Write-ups

Check The Published Writeups

WDBTitleTagsProgramsAuthorsTypePublicationAdded
4993Reflected XSS in Yahoo! Reflected XSS Yahoo! / Verizon Media Shahzada AL Shahriar Khan (@TheShahzada) Bug Bounty2017-08-312023-06-13
4992Stealing 0Auth Token (MITM) OAuth NA Arbaz Hussain (@ArbazKiraak) Bug Bounty2017-09-012023-06-13
4991My write up about UBER Cross-site scripting by help of KNOXSS Reflected XSS Uber Emad Shanab (@Alra3ees) Bug Bounty2017-09-022023-06-13
4990Don’t just alert(1) , Because XSS is for fun…!! XSS Optimizely Armaan Pathan (@armaancrockroax) Bug Bounty2017-09-022023-06-13
4989IDOR on HackerOne Hacker Review “What Program Say” IDOR HackerOne Japz Divino (@japzdivino) Bug Bounty2017-09-022023-06-13
4988How I found Reflective XSS in Yahoo Subdomain Reflected XSS Yahoo! / Verizon Media Syntax Error (@SYNTAXERRORBA) Bug Bounty2017-09-032023-06-13
4987Reflective XSS and Open Redirect on Indeed.com subdomain Reflected XSS Open redirect Indeed Syntax Error (@SYNTAXERRORBA) Bug Bounty2017-09-042023-06-13
4986Phishing with history.back() open redirect Open redirect NA Brian Hyde (@0xHyde) Bug Bounty2017-09-092023-06-13
4985Bypassing Facebook Profile Picture Guard Security. Authorization flaw Meta / Facebook Armaan Pathan (@armaancrockroax) Bug Bounty2017-09-092023-06-13
4984How I hacked hundreds of companies through their helpdesk Ticket Trick Logic flaw GitLab Slack Yammer Kayako Zendesk Inti De Ceukelaire (@securinti) Bug Bounty2017-09-102023-06-13
4982Stored XSS] with arbitrary cookie installation XSS NA Arbaz Hussain (@ArbazKiraak) Bug Bounty2017-09-172023-06-13
4981Chaining Self XSS with UI Redressing is Leading to Session Hijacking (PWN users like a boss) Self-XSS Clickjacking NA Armaan Pathan (@armaancrockroax) Bug Bounty2017-09-182023-06-13
4980Story of a Parameter Specific XSS! XSS NA Rahul Maini (@iamnoooob) Bug Bounty2017-09-192023-06-13
4979Exploiting a Single Request for Multiple Vulnerabilities Stored XSS Reflected XSS SSRF OS command injection NA Osama Ansari (@AnsariOsama10) Bug Bounty2017-09-192023-06-13
4978First bounty, time to step up my game Same Origin Method Execution NA Roderick Schaefer (@kciredor_) Bug Bounty2017-09-192023-06-13
4977Multiple vulnerabilities in Oracle EBS SQL injection XXE XSS NA Shubham Gupta (@hackerspider1) Bug Bounty2017-09-192023-06-13
4976All About Hackerone Private Program Terapeak IDOR Reflected XSS Terapeak Shubham Gupta (@hackerspider1) Bug Bounty2017-09-202023-06-13
4975This domain is my domain — G Suite A record vulnerability Domain takeover Google Uber Rojan Rijal (@uraniumhacker) Bug Bounty2017-09-212023-06-13
4974Luminate Internal Privilege Escalation — Admin to Owner Authorization flaw Yahoo! / Verizon Media Rojan Rijal (@uraniumhacker) Bug Bounty2017-09-212023-06-13
4973Stored XSS to Full Information disclosure Stored XSS Terapeak Shubham Gupta (@hackerspider1) Bug Bounty2017-09-212023-06-13
4972IDOR – Execute JavaScript into anyone account IDOR Stored XSS Terapeak Shubham Gupta (@hackerspider1) Bug Bounty2017-09-212023-06-13
4971How i bypassed Practo’s firewall and triggered a XSS. XSS Practo Vipin Chaudhary (@vipinxsec) Bug Bounty2017-09-232023-06-13
4970900$ XSS in yahoo ( Recon Wins ) XSS Yahoo! / Verizon Media Th3G3nt3lman (@Th3G3nt3lman) Bug Bounty2017-09-242023-06-13
4969Filter Bypass to Reflected XSS on https://finance.yahoo.com (mobile version) Reflected XSS Yahoo! / Verizon Media Samuel (@saamux) Bug Bounty2017-09-242023-06-13
4968Device Authorization Bypass! Authorization flaw NA Hassan Khan Yusufzai Bug Bounty2017-09-252023-06-13