Write-ups

Check The Published Writeups

WDBTitleTagsProgramsAuthorsTypePublicationAdded
4788Three Cases, Three Open Redirect Bypasses Open redirect NA Mmohammed Eldeeb (@malcolmx0x) Bug Bounty2018-04-222023-06-13
4787DOM XSS in Google VRView library DOM XSS Google Federico Fazzi (@federicofazzi) Bug Bounty2018-04-232023-06-13
4786How we got LFI in apache Drill (Recon like a boss) LFI NA gujjuboy10x00 (@vis_hacker) Bug Bounty2018-04-232023-06-13
4785XSS “403 forbidden” bypass write up XSS NA Nur A Alam Dipu (@Dipu1A) Bug Bounty2018-04-252023-06-13
4784The Unknown Hero-App Logic Bugs Logic flaw Canva Circle Ninja (@circleninja) Bug Bounty2018-04-252023-06-13
4783How I earned 60K+ from private program Open redirect Subdomain takeover XSS HTTP parameter pollution NA Siva Krishna Samireddi (@le4rner) Bug Bounty2018-04-252023-06-13
4782Bypassing the Confirmation Email for Newsletter (bof.nl) Authorization flaw IDOR Bits of Freedom Mohammed Israil (@mdisrail2468) Bug Bounty2018-04-262023-06-13
4781Reflected XSS on Stack Overflow Reflected XSS Stack Overflow ssid (@newp_th) Bug Bounty2018-04-272023-06-13
4780#BugBounty — How I was able to bypass firewall to get RCE and then went from server shell to get root user account! RCE NA Avinash Jain (@logicbomb_1) Bug Bounty2018-04-292023-06-13
4779How I found 2.9 RCE at Yahoo! Bug Bounty program RCE Yahoo! / Verizon Media Kedrisec (@kedrisec) Bug Bounty2018-04-302023-06-13
4777Story Of a Stored XSS Bypass Open redirect Zerocopter Prial Islam Khan (@prial261) Bug Bounty2018-04-302023-06-13
4776Stealing money from one account to another account Logic flaw NA Ajay Gautam (@evilboyajay) Bug Bounty2018-05-022023-06-13
4775Disclose Private Video Thumbnail from Facebook WorkPlace IDOR Meta / Facebook Sarmad Hassan (@JubaBaghdad) Bug Bounty2018-05-032023-06-13
4774$4500 bounty - How I got lucky Subdomain takeover NA Eray Mitrani (@ErayMitrani) Bug Bounty2018-05-032023-06-13
4773How I Got Paid $0 From the India’s largest online gifting portal — Bug Bounty Program Payment tampering Parameter tampering NA Hariom Vashisth Bug Bounty2018-05-052023-06-13
4772A Five Minute SQL-I SQL injection NA Ashish Jha Bug Bounty2018-05-062023-06-13
4771Asus Control Center – An Information Disclosure and a database connection Clear-Text password leakage Vulnerability Authorization flaw Information disclosure Asus Mohamed A. Baset Bug Bounty2018-05-082023-06-13
4770Internet Safety for Kids & Families — Trend Micro Bypass DOM XSS DOM XSS Trend Micro Honc (@honcbb) Bug Bounty2018-05-082023-06-13
4769How I used a simple Google query to mine passwords from dozens of public Trello boards Authorization flaw Information disclosure Trello Kushagra Pathak (@xKushagra) Bug Bounty2018-05-092023-06-13
4768HSTS Bypass Vulnerability in IE Preview HSTS bypass Microsoft Xiaoyin Liu (@general_nfs) Bug Bounty2018-05-152023-06-13
4767Whatsapp- DOS vulnerability on Android/iOS/Web DoS Meta / Facebook Pratheesh P Narayanan (@PRATHEESH_PPN) Bug Bounty2018-05-152023-06-13
4766How I was able to get subscription of $120/year For Free Payment bypass WeTransfer Muhammad Khizer Javed (@khizer_javed47) Bug Bounty2018-05-182023-06-13
4765Xss in Microsoft XSS Microsoft hacker_eth Bug Bounty2018-05-182023-06-13
4764Stored XSS in Yahoo and all subdomains! Stored XSS Microsoft Hakim Bencella (@H4kst3r) Bug Bounty2018-05-192023-06-13
4763How i HACKED admin account via password reset IDOR function of one private currency exchanger site IDOR Account takeover Password reset NA Aayush Pokhrel (@aayushpok) Bug Bounty2018-05-192023-06-13