5316 | Stored Cross-Site Scripting (XSS) via DNS Record Poisoning |
XSS
Stored XSS |
Rengine |
Touhid M Shaikh |
Bug Bounty | 2024-08-23 | 2024-08-27 |
5301 | Finding a malware in a cracked software |
Malware analysis |
Malware analysis |
Aditya Rana |
Bug Bounty | 2023-01-28 | 2024-01-31 |
5300 | Regional internet registries |
Network Exploitation |
N/A |
Ravi Maurya |
Bug Bounty | 2023-07-22 | 2024-01-31 |
5299 | OWASP TOP 10-2021: ARRIVAL OF NEW RISKS |
Web Application Security |
OWASP |
Aswin Govind |
CheatSheet | 2021-10-05 | 2024-01-31 |
5298 | Resources for Application Security |
Application Security |
N/A |
Ishaq Mohammed |
CheatSheet | 2018-08-27 | 2024-01-31 |
5297 | PWK/PEN-200 OSCP Preparation Roadmap |
OSCP |
OSCP |
Ishaq Mohammed |
Certification Journey Writeup | 2018-06-04 | 2024-01-31 |
5296 | Resources for Application Security |
Application Security |
N/A |
Ishaq Mohammed |
CheatSheet | 2018-08-27 | 2024-01-31 |
5295 | GraphQL exploitation – All you need to know |
GraphQL Exploitation |
OSCP |
Theo |
CheatSheet | 2023-05-16 | 2024-01-31 |
5294 | $6000 with Microsoft Hall of Fame | Microsoft Firewall Bypass | CRLF to XSS | Microsoft Bug Bounty |
CRLF ( Firewall Bypass )
Privilege Escalation
XSS
CRLF to XSS |
MSRC Microsoft |
Neh Patel ( thecyberneh ) |
Bug Bounty | 2022-10-12 | 2024-01-31 |
5290 | Facebook XSS via Cross-Origin Resource Sharing |
XSS |
Meta / Facebook |
Matt Austin (@mattaustin) |
Bug Bounty | 2010-07-06 | 2023-06-13 |
5289 | Hacking Facebook with FBML and DOM |
XSS |
Meta / Facebook |
Matt Austin (@mattaustin) |
Bug Bounty | 2010-07-18 | 2023-06-13 |
5288 | Facebook FBML DOM Traversal (Information Disclosure) |
Information disclosure |
Meta / Facebook |
Matt Austin (@mattaustin) |
Bug Bounty | 2011-08-23 | 2023-06-13 |
5287 | My Experience with the PayPal Bug Bounty Programme |
CSRF |
Paypal |
Jack Whitton (@fin1te) |
Bug Bounty | 2012-10-12 | 2023-06-13 |
5286 | Google.com cross site scripting and privilege escalation in Consumer Surveys |
Stored XSS
Authorization flaw |
Google |
Josip Franjkovic (@josipfranjkovic) |
Bug Bounty | 2013-01-03 | 2023-06-13 |
5285 | Persistent XSS on myworld.ebay.com |
XSS |
Ebay |
Jack Whitton (@fin1te) |
Bug Bounty | 2013-01-27 | 2023-06-13 |
5284 | Framing, Part 1: Click-Jacking Etsy |
Clickjacking |
Etsy |
Jack Whitton (@fin1te) |
Bug Bounty | 2013-02-05 | 2023-06-13 |
5283 | DOM Based XSS In AVG |
DOM XSS |
AVG |
Rafay Baloch (@rafaybaloch) |
Bug Bounty | 2013-02-26 | 2023-06-13 |
5282 | How I Rewarded with USD?K Just With a Simple Search Form |
SQL injection |
Paypal |
yappare (@yappare) |
Bug Bounty | 2013-04-11 | 2023-06-13 |
5281 | Stealing Facebook Access Tokens with a Double Submit |
CSRF
OAuth |
Meta / Facebook |
Jack Whitton (@fin1te) |
Bug Bounty | 2013-04-13 | 2023-06-13 |
5280 | PayPal Bug Bounty: PayPaltech.com XSS |
XSS |
Paypal |
Julien Ahrens (@MrTuxracer) |
Bug Bounty | 2013-04-13 | 2023-06-13 |
5279 | Overwriting Banner Images on Etsy |
Authorization flaw |
Etsy |
Jack Whitton (@fin1te) |
Bug Bounty | 2013-05-21 | 2023-06-13 |
5278 | Hijacking a Facebook Account with SMS |
Authorization flaw
Account takeover |
Meta / Facebook |
Jack Whitton (@fin1te) |
Bug Bounty | 2013-06-26 | 2023-06-13 |
5277 | Amazon packaging feedback cross-site scripting vulnerability |
XSS |
Amazon |
Bitquark (@bitquark) |
Bug Bounty | 2013-07-03 | 2023-06-13 |
5276 | Admob creative image cross-site scripting vulnerability |
XSS |
Google |
Bitquark (@bitquark) |
Bug Bounty | 2013-07-19 | 2023-06-13 |
5275 | How I found my way into Instagram%27s Ganglia, and a bug with Facebook likes. |
Reflected XSS
IDOR |
Meta / Facebook |
Josip Franjkovic (@josipfranjkovic) |
Bug Bounty | 2013-07-23 | 2023-06-13 |