Write-ups

Check The Published Writeups

WDBTitleTagsProgramsAuthorsTypePublicationAdded
4662#BugBounty — @Paytm Customer Information is at risk — India’s largest digital wallet company IDOR Paytm Avinash Jain (@logicbomb_1) Bug Bounty2018-08-032023-06-13
4661Blind-XSS in Chrome Experiments - Google (Write Up) Blind XSS Google Evan Ricafort (@evanricafort) Bug Bounty2018-08-032023-06-13
4660Stored XSS in GameSkinny Stored XSS GameSkinny Friendly (@SkeletorKeys) Bug Bounty2018-08-032023-06-13
4659Blind-XSS in Chrome Experiments - Google (Write Up) Blind XSS Google Evan Ricafort (@evanricafort) Bug Bounty2018-08-032023-06-13
4658My First Swag Pack : A Logical Bug on Edmodo Logic flaw Edmodo Abartan Dhakal (@imhaxormad) Bug Bounty2018-08-052023-06-13
4657Reflected XSS Primagames.com Reflected XSS Prima Games Friendly (@SkeletorKeys) Bug Bounty2018-08-062023-06-13
4656Self XSS leads to blind XSS and reflected XSS. Blind XSS Reflected XSS NA Friendly (@SkeletorKeys) Bug Bounty2018-08-062023-06-13
4655Unauth meetings access Authorization flaw Logic flaw Google Rojan Rijal (@uraniumhacker) Bug Bounty2018-08-062023-06-13
4654FakesApp: A Vulnerability in WhatsApp Content spoofing Authorization flaw Privacy issue Meta / Facebook Dikla Barda Bug Bounty2018-08-072023-06-13
4653Sending out phishing e-mails from @microsoft.com HTML injection Microsoft SI9INT (@si9int) Bug Bounty2018-08-072023-06-13
4652How I gained commit access to Homebrew in 30 minutes Information disclosure Homebrew Eric Holmes (@vesirin) Bug Bounty2018-08-072023-06-13
4651From data leak to account takeover Account takeover Information disclosure Password reset NA Antony Garand (@AntoGarand) Bug Bounty2018-08-072023-06-13
4650How I hacked a Crypto Exchange (Bug Bounty Writeup) IDOR NA Muhammad Abdullah Bug Bounty2018-08-072023-06-13
4649My First Critical Report Password reset Account takeover NA Miguel Corral (@mcorral74) Bug Bounty2018-08-082023-06-13
4648This is how can I spoof ANY Sentry.Io log infinitely and create fake error-logs Content spoofing HackerOne Sentry Carlos Daniel Giovanella Bug Bounty2018-08-092023-06-13
4647My Disclosed Report about Basic auth Api details at Reverb.com Information disclosure Reverb Mohamed Haron (@m7mdharon) Bug Bounty2018-08-092023-06-13
4646From TOMCAT to NT AUTHORITYSYSTEM Default credentials NA Rahul R Bug Bounty2018-08-092023-06-13
4645Subdomain Takeover: Yet another Starbucks case Subdomain takeover Starbucks Patrik Hudak (@0xpatrik) Bug Bounty2018-08-092023-06-13
4644Practical Web Cache Poisoning Web cache poisoning Mozilla HubSpot Cloudflare Binary.com Amazon (CloudFront) James Kettle (@albinowax) Bug Bounty2018-08-092023-06-13
4643[Twitter Bug Bounty] Misconfigured JSON endpoint on ads.twitter.com lead to Access control issue and Information Disclosure of role privileged users. Authorization flaw Information disclosure Twitter Peerzada Fawaz Ahmad Qureshi Bug Bounty2018-08-102023-06-13
4642Misconfigured JIRA setting - Apigee Information disclosure Google Atlassian Tutorgeeks Bug Bounty2018-08-102023-06-13
4641Adminer Script Results to Pwning Server?, Private Bug Bounty Program Authentication bypass NA Yashar Shahinzadeh (@YShahinzadeh) Bug Bounty2018-08-112023-06-13
4640S3 Bucket Misconfiguration in Amazon AWS misconfiguration Amazon Divyanshu Shukla (@justm0rph3u5) Bug Bounty2018-08-112023-06-13
4639How I Chained 4 Bugs(Features?) into RCE on Amazon Collaboration System RCE Amazon Orange Tsai (@orange_8361) Bug Bounty2018-08-112023-06-13
4638Distorted and Undeletable Posts in Facebook Group Authorization flaw Logic flaw Meta / Facebook Sarmad Hassan (@JubaBaghdad) Bug Bounty2018-08-122023-06-13