title: Quasar Linux (QLNX) Emerges to Subvert the Global Software Supply Chain
════════════════════════
𐀪 Author: ddos
════════════════════════
Time: Wed, 06 May 2026 07:50:51 +0000
════════════════════════
Tags: #Malware #AWS #Credential Harvester #DevSecOps #eBPF #GitHub Security #Kubernetes #Linux malware #malware analysis #QLNX #Quasar Linux #rootkit #supply chain attack #Trend Micro
Title: 9.8 Severity Alert: Malicious Git Branches Can Hijack Your WebdriverIO Build Servers
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Wed, 13 May 2026 02:30:02 +0000
════════════════════════
Tags: #Vulnerability Report #BrowserStack #CI/CD security #Command Injection #CVE_2026_25244 #DevOps #GitHub Security #infosec #rce #supply chain attack #Test Automation #WebdriverIO
Title: Critical Security Defect Exploits NTFS Processing Architecture Within 7-Zip
════════════════════════
𐀪 Author: ddos
════════════════════════
Time: Wed, 27 May 2026 04:42:21 +0000
════════════════════════
Tags: #Vulnerability #7_Zip 26.01 download #7_Zip CVE_2026_48095 patch #dynamic link library memory corruption #GitHub Security Lab GHSL_2026_140 #heap buffer write overflow #NTFS archive handler #remote code execution vulnerability #signature based fallback detection #vtable hijack exploit #Yaroslav Lobachevsky cyber security
Title: Miasma Toolkit Targets Software Supply Chains
════════════════════════
𐀪 Author: ddos
════════════════════════
Time: Fri, 12 Jun 2026 03:55:29 +0000
════════════════════════
Tags: #Malware #AI Coding Tools #cybersecurity #DevSecOps #GitHub Security #Miasma #NPM Malware #supply chain attack
Title: AgentBaiting Malware Campaign Targets AI MCP Servers
════════════════════════
𐀪 Author: Nam Phong
════════════════════════
Time: Thu, 23 Jul 2026 14:24:56 +0000
════════════════════════
Tags: #Malware #AgentBaiting #AI Malware #GitHub Security #MCP Server #StealC