Daily Writeups
3.9K subscribers
4 photos
135K links
Daily Bug Bounty / Cybersecurity Writeups
Source Code : https://github.com/Spix0r/writeup-miner
Download Telegram
⤷ Title: Apache Fory Vulnerability: High Severity Flaw Bypasses Core Java Serialization Checks
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Thu, 04 Jun 2026 16:36:07 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Apache Fory #CVE_2026_50076 #deserialization flaw #fory_core #Java security #Software Patch
⤷ Title: Spring Boot 4.1’s New SSRF Filter Never Touched My Feign Calls — Here’s the Trap
════════════════════════
𐀪 Author: HobbiesPark
════════════════════════
ⴵ Time: Thu, 25 Jun 2026 17:37:36 GMT
════════════════════════
⌗ Tags: #spring_security #java #spring_boot #microservices #ssrf
⤷ Title: How Spring Data JPA Protects You from SQL Injection Without You Knowing
════════════════════════
𐀪 Author: Najee Shaheen
════════════════════════
ⴵ Time: Tue, 30 Jun 2026 09:24:52 GMT
════════════════════════
⌗ Tags: #spring_boot #backend_development #sql_injection #java #cybersecurity
⤷ Title: Unlock Your Future with Java Training: The Ultimate Guide to Mastering Programming
════════════════════════
𐀪 Author: KOMAL PAL
════════════════════════
ⴵ Time: Tue, 14 Jul 2026 02:34:40 GMT
════════════════════════
⌗ Tags: #javascript #java #digital_marketing #ethical_hacking #python
⤷ Title: How Your Spring Boot API Leaks Data (And Why Adding an Auth Check Isn’t the Fix)
════════════════════════
𐀪 Author: Najee Shaheen
════════════════════════
ⴵ Time: Tue, 21 Jul 2026 15:28:25 GMT
════════════════════════
⌗ Tags: #cybersecurity #idor #application_security #java #spring_boot
⤷ Title: Public PoC Exploit Released for fastjson 1.2.83 Remote Code Execution Flaw
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 22 Jul 2026 13:18:16 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Deserialization #Fastjson #fastjson2 #FearsOff #java #proof_of_concept #QVD_2026_43021 #Remote Code Execution #SafeMode #Spring Boot
⤷ Title: Web Frameworks: Java | TryHackMe
════════════════════════
𐀪 Author: Ryca
════════════════════════
ⴵ Time: Fri, 24 Jul 2026 11:01:01 GMT
════════════════════════
⌗ Tags: #red_team #java #cybersecurity #tryhackme
⤷ Title: Day 204 — How to Renew an Application Certificate and Create a Java JKS Truststore
════════════════════════
𐀪 Author: Alok Rahul
════════════════════════
ⴵ Time: Sat, 25 Jul 2026 07:21:39 GMT
════════════════════════
⌗ Tags: #java #application_security #software_engineering #software_development
⤷ Title: We Built the Only Java Static Analyzer That Finds What Semgrep, CodeQL, and the We Built the Only…
════════════════════════
𐀪 Author: Suman Lamichhane
════════════════════════
ⴵ Time: Wed, 05 Aug 2026 16:17:56 GMT
════════════════════════
⌗ Tags: #java #cybersecurity #application_security #static_analysis #spring_boot
⤷ Title: 7 Reasons Why Java Frameworks are Used for API Development
════════════════════════
𐀪 Author: Sahil Khurana
════════════════════════
ⴵ Time: Wed, 12 Aug 2026 04:51:49 GMT
════════════════════════
⌗ Tags: #scalable_systems #backend_performance #api_development #application_security #java_frameworks
⤷ Title: We Found Authorization Vulnerabilities in Two of GitHub’s Most-Starred Java Repositories — Semgrep…
════════════════════════
𐀪 Author: Suman Lamichhane
════════════════════════
ⴵ Time: Thu, 13 Aug 2026 15:01:43 GMT
════════════════════════
⌗ Tags: #cybersecurity #spring_boot #application_security #java #static_analysis
⤷ Title: Apache Struts Patches Five Flaws Including Unauthenticated DoS Bugs
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Sat, 15 Aug 2026 13:35:05 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Apache Struts #CVE_2026_73631 #CVE_2026_73632 #CVE_2026_73633 #CVE_2026_73634 #CVE_2026_73635 #Denial of Service #Java Web Security #JSON Plugin #Struts 2
⤷ Title: CVE-2026–40901: DataEase Root RCE via Unfiltered Quartz Deserialization
════════════════════════
𐀪 Author: Guidancewhite
════════════════════════
ⴵ Time: Wed, 19 Aug 2026 06:57:55 GMT
════════════════════════
⌗ Tags: #sql_injection #rce #vulnerability #database #java
⤷ Title: Hack The Box:MODULE 06 — JAVA SCRIPT DEOBFUSCATION
════════════════════════
𐀪 Author: Hassan
════════════════════════
ⴵ Time: Thu, 03 Sep 2026 17:29:42 GMT
════════════════════════
⌗ Tags: #hackthebox #hackthebox_writeup #javadeobfuscation #java_deofuscation
⤷ Title: What Closing 9 High-Severity Security Findings Taught Me About Auth, CSRF, and SSRF
════════════════════════
𐀪 Author: Md Farazul Haque
════════════════════════
ⴵ Time: Sun, 13 Sep 2026 09:16:14 GMT
════════════════════════
⌗ Tags: #java #security #spring_boot #xss_vulnerability
⤷ Title: I had a lot of fun writing Java client for SMB from scratch
════════════════════════
𐀪 Author: Jakub Stonavsky
════════════════════════
ⴵ Time: Mon, 14 Sep 2026 16:04:18 GMT
════════════════════════
⌗ Tags: #software_testing #cybersecurity #java #reverse_engineering #penetration_testing
⤷ Title: Yapay Zekâ ile Güvenli Kod Geliştirme: Java Spring Boot, React ve PostgreSQL ile Secure SDLC
════════════════════════
𐀪 Author: Tunahan Güral
════════════════════════
ⴵ Time: Wed, 23 Sep 2026 10:58:19 GMT
════════════════════════
⌗ Tags: #cybersecurity #secure_coding #application_security #java #artificial_intelligence
⤷ Title: Production Java Security as a System of Enforced Invariants
════════════════════════
𐀪 Author: Weissmann Tobi
════════════════════════
ⴵ Time: Fri, 02 Oct 2026 23:45:18 GMT
════════════════════════
⌗ Tags: #java #spring_boot #security #architecture #application_security
⤷ Title: 48 Hours to Launch: The Pen Test That Stopped Our Release
════════════════════════
𐀪 Author: Pramodreddypandiri
════════════════════════
ⴵ Time: Sun, 04 Oct 2026 01:54:38 GMT
════════════════════════
⌗ Tags: #java #devops #penetration_testing #security
⤷ Title: Apache Struts 7.4.0 Fixes Four Vulnerabilities, Including OGNL Injection and REST Plugin DoS
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Mon, 05 Oct 2026 14:47:28 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Apache Struts #CVE_2026_104711 #CVE_2026_104713 #CVE_2026_104714 #Denial of Service #Java security #OGNL Injection #Struts 7.4.0