Write-ups

Check The Published Writeups

WDBTitleTagsProgramsAuthorsTypePublicationAdded
4390How I Was Able To Takeover All User Account And Admin Panel IDOR Account takeover NA Dipak kumar Das (@d1pakdas) Bug Bounty2018-12-282023-06-13
4388Abusing ACL Permissions to Overwrite other User’s Uploaded Files/Videos on s3 Bucket Unrestricted file upload Authorization flaw NA Armaan Pathan (@armaancrockroax) Bug Bounty2018-12-302023-06-13
4385Tale of a Misconfiguration in Password Reset Password reset NA Shuaib Oladigbolu (@_sawzeeyy) Bug Bounty2018-12-302023-06-13
4384A Curious Case From Little To Complete Email Verification Bypass Email verification bypass Authorization flaw NA Megaman (@N0_M3ga_Hacks) Bug Bounty2019-01-012023-06-13
4381A Tricky Open Redirect Open redirect NA Anas Mahmood (@AnasIsHere) Bug Bounty2019-01-032023-06-13
4380Yes I can see your OTP IDOR NA Vulnerables Bug Bounty2019-01-032023-06-13
4379Stealing Side-Channel Attack Tokens in Facebook Account Switcher Token leak Meta / Facebook Max Pasqua Bug Bounty2019-01-042023-06-13
4372When Cookie Hijacking + HTML Injection become dangerous Cookie hijacking HTML injection NA Daniel V. (@d4niel_v) Bug Bounty2019-01-072023-06-13
4367Turning Self XSS to good XSS via access control Stored XSS Self-XSS NA Yusuf Yazir (@Hacklad) Bug Bounty2019-01-132023-06-13
4365Abusing MySQL clients to get LFI from the server/client LFI NA Jarkko Vesiluoma (@jvesiluoma) Bug Bounty2019-01-152023-06-13
4364#BugBounty How I Hack Billion $ Company Directory listing NA Sadiq West Bug Bounty2019-01-152023-06-13
4362Command Injection PoC OS command injection NA NoGe (@p4c3n0g3) Bug Bounty2019-01-152023-06-13
4361Bypass Content Security Policy framing restriction rule - OLX CSP bypass OLX Taha Ibrahim Draidia Bug Bounty2019-01-172023-06-13
4360XSS Through SWF file! Flash XSS NA Friendly (@SkeletorKeys) Bug Bounty2019-01-182023-06-13
4359Oauth Misconfiguration lead to complete account takeover CSRF OAuth Account takeover NA Jackson kv (@Jacksonkv22) Bug Bounty2019-01-202023-06-13
4358A Simple CORS Misconfig Leaked Private Post Of Twitter, Facebook & Instagram CORS misconfiguration NA Rohan aggarwal (@nahoragg) Bug Bounty2019-01-202023-06-13
4338Misconfiguration-Whatsapp Messenger Logic flaw Meta / Facebook Pratheesh P Narayanan Bug Bounty2019-01-262023-06-13
4337Chaining Tricky OAuth Exploitation To Stored XSS Stored XSS OAuth NA Rohan aggarwal (@nahoragg) Bug Bounty2019-01-272023-06-13
4336A short tale of Account verification bypass Email verification bypass Authorization flaw NA Satyendra Kumar Bug Bounty2019-01-272023-06-13
4335Hijacking accounts by retrieving JWT tokens via unvalidated redirects Open redirect Token leak NA Shawar Khan (@ShawarkOFFICIAL) Bug Bounty2019-01-272023-06-13
4332Guest blog: Eray Mitrani - Hacking isn’t an exact science Authorization flaw NA Eray Mitrani (@ErayMitrani) Bug Bounty2019-01-292023-06-13
4326How I was able to Extract Information of Other Users- Exploiting IDOR IDOR Knowyourmeds.com Rupika Luhach (@Rup_Ki_Rani) Bug Bounty2019-02-022023-06-13
4323Detecting and exploiting mass-assignments in order to manipulate user columns and read private messages Mass assignment NA Paul (@padannewitz) Bug Bounty2019-02-052023-06-13
4321Jumping Over The Fence Open redirect NA Shahar Albeck Bug Bounty2019-02-052023-06-13
4317How i was able to dump SqlDB | Simple bug Directory listing SQL injection Authentication bypass NA clever idi0t Bug Bounty2019-02-072023-06-13