Write-ups

Check The Published Writeups

WDBTitleTagsProgramsAuthorsTypePublicationAdded
4189Ssrf to Read Local Files and Abusing the AWS metadata SSRF NA Pratik Yadav (@PratikY9967) Bug Bounty2019-04-212023-06-13
4187[XSS] Reflected XSS Bypass Filter Reflected XSS NA Mohamed Sayed (@FlEx0Geek) Bug Bounty2019-04-232023-06-13
4186Yet Other Examples of Abusing CSRF in Logout CSRF NA Soroush Dalili (@irsdl) Bug Bounty2019-04-232023-06-13
4182A picture that steals data Information disclosure NA Sergey Kashatov (@iframe0x01) Bug Bounty2019-04-242023-06-13
4181CSRF Attack can lead to Stored XSS CSRF Stored XSS NA Mohamed Sayed (@FlEx0Geek) Bug Bounty2019-04-252023-06-13
4180The journey of Web Cache + Firewall Bypass to SSRF to AWS credentials compromise! LFI SSRF WAF bypass Cloudflare bypass NA Avinash Jain (@logicbomb_1) Bug Bounty2019-04-252023-06-13
4179Stealing local storage data through XSS Stored XSS Account takeover NA Harshad Gaikwad (@h4rsh4d) Bug Bounty2019-04-252023-06-13
4175How to bypass a 2FA with a HTTP header MFA bypass NA Yumi Bug Bounty2019-04-262023-06-13
4174Denial of Service using Cookie Bombing DoS Cookie bomb NA Ronak Patel (@ronak_9889) Bug Bounty2019-04-262023-06-13
4173"CI Knew There Would Be Bugs Here" — Exploring Continuous Integration Services as a Bug Bounty Hunter Information disclosure CI/CD NA EdOverflow (@EdOverflow) Bug Bounty2019-04-262023-06-13
4169From Reflected XSS to Account Takeover — Showing XSS Impact Reflected XSS Account takeover NA A Bug’z Life (@abugzlife1) Bug Bounty2019-04-302023-06-13
4162ESI Injection Part 2: Abusing specific implementations ESI injection RCE SSRF HTTP header injection NA Philippe Arteau (@h3xstream) Bug Bounty2019-05-022023-06-13
4161Server Side Request Forgery(SSRF){port issue hidden approch } SSRF NA Deepak Holani (@w_hat_boy) Bug Bounty2019-05-032023-06-13
4159SQL injection through User-Agent SQL injection NA fr0stNuLL Bug Bounty2019-05-082023-06-13
41584x CSRFs Chained For Company Account Takeover CSRF Account takeover NA A Bug’z Life (@abugzlife1) Bug Bounty2019-05-082023-06-13
4155Think Outside the Scope: Advanced CORS Exploitation Techniques CORS misconfiguration NA Ayoub (@sandh0t) Bug Bounty2019-05-142023-06-13
4153You do not need to run 80 reconnaissance tools to get access to user accounts Open redirect NA Stefano Vettorazzi (@stefanohablando) Bug Bounty2019-05-152023-06-13
4152From parameter pollution to XSS HTTP parameter pollution XSS NA Mo%27men Basel Bug Bounty2019-05-162023-06-13
4147A base64 encoded parameter. HTML injection NA Navneet (@na5n33t) Bug Bounty2019-05-192023-06-13
4146Open-redirect to Account Takeover. Open redirect Account takeover NA Rishabh (@____cypher____) Bug Bounty2019-05-192023-06-13
4144Leaking OpenID tokens with “ — the bug right infront of you OpenID Connect Open redirect Token leak NA Zseano (@zseano) Bug Bounty2019-05-212023-06-13
4142Google Adwords(Privilege Escalation): Read-only user able to add YouTube channels via Linked accounts Privilege escalation Authorization flaw Google Family guy Bug Bounty2019-05-212023-06-13
4139How I acquired $XXX bounty by investing 99 cents Logic flaw NA Smaran Chand (@smaranchand) Bug Bounty2019-05-242023-06-13
4137Security assessment on the staging domains Missing authentication NA Tutorgeeks (@tutorgeeks) Bug Bounty2019-05-242023-06-13
4136From file upload to email:pass Unrestricted file upload NA fr0stNuLL Bug Bounty2019-05-242023-06-13