Writeups
Spotlight
Add Your Writeup
Blogs
Contact Us
Register
Login
Write-ups
Check The Published Writeups
Search
Reset
WDB
Title
Tags
Programs
Authors
Type
Publication
Added
2690
How I was able to see likes and dislikes count even though is hidden by victim | YouTube #2
Broken Access Control
IDOR
Google
R ando (@Rando02355205)
Bug Bounty
2021-03-26
2023-06-13
2687
How I was able to see likes and dislikes count even though is hidden by victim | YouTube #1
Broken Access Control
IDOR
Google
R ando (@Rando02355205)
Bug Bounty
2021-03-28
2023-06-13
2625
IDOR leads to leaked the likes count even though is hidden by victim | YouTube ($XXXX)
IDOR
Logic flaw
Google
R ando (@Rando02355205)
Bug Bounty
2021-04-20
2023-06-13
2503
How I was able to see likes and dislikes count even though is hidden by victim | YouTube #3
Broken Access Control
Google
R ando (@Rando02355205)
Bug Bounty
2021-06-04
2023-06-13
1844
How can I access the members-only video comment? | YouTube ($5,000)
Broken Access Control
Google
R ando (@Rando02355205)
Bug Bounty
2022-02-07
2023-06-13
1805
Stored XSS in message.alibaba.com ($2,000)
Stored XSS
Alibaba
R ando (@Rando02355205)
Bug Bounty
2022-02-18
2023-06-13
1744
I can see the dislikes count even though is hidden by YouTube | YouTube ($500)
Broken Access Control
IDOR
NA
R ando (@Rando02355205)
Bug Bounty
2022-03-12
2023-06-13
1618
How I was able to see likes and dislikes count even though is hidden by victim | YouTube #4
Broken Access Control
Google
R ando (@Rando02355205)
Bug Bounty
2022-04-15
2023-06-13
1387
Flash XSS in ajax.googleapis.com
XSS
Google
R ando (@Rando02355205)
Bug Bounty
2022-07-08
2023-06-13
1213
CSRF leads to Account Takeover | Samsung
CSRF
Account takeover
Samsung
R ando (@Rando02355205)
Bug Bounty
2022-08-16
2023-06-13
1103
How I was able to see likes count even though is hidden by victim | YouTube
Information disclosure
Logic flaw
Google
R ando (@Rando02355205)
Bug Bounty
2022-09-08
2023-06-13
496
I was able to see likes count even though it was hidden by the victim | YouTube App 16.15.35
Logic flaw
Google (Youtube)
R ando (@Rando02355205)
Bug Bounty
2023-02-05
2023-06-13