Write-ups

Check The Published Writeups

WDBTitleTagsProgramsAuthorsTypePublicationAdded
4249Privilege escalation on private program. Privilege escalation Information disclosure NA Imran Parray (@imranparray101) Bug Bounty2019-03-142023-06-13
4248How I was able to pwned 30000+ user’s webhook IDOR NA gujjuboy10x00 (@vis_hacker) Bug Bounty2019-03-142023-06-13
4247Target Finds Cross-Site Scripting in Microsoft SharePoint XSS Microsoft Target Bug Bounty2019-03-152023-06-13
4241Facebook Fizz integer overflow vulnerability (CVE-2019-3560) Integer overflow Memory corruption Meta / Facebook Kevin Backhouse (@kevin_backhouse) Bug Bounty2019-03-192023-06-13
4240Slack announcement-only channel post restriction bypass Authorization flaw Logic flaw Slack Rodney Beede Bug Bounty2019-03-202023-06-13
4238How to hunt for Malvertising ads on Android Android NA Kyle (@B3nac) Bug Bounty2019-03-212023-06-13
4237Google Books X-Hacking XS-Search Google Terjanq (@terjanq) Bug Bounty2019-03-212023-06-13
4230How I was able to turn self xss into reflected xss Reflected XSS NA Hein Thant Zin (@H3Lowr) Bug Bounty2019-03-312023-06-13
4228Comma is forbidden! No worries!! Inject in insert/update queries without it SQL injection NA Ahmed Sultan (@0x4148) Bug Bounty2019-03-312023-06-13
4225FileZilla Untrusted Search Path RCE FileZilla (EU-FOSSA 2) Chris Lyne (@lynerc) Bug Bounty2019-04-022023-06-13
4218Same-Origin Policy: From birth until today SOP bypass Browser hacking CSRF CORS Mozilla Google (Chrome) Opera Alex Nikolova (@AaylaSecura1138) Bug Bounty2019-04-042023-06-13
4213How I got a trip to amsterdam through bug bounty Bruteforce NA Ninad Mathpati (@ninad_mathpati) Bug Bounty2019-04-072023-06-13
4207Account Takeover by chaining two vulnerabilities. CSRF Open redirect Account takeover NA Sheraz Khalid Bug Bounty2019-04-102023-06-13
4206Unauthenticated Account Takeover Through HTTP Leak HTML injection HTTP Leak Account takeover NA Nikhil (niks) (@niksthehacker) Bug Bounty2019-04-112023-06-13
4205[RCE] Remote code execution at api.PrivateProgram.com (CVE-2017-5638) RCE NA Mohamed Haron (@m7mdharon) Bug Bounty2019-04-122023-06-13
4204Web Cache Deception to API endpoint attack using cached token header Web cache deception NA Kunal pandey (@kunalp94) Bug Bounty2019-04-132023-06-13
4200How I hacked Vending Machine Violation of secure design principles NA Valeriy Shevchenko (@Krevetk0Valeriy) Bug Bounty2019-04-152023-06-13
4198How i found credential enriched redis dump File disclosure Information disclosure NA Ashish Kunwar (@D0rkerDevil) Bug Bounty2019-04-162023-06-13
4197A $5000 IDOR… IDOR NA Mr.Hacker (@mr_hacker0007) Bug Bounty2019-04-162023-06-13
4196Banner Grabbing to DoS and Memory Corruption DoS Information disclosure NA Daniel V. (@d4niel_v) Bug Bounty2019-04-162023-06-13
4195Code execution - Evernote RCE Path traversal Evernote Dhiraj (@mishradhiraj_) Bug Bounty2019-04-172023-06-13
4194PDFReacter SSRF to ROOT Level Local File Read which led to RCE SSRF RCE NA Armaan Pathan (@armaancrockroax) Bug Bounty2019-04-182023-06-13
4193Scary Tickets😨 Ticket Trick NA Rojan Rijal (@uraniumhacker) Bug Bounty2019-04-192023-06-13
4191Twitter - protected tweets exposure Information disclosure Twitter Terjanq (@terjanq) Bug Bounty2019-04-192023-06-13
4190[CONFIRMATION BYPASS ] Email verification bypass Information disclosure NA Navneet (@na5n33t) Bug Bounty2019-04-212023-06-13