Write-ups

Check The Published Writeups

WDBTitleTagsProgramsAuthorsTypePublicationAdded
2016Privilege Escalation in Microsoft Teams Privilege escalation Broken Access Control Microsoft Vikas Anil Sharma (@vikzsharma) Bug Bounty2021-12-072023-06-13
2015Microsoft Vancouver leaking website credentials via overlooked DS_STORE file Information disclosure Microsoft CyberNews Team Bug Bounty2021-12-082023-06-13
2014Another Admin panel HTTP response manipulation Authentication bypass NA Rizwan_siddiqui (@Rizwan_SiDdiqu1) Bug Bounty2021-12-082023-06-13
2013CVE-2021-43798 - Path Traversal Vulnerability In Grafana Path traversal Grafana Labs Jordy Versmissen / J0VSEC (@j0v0x0) Bug Bounty2021-12-082023-06-13
2012Account Takeover via Stored XSS Account takeover Stored XSS NA Demon (@R29k_) Bug Bounty2021-12-092023-06-13
2011From Finding AWS S3 Bucket to Sensitive Data Exposure AWS misconfiguration NA Demon (@R29k_) Bug Bounty2021-12-092023-06-13
2010Exploiting S3 bucket with path folder to Access PII info of A BANK AWS misconfiguration Information disclosure NA Santosh Kumar Sha (@killmongar1996) Bug Bounty2021-12-092023-06-13
2009File Upload to RCE Unrestricted file upload NA Ahmed Magdy (@8Ahmed88Magdy8) Bug Bounty2021-12-092023-06-13
2008A phishing document signed by Microsoft – part 1 Phishing RCE Microsoft Pieter Ceelen (@ptrpieter) Bug Bounty2021-12-092023-06-13
2007Don’t Reply: A Clever Phishing Method In Apple’s Mail App Phishing Apple Jon Bottarini (@jon_bottarini) Bug Bounty2021-12-092023-06-13
2006ProtoBuffer ReUtilization “New Way to Security Test GoogleCaptcha” Captcha bypass Rapid7 ChooK Bug Bounty2021-12-102023-06-13
2003Open Redirection - QR Code Magic Open redirect NA Jerry Shah (@Jerry) Bug Bounty2021-12-112023-06-13
2002A story about a not-so-direct SSRF SSRF NA Preetham Bomma (@cyber01_) Bug Bounty2021-12-122023-06-13
2001SVG based Stored XSS Stored XSS NA xaonan44 Bug Bounty2021-12-122023-06-13
2000Zero Click To Account Takeover Account takeover Password reset NA M7.Arman (@ArmanSecurity) Bug Bounty2021-12-142023-06-13
1999How I Bypassed Incapsula WAF By Imperva SQL injection NA Dawood Ikhlaq Bug Bounty2021-12-142023-06-13
1998How I found XSS vulnerability in Amazon in 5 minutes using shodan XSS Amazon Mohamed Taha (@Mohamed12742780) Bug Bounty2021-12-152023-06-13
1997Bypassing the macOS Gatekeeper Local Privilege Escalation Gatekeeper bypass MacOS Apple Ron Masas (@RonMasas) Bug Bounty2021-12-152023-06-13
1996How I found the Authentication Bypass bug and Earn $$$$ Session expiration issue NA Thedarkwayg (@shadow_CLAY) Bug Bounty2021-12-152023-06-13
1995Gumtree – leaking your data and not really listening IDOR Gumtree Alan Monie (@AlanMonie) Bug Bounty2021-12-152023-06-13
1994GHSL-2021-1053: Path traversal in Grafana REST API - CVE-2021-43813, CVE-2021-43815 Path traversal Grafana Labs Alvaro Muñoz (@pwntester) Bug Bounty2021-12-152023-06-13
1993Broken Access Control IDOR Microsoft Meareg Bug Bounty2021-12-162023-06-13
1992Exploitation Of CVE-2021-21220 – From Incorrect JIT Behavior To RCE Browser hacking Memory corruption RCE Google Microsoft Bruno Keith (@bkth_) Bug Bounty2021-12-162023-06-13
1991Hacked Google-Meet…??! Authorization flaw Google 7𝖍3𝖍4𝖈kv157 (@7h3h4ckv157) Bug Bounty2021-12-182023-06-13
1990Flickr Account Takeover Account takeover Authentication flaw Flickr Lauritz Holtmann (@_lauritz_) Bug Bounty2021-12-182023-06-13