Write-ups

Check The Published Writeups

WDBTitleTagsProgramsAuthorsTypePublicationAdded
3449A Long Overdue Write-up: How I got into the Oppo Hall of Fame Login screen bypass Authentication bypass oppo Shibin B. Shaji (@shibinbshaji06) Bug Bounty2020-05-282023-06-13
3298Android pin bypass with rate limiting Lack of rate limiting Authentication bypass NA Baluz (@t3chman) Bug Bounty2020-07-182023-06-13
3297Creative Android pin bypass with Race conditon Race condition Authentication bypass NA Baluz (@t3chman) Bug Bounty2020-07-182023-06-13
3273Authentication Token Leads To IDOR Authentication bypass NA mohit (@mohit29295572) Bug Bounty2020-07-282023-06-13
3234Bypassing 403 Authentication bypass NA Michael Hyndman (@michaelhyndman) Bug Bounty2020-08-092023-06-13
3189Auth bypass: Leaking Google Cloud service accounts and projects Authentication bypass Google Ezequiel Pereira (@epereiralopez) Bug Bounty2020-08-262023-06-13
3146How I By-pass the login page and 2FA authentication….. Authentication bypass OTP bypass MFA bypass NA Harsh Bug Bounty2020-09-202023-06-13
3125Story of a weird vulnerability I found on Facebook Authentication bypass Information disclosure Meta / Facebook Amine Aboud (@amineaboud) Bug Bounty2020-09-302023-06-13
3121Journey Of My First Bug Bounty (Nov 2018) Authentication bypass Samsung Harsh Tyagi (@harshtya9i) Bug Bounty2020-10-022023-06-13
3109We Hacked Apple for 3 Months: Here’s What We Found RCE Authentication bypass Authorization bypass SSRF XXE Blind XSS IDOR OS command injection SQL injection Apple Sam Curry (@samwcyo) Bug Bounty2020-10-072023-06-13
3101Unauthorized access to all the user’s account. Account takeover Authentication bypass JWT NA Rahul Naidu Bug Bounty2020-10-122023-06-13
3090Multiple Address Bar Spoofing Vulnerabilities In Mobile Browsers Authentication bypass JWT Android NHS COVID-19 App James Sanderson (@zofrex) Bug Bounty2020-10-202023-06-13
3071Weblogic RCE by only one GET request — CVE-2020–14882 Analysis RCE Authentication bypass Security code review Oracle (WebLogic) Nguyễn Tiến Giang (@testanull) Bug Bounty2020-10-282023-06-13
3048Silver Peak Unity Orchestrator RCE RCE Authentication bypass Path traversal SQL injection Silver Peak Realmode Labs (@RealmodeLabs) Bug Bounty2020-11-082023-06-13
3030SD-PWN Part 2 — Citrix SD-WAN Center — Another Network Takeover RCE Authentication bypass Path traversal OS command injection Local Privilege Escalation Citrix Systems Realmode Labs (@RealmodeLabs) Bug Bounty2020-11-152023-06-13
3004SD-PWN Part 4 — VMware VeloCloud — The Last Takeover RCE Authentication bypass Default credentials SQL injection Path traversal LFI VMware Realmode Labs (@RealmodeLabs) Bug Bounty2020-11-262023-06-13
2970How I hacked Facebook: Part One Missing authentication Authentication bypass Account takeover Meta / Facebook Alaa Abdulridha (@alaa0x2) Bug Bounty2020-12-112023-06-13
2962D-Link: Multiple Security Vulnerabilities Leading to RCE RCE Authentication bypass Information disclosure D-Link Harold Zang Bug Bounty2020-12-172023-06-13
2888Strange Admin Panel Bypass Story | | Bug Bounty Authentication bypass Account takeover NA Ranjeet Kumar Singh (@geekboyranjeet) Bug Bounty2021-01-172023-06-13
2848An Account Takeover Vulnerability Due to Response Manipulation. Authentication bypass Account takeover NA Avanish Pathak (@avanish46) Bug Bounty2021-01-312023-06-13
2782Account Take Over by Response Manipulation Authentication bypass Account takeover NA Naveen J (@thevillagehackr) Bug Bounty2021-02-172023-06-13
2779Account Takeover via Response Manipulation worth 1800$.. Authentication bypass OTP bypass Account takeover NA Ashutosh mishra (@ashutoshmish_ra) Bug Bounty2021-02-202023-06-13
2756Jira Auth Bypass bug in Google Acquisition (Apigee) Authentication bypass Google Jayateertha Guruprasad (@JayateerthaG) Bug Bounty2021-02-282023-06-13
2660Weird and very easy authentication bypass found with Google dorking Authentication bypass NA GrumpinouT (@RVerwilghen) Bug Bounty2021-04-052023-06-13
2645Advisory: Cisco RV34X Series – Authentication Bypass and Remote Command Execution Authentication bypass OS command injection RCE Cisco T. Shiomitsu Bug Bounty2021-04-132023-06-13