Write-ups

Check The Published Writeups

WDBTitleTagsProgramsAuthorsTypePublicationAdded
3986break and bypass verification email Open redirect Email verification bypass Weak crypto Bukalapak Abdelhak Kharroubi Bug Bounty2019-08-072023-06-13
3483Weak Cryptography in Password Reset to Full Account Takeover Account takeover Password reset Cryptographic issues NA Harsh Bothra (@harshbothra_) Bug Bounty2020-05-152023-06-13
3473How Netgear meshed(*) up WiFi for Business Weak crypto Authentication flaw Netgear Thorsten Schröder Bug Bounty2020-05-182023-06-13
3441Weak Cryptography Leads To Open Redirect Open redirect NA DarkLotus (@darklotuskdb) Bug Bounty2020-05-302023-06-13
3028Weak Cryptography to Account Takeover’s Cryptographic issues Account takeover IDOR NA letmeslidein (@VasuYadaav) Bug Bounty2020-11-152023-06-13
3024Pentest-Story: Empirum password decryption Weak crypto Reverse engineering Matrix42 evait security GmbH (@evait_security) Bug Bounty2020-11-162023-06-13
2458Cracking Encrypted Credit Card Numbers Exposed By API Information disclosure Weak crypto NA Craig Hays (@craighays) Bug Bounty2021-06-222023-06-13
2429Kaspersky Password Manager: All your passwords are belong to us Weak crypto Kaspersky Jean-Baptiste Bédrune Bug Bounty2021-07-062023-06-13
2392Pre-Account Takeover by Reversing a Weak Email Verification Token Algorithm Weak crypto NA Craig Hays (@craighays) Bug Bounty2021-07-222023-06-13
1322How I Gained Access To A Finance Company’s Accounts (Session Hijacking) Session fixation Weak crypto NA Talha Karakumru Bug Bounty2022-07-252023-06-13
1219We discovered major vulnerabilities in Control Web Panel. Here’s how we found them. Path traversal RCE Weak crypto Password reset Account takeover Centos Web Panel (CWP) Immersive Labs (@immersivelabs) Bug Bounty2022-08-152023-06-13
1018A vulnerability on Patreon, and their elusive bounty program. Payment bypass Weak crypto Patreon Datura Mater (@DaturaMater) Bug Bounty2022-09-292023-06-13
959Weak private key generation in SSH.NET <= 2020.0.1 Weak crypto Security code review SSH.NET Guillaume André (@yaumn_) Bug Bounty2022-10-142023-06-13
957Microsoft Office 365 Message Encryption Insecure Mode of Operation Weak crypto Microsoft Harry Sintonen Bug Bounty2022-10-142023-06-13