Write-ups

Check The Published Writeups

WDBTitleTagsProgramsAuthorsTypePublicationAdded
2493Author spoofing in Google Colaboratory Logic flaw Google Zohar Shachar Bug Bounty2021-06-092023-06-13
2174A short story of Content Spoofing to HTML Injection in Apple using Dangling Markup Injection HTML injection Dangling Markup Injection Apple Rishu Ranjan (@tweetit_rrj) Bug Bounty2021-10-032023-06-13
1977MS Teams: 1 feature, 4 vulnerabilities SSRF Information disclosure DoS Spoofing Microsoft Fabian Bräunlein Bug Bounty2021-12-222023-06-13
1938Authorization bypass — Gmail Spoofing Google 7𝖍3𝖍4𝖈kv157 (@7h3h4ckv157) Bug Bounty2022-01-062023-06-13
1842Google Security Misconfiguration Leads to Account Takeover ! Logic flaw Spoofing Google Harsh Banshpal Bug Bounty2022-02-082023-06-13
1831Microsoft Team’s Unpatched URL Spoofing Vulnerability URL spoofing Microsoft Priyank Raval Bug Bounty2022-02-092023-06-13
1678A Large-scale and Longitudinal Measurement Study of DKIM Deployment Email spoofing Phishing Google Mailchimp Sendgrid Salesforce Chuhan Wang Bug Bounty2022-04-012023-06-13
1675Debugging the undebuggable and finding a CVE in Microsoft Defender for Endpoint Endpoint spoofing Microsoft Gijs Hollestelle Bug Bounty2022-04-012023-06-13
1662Spoof as another Facebook user to report an impostor account Spoofing Meta / Facebook Syd Ricafort (@devsyd11) Bug Bounty2022-04-052023-06-13
1587Page Admin Disclosure when Posting a Reel Spoofing Meta / Facebook Syd Ricafort (@devsyd11) Bug Bounty2022-04-302023-06-13
1559Spoofing SaaS Vanity URLs for Social Engineering Attacks URL spoofing Box Zoom Google Tal Peleg Bug Bounty2022-05-112023-06-13
1525Spoofing Microsoft 365 Like It’s 1995 Spoofing Phishing Microsoft Steve Borosh (@424f424f) Bug Bounty2022-05-242023-06-13
1318Mail Server Misconfiguration leads to sending a fax from anyone’s account on HelloFax (Dropbox BBP) for a bounty of $4,913 Email spoofing Dropbox Sayaan Alam (@ehsayaan) Bug Bounty2022-07-252023-06-13
1308CVE-2022-31813: Forwarding Addresses Is Hard Host header injection DoS IP address spoofing Internet Bug Bounty (Apache HTTPD) Gaetan Ferry (@_mabote_) Bug Bounty2022-07-262023-06-13
1303SSD Advisory – Apple Safari IDN URL Spoofing URL spoofing Apple Dohyun Lee (@l33d0hyun) Bug Bounty2022-07-272023-06-13
1147Abusing Microsoft Teams Direct Routing Spoofing Fraud attack AudioCodes Ltd. Moritz Abrell (@moritz_abrell) Bug Bounty2022-09-012023-06-13
909Support supports a Hacker Social engineering Spoofing Authorization flaw Account takeover NA mechboy (@mechboy_) Bug Bounty2022-10-252023-06-13
798Header spoofing via a hidden parameter in Facebook Batch GraphQL APIs GraphQL Security misconfiguration Meta / Facebook David Schütz (@xdavidhu) Bug Bounty2022-11-212023-06-13
784From Zero to Hero Part 1: Bypassing Intel DCM’s Authentication by Spoofing Kerberos and LDAP Responses (CVE-2022-33942) Authentication bypass Kerberos RCE Privilege escalation Security code review Intel Julien Ahrens (@MrTuxracer) Bug Bounty2022-11-232023-06-13
758VoIP Spoofing (Intigriti) 1,250€ VoIP Spoofing NA 0xJin (@0xJin) Bug Bounty2022-11-292023-06-13
543Exploiting a Critical Spoofing Vulnerability in Windows CryptoAPI Windows Cryptographic issues Microsoft Tomer Peled Bug Bounty2023-01-252023-06-13
408Exploit Airlines that use T-Mobile for Free WiFi Wifi Payment bypass MAC address spoofing Missing authentication T-Mobile cylect.io (@cylect_io) Bug Bounty2023-02-232023-06-13
298IP spoofing and SQL injection in Textcube SQL injection IP spoofing HTTP header attack Security code review Textcube Sjoerd Langkemper Bug Bounty2023-03-152023-06-13
186Impersonating Other Players with UDP Spoofing in Mirror Game hacking UDP spoofing Reverse engineering Unity (Mirror) IncludeSec (@IncludeSecurity) Bug Bounty2023-04-182023-06-13
157New high-severity vulnerability (CVE-2023-29552) discovered in the Service Location Protocol (SLP) DoS UDP spoofing Service Location Protocol (SLP) Pedro Umbelino Bug Bounty2023-04-252023-06-13