131 | Exploiting misconfigured Google Cloud Service Accounts from GitHub Actions |
OpenID Connect
Cloud
CI/CD |
NA |
Revblock (@revbl0ck) |
Bug Bounty | 2023-05-02 | 2023-06-13 |
130 | When you%27re so bored, you start debugging someone else%27s code: bug hunting in a random Cloud-Native project |
SSTI
RCE |
Foreman |
ONSEC.io Research Team |
Bug Bounty | 2023-05-03 | 2023-06-13 |
129 | Automating SQL Injection On Encrypted Request |
SQL injection
Client-side encryption bypass |
NA |
Janirudransh |
Bug Bounty | 2023-05-03 | 2023-06-13 |
128 | Accessing Admin Dashboard in 5 seconds: Hall of Fame. |
Default credentials |
NA |
Sumedh Dawadi |
Bug Bounty | 2023-05-03 | 2023-06-13 |
127 | The Art of Information Disclosure: A Deep Dive into CVE-2022-37985, a Unique Information Disclosure Vulnerability in Windows Graphics Component |
Out-of-bounds Read
Memory corruption |
Microsoft (Windows) |
Bing Sun |
Bug Bounty | 2023-05-03 | 2023-06-13 |
126 | CVE-2023-25394 - VideoStream Local Privilege Escalation |
Local Privilege Escalation |
Videostream |
Dan Revah (@danrevah) |
Bug Bounty | 2023-05-03 | 2023-06-13 |
125 | OpenAI Allowed “Unlimited” Credit on New Accounts |
Logic flaw
Normalization |
OpenAI |
David Sopas (@dsopas) |
Bug Bounty | 2023-05-04 | 2023-06-13 |
124 | Privilege Escalations through Integrations |
Privilege escalation
Amazon cognito misconfiguration
JWT
Account takeover |
NA |
Colin McQueen |
Bug Bounty | 2023-05-04 | 2023-06-13 |
123 | When Good APIs Go Bad: Uncovering 3 Azure API Management Vulnerabilities |
SSRF
Unrestricted file upload
Path traversal
Cloud |
Microsoft (Azure) |
Liv Matan (@terminatorLM) |
Bug Bounty | 2023-05-04 | 2023-06-13 |
122 | A smorgasbord of a bug chain: postMessage, JSONP, WAF bypass, DOM-based XSS, CORS, CSRF… |
postMessage
JSONP
DOM XSS
CORS misconfiguration
CSRF
WAF bypass |
NA |
Julien Cretel (@jub0bs) |
Bug Bounty | 2023-05-05 | 2023-06-13 |
121 | Cookie Bugs - Smuggling & Injection |
Cookie smuggling
Cookie injection |
Eclipse Foundation (Jetty) |
Ankur Sundara (@ankursundara) |
Bug Bounty | 2023-05-05 | 2023-06-13 |
120 | Bullied by Bugcrowd over Kape CyberGhost disclosure |
Local Privilege Escalation
OS command injection
Security code review |
Kape (CyberGhost) |
Ceri Coburn (@_ethicalchaos_) |
Bug Bounty | 2023-05-05 | 2023-06-13 |
119 | Mass Assignment leads to the victim’s account being inaccessible forever |
Mass assignment
Logic flaw |
NA |
Arman (@M7arm4n) |
Bug Bounty | 2023-05-05 | 2023-06-13 |
118 | CSS Injection via PostMessages to stealing Credit Card Info |
postMessage
CSS injection |
NA |
Castilho (@castilho101) |
Bug Bounty | 2023-05-05 | 2023-06-13 |
117 | Dependabot Confusion: Gaining Access to Private GitHub Repositories using Dependabot |
Dependency confusion |
GitHub |
Giraffe Security |
Bug Bounty | 2023-05-06 | 2023-06-13 |
116 | Size matters! When capital letters introduce vulnerabilities |
XSS |
Microsoft |
Mario Stathakopoulos |
Bug Bounty | 2023-05-06 | 2023-06-13 |
115 | How I discovered XSS via triple URL encode |
XSS
WAF bypass |
NA |
Muhammed Mubarak |
Bug Bounty | 2023-05-07 | 2023-06-13 |
114 | How a simple Directory Listing leads to PII Data Leakage, Remote Code Execution and many more vulnerabilities on a HR management subdomain |
RCE
Unrestricted file upload
Stored XSS
Information disclosure
Directory listing |
NA |
Aayush Vishnoi (@AayushVishnoi10) |
Bug Bounty | 2023-05-07 | 2023-06-13 |
113 | IPv6 DNS Takeover via mitm6 (Write Up) |
MiTM
IPv6
DNS takeover
Misconfigured LDAP server
Internal pentest |
NA |
Evan Ricafort (@evanricafort) |
Bug Bounty | 2023-05-08 | 2023-06-13 |
112 | Sorting Your Way to Stolen Passwords |
Bruteforce
Cryptographic issues |
NA |
Nightbane (@Nightbanes) |
Bug Bounty | 2023-05-08 | 2023-06-13 |
111 | Escaping Parallels Desktop with Plist Injection |
Local Privilege Escalation
Plist injection
TOCTOU |
Parallels |
kn32 |
Bug Bounty | 2023-05-08 | 2023-06-13 |
110 | A deep-dive on Pluck CMS vulnerability CVE-2023-25828 |
Unrestricted file upload
RCE
Security code review |
Pluck CMS |
Matthew Hogg |
Bug Bounty | 2023-05-08 | 2023-06-13 |
109 | PwnAssistant - Controlling /home%27s Via A Home Assistant RCE |
Authentication bypass
RCE
Security code review
IoT |
Home Assistant |
elttam (@elttam) |
Bug Bounty | 2023-05-09 | 2023-06-13 |
108 | Discovery of an XSS on Opera |
XSS |
Opera |
Arman (@M7arm4n) |
Bug Bounty | 2023-05-10 | 2023-06-13 |
107 | Testing a new encrypted messaging app%27s extraordinary claims |
Android
Firebase
Cryptographic issues
Privacy issue
Information disclosure |
Converso |
Crnković |
Bug Bounty | 2023-05-10 | 2023-06-13 |