Daily Writeups – Telegram
Daily Writeups
3.21K subscribers
105K links
Daily Bug Bounty / Cybersecurity Writeups
Source Code : https://github.com/Spix0r/writeup-miner
Download Telegram
Title: An SSRF Sink You’re Probably Skipping (It Earned Me $700 in Bounties)
════════════════════════
𐀪 Author: Thomas A.
════════════════════════
Time: Wed, 14 Jan 2026 20:42:29 GMT
════════════════════════
Tags: #bug_bounty #cybersecurity #penetration_testing #bug_bounty_writeup #technology
Title: Hacked Despite 2FA: My LinkedIn Hack Lessons
════════════════════════
𐀪 Author: Ebube Nwankwo
════════════════════════
Time: Wed, 14 Jan 2026 21:34:48 GMT
════════════════════════
Tags: #hacking #cybersecurity #2fa_bypass #tech #linkedin
Title: TryHackMe : Blue Machine Writeup
════════════════════════
𐀪 Author: Azzam Mohammed (WHHacker)
════════════════════════
Time: Wed, 14 Jan 2026 20:38:08 GMT
════════════════════════
Tags: #windows_security #ethical_hacking #penetration_testing #tryhackme #cyebrsecurity
Title: What College Gave Me That Online Platforms Didn’t
════════════════════════
𐀪 Author: Crystal_cascade14
════════════════════════
Time: Wed, 14 Jan 2026 15:40:01 GMT
════════════════════════
Tags: #tryhackme #cybersecurity #ethical_hacking #wowenintech #tech_education
Title: Building a Secure, Enterprise-Grade API with AWS: A Deep Dive into API Gateway, Custom Domains, and…
════════════════════════
𐀪 Author: Sasmitha Dasanayaka
════════════════════════
Time: Wed, 14 Jan 2026 21:43:41 GMT
════════════════════════
Tags: #aws_cdk #aws_route53 #lambda_authorizer #api_security #aws_private_api_gateway
Title: What Will Matter for API Security 2026: The Patterns Behind 2025’s Breaches and the Risks Teams Are…
════════════════════════
𐀪 Author: Akansha Shukla
════════════════════════
Time: Wed, 14 Jan 2026 21:28:20 GMT
════════════════════════
Tags: #owasp_api_security_top_10 #secure_coding #api_development #api_security #secure_api
Title: Security Analysis and Hardening of a Python Web Application
════════════════════════
𐀪 Author: William Azaria Simanjuntak
════════════════════════
Time: Wed, 14 Jan 2026 23:31:50 GMT
════════════════════════
Tags: #application_security #web_development #programming #cybersecurity #python
Title: 30 Days of Red Team: Day 16 — Windows Privilege Escalation
════════════════════════
𐀪 Author: Maxwell Cross
════════════════════════
Time: Wed, 14 Jan 2026 22:32:04 GMT
════════════════════════
Tags: #ethical_hacking #hacking #infosec #windows #cybersecurity
Title: HTB Labs — Tier 1 — “Crocodile” Machine Walkthrough | By: CyberAlp0
════════════════════════
𐀪 Author: Mohamed Maher
════════════════════════
Time: Wed, 14 Jan 2026 23:21:09 GMT
════════════════════════
Tags: #crocodile #web_application_security #hackthebox_writeup #ftp_client #penetration_testing
Title: HPE Aruba Patches High-Severity DoS and Data Leak Flaws in Instant On Devices
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Thu, 15 Jan 2026 00:36:11 +0000
════════════════════════
Tags: #Vulnerability Report #Access Point Vulnerability #CVE_2025_37165 #CVE_2025_37166 #Denial of Service #firmware update #HPE Networking #Instant On #network_security #SMB Security
Title: Zoho Patches Critical “9.1” Flaw in ADSelfService Plus
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Thu, 15 Jan 2026 00:31:54 +0000
════════════════════════
Tags: #Vulnerability Report #Access Management #active directory #ADSelfService Plus #CVE_2025_11250 #CVSS 9.1 #Identity Security #ManageEngine #Patch Alert #SSO Security
Title: SHADOW#REACTOR Malware Builds Remcos RAT via Text Files
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Thu, 15 Jan 2026 00:27:15 +0000
════════════════════════
Tags: #Malware #Cyber Security #Fileless Malware #living_off_the_land #Malware Analysis #MSBuild #powershell #Remcos RAT #Securonix #SHADOW#REACTOR #Text_Based Payload
Title: One API Call to Hijack: Critical Cal.com Flaw (CVE-2026-23478, CVSS 10) Bypasses 2FA
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Thu, 15 Jan 2026 00:22:26 +0000
════════════════════════
Tags: #Vulnerability Report #Account Takeover #Authentication Bypass #Cal.com #CVE_2026_23478 #CVSS 10 #JWT Manipulation #NextAuth #Open Source Security #Patch Alert #Scheduling Software
Title: “Browser-in-the-Browser” Attack Escalates: Trellix Reports Surge in Sophisticated Facebook Phishing
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Thu, 15 Jan 2026 00:18:49 +0000
════════════════════════
Tags: #Cybercriminals #BitB #Browser In The Browser #Credential Harvesting #Cyber Security #Facebook Security #Netlify #phishing #social engineering #Trellix #Vercel
Title: High-Severity Flaws in HPE Aruba Networking Expose Mobility Controllers to Attack
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Thu, 15 Jan 2026 00:11:39 +0000
════════════════════════
Tags: #Vulnerability Report #AOS_10 #AOS_8 #Arbitrary File Deletion #Command Injection #CVE_2025_37168 #CVE_2025_37169 #Denial of Service #HPE Aruba Networking #network_security #Patch Alert
Title: “Magecart” Strikes Again: Long-Running Web Skimming Campaign Targets Global Payment Networks
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Thu, 15 Jan 2026 00:05:40 +0000
════════════════════════
Tags: #Cybercriminals #Credit card skimming #Cyber Crime #e_commerce security #JavaScript malware #Magecart #Online Shopping Security #Silent Push #Stripe Fraud #web skimming #WooCommerce
Title: Command Injection Alert: High-Severity Flaws Hit LoadMaster & MOVEit WAF
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Thu, 15 Jan 2026 00:01:34 +0000
════════════════════════
Tags: #Vulnerability Report #Application Delivery #Command Injection #CVE_2025_13444 #CVE_2025_13447 #LoadMaster #MOVEit WAF #network_security #Patch Alert #Progress Software #Remote Code Execution
Title: Case Study: Digital Forensics Investigation of an Insider Data Breach
════════════════════════
𐀪 Author: William Azaria Simanjuntak
════════════════════════
Time: Wed, 14 Jan 2026 23:54:37 GMT
════════════════════════
Tags: #cybersecurity #security_analysis #digital_forensics #case_study #infosec
Title: TryHackMe: Year of the Rabbit Writeup
════════════════════════
𐀪 Author: cbev
════════════════════════
Time: Thu, 15 Jan 2026 01:39:11 GMT
════════════════════════
Tags: #pentesting #tryhackme #cybersecurity #information_security
Title: SilentButDeadly: New Tool Blinds EDR Without Killing Processes
════════════════════════
𐀪 Author: ddos
════════════════════════
Time: Thu, 15 Jan 2026 03:42:42 +0000
════════════════════════
Tags: #Open Source Tool #Cybersecurity 2026 #EDR Bypass #EDR Silencing #Infosec #Network Isolation #Red Team #SilentButDeadly #Telemetry Blocking #WFP #Windows Filtering Platform
Title: Collections Retired: Microsoft Edge Sunsets Research Tool Amid Data Loss Fears
════════════════════════
𐀪 Author: Ddos
════════════════════════
Time: Thu, 15 Jan 2026 03:32:37 +0000
════════════════════════
Tags: #Technology #Browser Updates 2026 #Copilot #CSV Export #Data Loss #Edge Collections #microsoft edge #Microsoft Edge Dev #Sunsetting #Tech News #Web Research