Write-ups

Check The Published Writeups

WDBTitleTagsProgramsAuthorsTypePublicationAdded
5089Remote Code Execution in AT&T RCE SSTI Components with known vulnerabilities AT&T Corben Leo (@hacker_) Bug Bounty2017-03-102023-06-13
3725In Cloud we “Trust”: Wrong Kubernetes implementation by Google Cloud Platform & Microsoft Azure affecting customers Old components with known vulnerabilities Microsoft Google Chen Cohen (@chencococococo) Bug Bounty2020-01-122023-06-13
2423Account Takeovers — Believe the Unbelievable Account takeover Session management issue Weak credentials Components with known vulnerabilities Password reset NA Nikhil (niks) (@niksthehacker) Bug Bounty2021-07-092023-06-13
2298“How Companies Need to Widen There Scopes” RCE Components with known vulnerabilities NA amnotacat Bug Bounty2021-08-252023-06-13
2051Unauthenticated Sensitive Information Disclosure at [REDACTED] Old components with known vulnerabilities Information disclosure NA Rizaldi Wahaz (@wah_haz) Bug Bounty2021-11-252023-06-13
1851How I bypassed PHP functions to read sensitive files on server Components with known vulnerabilities RCE NA Kailash (@corrupted_brain) Bug Bounty2022-02-042023-06-13
1717For the first Bounty, it takes a few challenging months, but only a few days for the second. Old components with known vulnerabilities NA Aneesha D (@interc3pt3r) Bug Bounty2022-03-182023-06-13
1584How I got a lousyT-Shirt from the Dutch Government. Old components with known vulnerabilities Dutch Government Mava (@mava656) Bug Bounty2022-05-032023-06-13
1504How I found a GoldMine but got No Gold Old components with known vulnerabilities NA Muhammad Abdullah Bug Bounty2022-06-012023-06-13
1498Ivanti EPM Remote Code Execution RCE Components with known vulnerabilities NA Nick Berrie (@machevalia) Bug Bounty2022-06-052023-06-13
1316Outdated PHP Version leads to RCE RCE Old components with known vulnerabilities NA iamdevansharya (@iamdevansharya) Bug Bounty2022-07-252023-06-13
1091How I DIDN’T get an RCE in a $200 Billion company — Bug Bounty RCE Components with known vulnerabilities NA nynan (@_nynan) Bug Bounty2022-09-122023-06-13
1071How i Found Unauthorized Bypass RCE RCE Old components with known vulnerabilities NA Yashshirke Bug Bounty2022-09-182023-06-13
841From Shodan Dork to Grafana 📊Local File Inclusion LFI Old components with known vulnerabilities NA Anurag__Verma Bug Bounty2022-11-112023-06-13
747How I found my first RCE! RCE Components with known vulnerabilities WSO2 SSRF NA 302Found Bug Bounty2022-12-012023-06-13
679How I was able to steal users credentials via Swagger UI DOM-XSS DOM XSS Old components with known vulnerabilities NA Mohamed Reda (@M0x0101) Bug Bounty2022-12-182023-06-13
667RCE on admin panel of web3 website RCE Components with known vulnerabilities NA T VAMSHI Bug Bounty2022-12-212023-06-13
650Authentication Bypass in Nexus manager (version 3.37.3–02) Components with known vulnerabilities Authentication bypass HTTP response manipulation NA SHARAN.K Bug Bounty2022-12-262023-06-13
475How I got $$$$ Bounty within 5 mins RCE Components with known vulnerabilities NA Hashir Khan (@P4n7h3Rx) Bug Bounty2023-02-092023-06-13
384The Vulnerability That Exposed an UN Website to Remote Code Execution Components with known vulnerabilities OGNL injection RCE United Nations Mullangisashank Bug Bounty2023-02-272023-06-13
342Remote Stealth Brute-force of Oracle Database Passwords Bruteforce Information disclosure Authentication bypass Components with known vulnerabilities NA Viktor Markopoulos Bug Bounty2023-03-062023-06-13
296Emotional Rollercoaster: A Unique Case Study of Bypassing Antivirus and Firewall by Abusing PostgreSQL RCE Old components with known vulnerabilities NA Yousef Amery (@YousefAmery) Bug Bounty2023-03-152023-06-13
271Finding Initial Access on a real life Penetration Test Old components with known vulnerabilities Internal pentest RCE NA Warren Butterworth (@w88ugs) Bug Bounty2023-03-232023-06-13
175Uncovering a Critical Vulnerability: My Journey of Discovering CVE-2021–31589, a Reflected XSS in LinkedIn Components with known vulnerabilities Reflected XSS LinkedIn Karthikeyan.V (@karthithehacker) Bug Bounty2023-04-202023-06-13
174Turning Vulnerability into Bounty: How CVE-2020–17453 XSS Earned Me a $500 Bounty Components with known vulnerabilities XSS NA Karthikeyan.V (@karthithehacker) Bug Bounty2023-04-202023-06-13