Write-ups

Check The Published Writeups

WDBTitleTagsProgramsAuthorsTypePublicationAdded
5080AWS S3 bucket misconfiguration - Paytm AWS misconfiguration Paytm Tutorgeeks (@tutorgeeks) Bug Bounty2017-04-182023-06-13
4642Misconfigured JIRA setting - Apigee Information disclosure Google Atlassian Tutorgeeks Bug Bounty2018-08-102023-06-13
4137Security assessment on the staging domains Missing authentication NA Tutorgeeks (@tutorgeeks) Bug Bounty2019-05-242023-06-13
3990BugBounty WriteUp — Creative thinking is our everything (Race Condition + Business Logic Error) Race condition Logic flaw NA Oleksandr Opanasiuk (@Lekssik2) Bug Bounty2019-08-052023-06-13
3975BugBounty WriteUp — take attention and get Stored XSS Stored XSS NA Oleksandr Opanasiuk (@Lekssik2) Bug Bounty2019-08-142023-06-13
3904Broken Link Hijacking - s3 buckets Broken link hijacking Google Tutorgeeks (@tutorgeeks) Bug Bounty2019-09-222023-06-13
3852XSS will never die XSS NA Oleksandr Opanasiuk (@Lekssik2) Bug Bounty2019-11-022023-06-13
2906Guest Blog Post: Leaking silhouettes of cross-origin images Side-channel information leakage Browser hacking Mozilla Google (Chrome) Aleksejs Popovs (@aleksejspopovs) Bug Bounty2021-01-112023-06-13
2517Metadata service MITM allows root privilege escalation (EKS / GKE) Kubernetes Privilege escalation MiTM Google Etienne Champetier / champtar Bug Bounty2021-05-302023-06-13
2491Second Order Race Condition Race condition NA Prasoon Gupta (@0xdekster) Bug Bounty2021-06-102023-06-13
2490Two weeks of securing Samsung devices: Part 1 Arbitrary file write Insecure intent Android Samsung Oversecured (@OversecuredInc) Bug Bounty2021-06-102023-06-13
2318Two weeks of securing Samsung devices: Part 2 Arbitrary file write Arbitrary file read Vulnerable Android content provider Android Samsung Oversecured (@OversecuredInc) Bug Bounty2021-08-162023-06-13
1300Researching Open Source apps for XSS to RCE flaws XSS RCE NA Aleksey Solovev Bug Bounty2022-07-282023-06-13
544MyBB <= 1.8.31: Remote Code Execution Chain RCE SQL injection Stored XSS MyBB Aleksey Solovev Bug Bounty2023-01-252023-06-13
30AWS Chain Attack- Thousands of Vulnerable EKS Clusters AWS Kubernetes EKS Container escape Security misconfiguration NA Chen Shiri (@ChenShiri73) Bug Bounty2023-06-042023-06-13