Write-ups

Check The Published Writeups

WDBTitleTagsProgramsAuthorsTypePublicationAdded
4039The Bugs Are Out There, Hiding in Plain Sight IDOR SSRF Information disclosure CORS misconfiguration NA A Bug’z Life (@abugzlife1) Bug Bounty2019-07-152023-06-13
3985LAN-Based Blind SSRF Attack Primitive for Windows Systems (switcheroo) SSRF Microsoft initstring (@init_string) Bug Bounty2019-08-092023-06-13
3977SSRF Vulnerability in https://app.[REDACTED].com SSRF NA Evan Ricafort (@evanricafort) Bug Bounty2019-08-132023-06-13
3914SSRF | Reading Local Files from DownNotifier server SSRF NA Dr.FarFar (@3XS0) Bug Bounty2019-09-182023-06-13
3875A Tale of Exploitation in Spreadsheet File Conversions Local file disclosure (LFD) SSRF Slack Brett Buerhaus (@bbuerhaus) Bug Bounty2019-10-182023-06-13
3851BugBounty | A Simple SSRF SSRF DNS rebinding NA Jinone (@jinonehk) Bug Bounty2019-11-052023-06-13
3849BugBounty | A Simple SSRF SSRF DNS rebinding NA Jinone (@jinonehk) Bug Bounty2019-11-052023-06-13
3844My First SSRF Using DNS Rebinding SSRF DNS rebinding NA Marek Geleta (@marek_geleta) Bug Bounty2019-11-112023-06-13
3837[Server Side Request Forgery] Blind SSRF due to Sentry Misconfiguration SSRF NA Kent Bayron (@bayronkentoy) Bug Bounty2019-11-142023-06-13
3787SSRF via FFmpeg HLS processing SSRF NA Pflash Punk (@PflashPunk) Bug Bounty2019-12-112023-06-13
3781Vimeo upload function SSRF SSRF NA Sayed Abdelhafiz (@dPhoeniixx) Bug Bounty2019-12-152023-06-13
3772[Google VRP] SSRF in Google Cloud Platform StackDriver SSRF Google Ron Chan (@ngalongc) Bug Bounty2019-12-192023-06-13
3737From . in regex to SSRF — part 1 SSRF NA Niemiec Marcin (@xvnpw) Bug Bounty2020-01-052023-06-13
3729Hunting Good Bugs with only <HTML> Open redirect HTML injection SSRF NA Ak1T4 (@akita_zen) Bug Bounty2020-01-102023-06-13
3722From . in regex to SSRF — part 2 SSRF NA Niemiec Marcin (@xvnpw) Bug Bounty2020-01-142023-06-13
3671How I discovered an SSRF leading to AWS Metadata Leakage SSRF NA Amey Anekar (@ameyanekar) Bug Bounty2020-02-102023-06-13
3647How i found 3 SSRF in one day on different bug bounty targets SSRF NA - Bug Bounty2020-02-252023-06-13
3635SSRF on PDF generator. SSRF NA John Michael (@michan2514) Bug Bounty2020-03-022023-06-13
3631Exploiting an SSRF: Trials and Tribulations SSRF NA A Bug’z Life (@abugzlife1) Bug Bounty2020-03-032023-06-13
3629SSRF vulnerability in Uppy, Detected by Shieldfy SSRF Node.js third-party modules Eslam Salem (@net_code) Bug Bounty2020-03-032023-06-13
3602Using Vulnerability Analytics Feature Like a Boss SSRF Reflected XSS Authentication bypass NA Ozgur Alp (@ozgur_bbh) Bug Bounty2020-03-152023-06-13
3558How we abused Slack%27s TURN servers to gain access to internal services SSRF Slack Sandro Gauci (@sandrogauci) Bug Bounty2020-04-062023-06-13
3521Piercing the Veal: Short Stories to Read with Friends SSRF DuckDuckGo d0nut (@d0nutptr) Bug Bounty2020-04-272023-06-13
3512The Story of Blind SSRF leads to internal Host discovery. SSRF NA kaustubh padwad (@s3curityb3ast) Bug Bounty2020-05-012023-06-13
3508Blind SSRF on coda.io SSRF Coda Kleiton Kurti (@kleiton0x7e) Bug Bounty2020-05-022023-06-13