243 | Unveiling the Secrets: My Journey of Hacking Google’s OSS |
CSRF
Self-XSS |
Google |
7𝖍3𝖍4𝖈kv157 (@7h3h4ckv157) |
Bug Bounty | 2023-03-31 | 2023-06-13 |
241 | Beware of Java%27s String.getBytes |
Hash collision
Cryptographic issues
Security code review |
Swiss E-Voting |
Ruben Santamarta (@reversemode) |
Bug Bounty | 2023-03-31 | 2023-06-13 |
240 | Finding RCE in NodeJS templating engine %27Eta%27 - CVE-2022-25967 |
RCE
Server-side prototype pollution
Security code review |
Eta |
Rayhan Ahmed Niloy (@Rayhan0x01) |
Bug Bounty | 2023-04-01 | 2023-06-13 |
239 | Bug Bounty: como encontrei o bug Unrestricted File Upload |
Unrestricted file upload |
NA |
Paulo Mota |
Bug Bounty | 2023-04-02 | 2023-06-13 |
236 | Two Minor Cross-Tenant Vulnerabilities in AWS App Runner |
Cross-tenant vulnerability
Cloud |
AWS |
Nick Frichette (@frichette_n) |
Bug Bounty | 2023-04-03 | 2023-06-13 |
235 | Simple Bugs 0x01: Password Changing to Account Takeover! |
Account takeover
CSRF |
NA |
Vitor Falcao (@egl_falcao) |
Bug Bounty | 2023-04-03 | 2023-06-13 |
234 | Blind XSS via SMS Support Chat — $1100 Bug Bounty! |
Blind XSS
Chatbot |
NA |
Chevon Phillip (@ChevonPhillip) |
Bug Bounty | 2023-04-03 | 2023-06-13 |
233 | CyberGhostVPN - the story of finding MITM, RCE, LPE in the Linux client |
RCE
MiTM
Local Privilege Escalation |
CyberGhost |
mmmds |
Bug Bounty | 2023-04-03 | 2023-06-13 |
232 | Holiday Hunting With Aquatone |
SSRF
Missing authentication
Information disclosure |
NA |
Kuldeep Pandya (@kuldeepdotexe) |
Bug Bounty | 2023-04-03 | 2023-06-13 |
231 | Pentah0wnage: Pre-Auth RCE in Pentaho Business Analytics Server |
RCE
SSTI
Authorization bypass
Groovy scripting |
Hitachi Vantara (Pentaho) |
Harry Withington |
Bug Bounty | 2023-04-04 | 2023-06-13 |
226 | Discovering Headroll (CVE-2023–0704) in Chromium |
SOP bypass
Browser hacking |
Google (Chromium) |
Rhys Elsmore (@rhyselsmore) |
Bug Bounty | 2023-04-05 | 2023-06-13 |
225 | Exploiting insecure exception logging |
Blind XSS |
NA |
Bogdan Calin |
Bug Bounty | 2023-04-05 | 2023-06-13 |
224 | Bash Privileged-mode Vulnerabilities In Parallels Desktop And CDPATH Handling In MacOS |
MacoS
Local Privilege Escalation |
Parallels |
Reno Robert (@renorobertr) |
Bug Bounty | 2023-04-06 | 2023-06-13 |
223 | Simple Bugs 0x02: Overwritting Uploaded Files |
Normalization |
NA |
Vitor Falcao (@egl_falcao) |
Bug Bounty | 2023-04-06 | 2023-06-13 |
219 | SharePoint Webpart Property Traversal Vulnerability Analysis (CVE-2022–38053, CVE-2023–21742, CVE-2023–21717) |
Property traversal |
Microsoft (Sharepoint) |
Nguyễn Tiến Giang (@testanull) |
Bug Bounty | 2023-04-06 | 2023-06-13 |
218 | Stored Cross-Site Scripting (XSS) in Zimbra version 8.8.15_GA_4059 CVE-2022-41348 |
Stored XSS |
Zimbra |
Guillaume Jacques |
Bug Bounty | 2023-04-07 | 2023-06-13 |
217 | SQL Wildcard DoS - Hang Till Death |
DoS
File upload |
NA |
Jerry Shah (@Jerry) |
Bug Bounty | 2023-04-08 | 2023-06-13 |
216 | Steal authentication token with one-click on misconfigured WebView. |
Android
Webview
Account takeover |
NA |
Kerolos A. Saber (@0xWise) |
Bug Bounty | 2023-04-08 | 2023-06-13 |
215 | How I was able to change password of any corporate user |
Account takeover
Password reset
Authentication bypass |
NA |
CH3TAN |
Bug Bounty | 2023-04-09 | 2023-06-13 |
214 | A successful prototype pollution chained to a DOM XSS |
Prototype pollution
DOM XSS |
NA |
Allam Rachid (@blank_cold) |
Bug Bounty | 2023-04-10 | 2023-06-13 |
213 | Account Take Over (Via an API) |
Account takeover
Information disclosure
Broken Access Control
Cryptographic issues |
NA |
Thabiso Mokoena |
Bug Bounty | 2023-04-10 | 2023-06-13 |
212 | Hijacking Arch Linux Packages by Repo Jacking GitHub Repositories |
Repojacking
Supply chain attack |
NA |
Joren Vrancken |
Bug Bounty | 2023-04-10 | 2023-06-13 |
211 | CVE-2023-1767 - Stored XSS on Snyk Advisor service can allow full fabrication of npm packages health score |
Stored XSS
Markdown XSS
Supply chain attack |
Snyk |
Gal Weizman (@WeizmanGal) |
Bug Bounty | 2023-04-10 | 2023-06-13 |
209 | Shell in the Ghost: Ghostscript CVE-2023-28879 writeup |
Buffer Overflow
Memory corruption
RCE |
Ghostscript |
sigabrt9 (@sigabrt9) |
Bug Bounty | 2023-04-11 | 2023-06-13 |
207 | SecurePwn Part 1: Bypassing SecurePoint UTM’s Authentication (CVE-2023-22620) |
Authentication bypass |
SecurePoint |
Julien Ahrens (@MrTuxracer) |
Bug Bounty | 2023-04-11 | 2023-06-13 |