Write-ups

Check The Published Writeups

WDBTitleTagsProgramsAuthorsTypePublicationAdded
4173"CI Knew There Would Be Bugs Here" — Exploring Continuous Integration Services as a Bug Bounty Hunter Information disclosure CI/CD NA EdOverflow (@EdOverflow) Bug Bounty2019-04-262023-06-13
1856Malicious Kubernetes Helm Charts can be used to steal sensitive information from Argo CD deployments Supply chain attack CI/CD Argo CD Apiiro’s Security Research Bug Bounty2022-02-032023-06-13
1667Vulnerable GitHub Actions Workflows Part 1: Privilege Escalation Inside Your CI/CD Pipeline Privilege escalation CI/CD GitHub Noam Dotan Bug Bounty2022-04-042023-06-13
1585Vulnerable GitHub Actions Workflows Part 2: Actions That Open the Door to CI/CD Pipeline Attacks Privilege escalation CI/CD NA Noam Dotan Bug Bounty2022-05-022023-06-13
1141Google & Apache Found Vulnerable to GitHub Environment Injection Privilege escalation CI/CD Google Apache Noam Dotan Bug Bounty2022-09-012023-06-13
1116Zuckerpunch - Abusing Self Hosted Github Runners at Facebook CI/CD Meta / Facebook Marcus Young Bug Bounty2022-09-062023-06-13
1066How to hack Github Actions CI/CD GitHub StackOverflowExcept1on Bug Bounty2022-09-192023-06-13
1057How we Abused Repository Webhooks to Access Internal CI Systems at Scale CI/CD NA Omer Gil (@omer_gil) Bug Bounty2022-09-202023-06-13
249Remote Code Execution Vulnerability in Azure Pipelines Can Lead To Software Supply Chain Attack RCE CI/CD Supply chain attack Microsoft (Azure Pipelines) Nadav Noy Bug Bounty2023-03-302023-06-13
189Identifying vulnerabilities in GitHub Actions & AWS OIDC Configurations CI/CD OpenID Connect AWS Rojan Rijal (@uraniumhacker) Bug Bounty2023-04-182023-06-13
164Stealing GitHub staff%27s access token via GitHub Actions CI/CD Token leak Privilege escalation Supply chain attack GitHub RyotaK (@ryotkak) Bug Bounty2023-04-222023-06-13
139Azure Devops CICD Pipelines - Command Injection With Parameters, Variables And A Discussion On Runner Hijacking CI/CD OS command injection RCE Microsoft (Azure DevOps Pipelines) Sana Oshika (@bigshika) Bug Bounty2023-05-012023-06-13
131Exploiting misconfigured Google Cloud Service Accounts from GitHub Actions OpenID Connect Cloud CI/CD NA Revblock (@revbl0ck) Bug Bounty2023-05-022023-06-13
85From GitHub To Account Takeover: Misconfigured Actions Place GCP & AWS Accounts At Risk Account takeover Cloud OpenID Connect CI/CD NA Rezonate Bug Bounty2023-05-162023-06-13
64Red team: Journey from RCE to have total control of cloud infrastructure RCE SSTI Container escape Kubernetes Components with known vulnerabilities CI/CD NA Quang Vo (@mr_r3bot) Bug Bounty2023-05-222023-06-13