Write-ups

Check The Published Writeups

WDBTitleTagsProgramsAuthorsTypePublicationAdded
3046Firefox for Android: LAN-Based Intent Triggering Insecure intent Android Mozilla initstring (@init_string) Bug Bounty2020-11-102023-06-13
2986Opera Browser Cross Site Scripting (XSS) XSS Android Opera Neil Mark Ochea (@nmochea) Bug Bounty2020-12-052023-06-13
2952Hack crypto secrets from heap memory to exploit Android application Cryptographic issues NA secureITmania (@secureitmania) Bug Bounty2020-12-222023-06-13
2947Full Address Bar Spoofing On Opera Mini Android Address Bar Spoofing Opera Google Piyush Raj ~ Rex (@0x48piraj) Bug Bounty2020-12-262023-06-13
2887ShazLocate! Abusing CVE-2019-8791 & CVE-2019-8792 Insecure deeplink Information disclosure Android Google Apple Ashley King (@AshleyKingUK) Bug Bounty2021-01-172023-06-13
2851Android apk leaks access token to takeover the whole infrastructure Information disclosure Hardcoded credentials Android NA Santosh Kumar Sha (@killmongar1996) Bug Bounty2021-01-302023-06-13
2829Bigbasket Bug Bounty Writeup Insecure data storage Android NA Lohith Gowda M (@lohi_gowda_) Bug Bounty2021-02-082023-06-13
2816How I was able to get extra coins Logic flaw Android NA Saddam Hussain (@wisdomfreak1) Bug Bounty2021-02-122023-06-13
2799SHAREit Flaw Could Lead to Remote Code Execution Android RCE MiTM Man-in-the-Disk attack Insecure intent Vulnerable Android content provider SHAREit Echo Duan Bug Bounty2021-02-152023-06-13
2743Content Injection (RCE) in Yandex Browser for Android [2018] MiTM Yandex Nightwatch Cybersecurity (@nightwatchcyber) Bug Bounty2021-03-032023-06-13
2734Stored XSS in Google Ads Android Application— $3133.70 Stored XSS HTML injection Google Ashish Dhone (@ashketchum_16) Bug Bounty2021-03-072023-06-13
2706TikTok for Android 1-Click RCE RCE XSS Insecure intent Android TikTok Sayed Abdelhafiz (@dPhoeniixx) Bug Bounty2021-03-182023-06-13
2613Page Owners Can’t remove or change page roles of deactivated users (or if Attacker blocks the page owner) in Facebook Lite, Facebook for Android and touch.facebook.com Logic flaw Meta / Facebook Baibhav Anand (@SpongeBhav) Bug Bounty2021-04-222023-06-13
2595Exploiting memory corruption vulnerabilities on Android Memory corruption Android Paypal Oversecured (@OversecuredInc) Bug Bounty2021-04-302023-06-13
2568Exploiting Activity in medium android app Insecure intent Android Medium Raju kumar (@MrCyberwarrior) Bug Bounty2021-05-102023-06-13
2543Time-Based SQL Injection to Dumping the Database SQL injection Android NA Naveen J (@thevillagehackr) Bug Bounty2021-05-192023-06-13
2504Android: Exploring vulnerabilities in WebResourceResponse Arbitrary file read Android Amazon Oversecured (@OversecuredInc) Bug Bounty2021-06-032023-06-13
2490Two weeks of securing Samsung devices: Part 1 Arbitrary file write Insecure intent Android Samsung Oversecured (@OversecuredInc) Bug Bounty2021-06-102023-06-13
2472Why dynamic code loading could be dangerous for your apps: a Google example Arbitrary file write Insecure intent Android Google Oversecured (@OversecuredInc) Bug Bounty2021-06-172023-06-13
2448Gaining access to protected components Vulnerable Android content provider Android NA DavMehtab Zafar (@0xmzfr) Bug Bounty2021-06-252023-06-13
2399Hacking Xiaomi%27S Android Apps - Part 1 Android Information disclosure Open redirect Privacy issue Xiaomi Ameya (@iamTakeMyHand) Bug Bounty2021-07-192023-06-13
2340Size Matters — CVE-2021–0485 (High) Local Privilege Escalation Android Google Dimitrios Valsamaras (@Ch0pin) Bug Bounty2021-08-072023-06-13
2318Two weeks of securing Samsung devices: Part 2 Arbitrary file write Arbitrary file read Vulnerable Android content provider Android Samsung Oversecured (@OversecuredInc) Bug Bounty2021-08-162023-06-13
2188Bypass of biometrics & password security functionality for Android Authentication bypass Android CoinDCX Dheeraj Madhukar (@Dheerajmadhukar) Bug Bounty2021-09-272023-06-13
2157How I Hacked Billion Android Users Social And 3rd Party Account | A Story About 5000$ Bug Android Google Karthikeyan.V (@karthithehacker) Bug Bounty2021-10-102023-06-13