Write-ups

Check The Published Writeups

WDBTitleTagsProgramsAuthorsTypePublicationAdded
5222Neglected DNS records exploited to takeover subdomains Subdomain takeover Heroku Yassine Aboukir (@Yassineaboukir) Bug Bounty2015-02-202023-06-13
5221Telegram App Store Secret-Chat Messages in Plain-Text Database Privacy issue Information disclosure Telegram Jon Paterson (@shellprompt) Bug Bounty2015-02-232023-06-13
5220How I bypassed Facebook CSRF Protection CSRF Meta / Facebook Pouya Darabi (@Pouyadarabi) Bug Bounty2015-09-042023-06-13
5219Race conditions on Facebook, DigitalOcean and others (fixed) Race condition Meta / Facebook DigitalOcean LastPass Josip Franjkovic (@josipfranjkovic) Bug Bounty2015-04-272023-06-13
5218Bypass ad account roles vulnerability 2015 Authorization flaw Meta / Facebook Pouya Darabi (@Pouyadarabi) Bug Bounty2015-05-152023-06-13
5217[Responsible disclosure] How I could have hacked 62.5 million Zomato Users IDOR Zomato Anand Prakash (@anandpraka_sh) Bug Bounty2015-06-042023-06-13
5216The easiest bug bounties I have ever won IDOR Meta / Facebook Josip Franjkovic (@josipfranjkovic) Bug Bounty2015-07-132023-06-13
5215Bypassing Google Authentication on Periscope%27s Administration Panel Authentication bypass Google Jack Whitton (@fin1te) Bug Bounty2015-07-202023-06-13
5214Blind SQL Inejction [Hootsuite] Blind SQL injection Hootsuite Abdullah Hussam (@Abdulahhusam) Bug Bounty2015-08-012023-06-13
5213One Payload to XSS Them All! Flash XSS Adobe Abdullah Hussam (@Abdulahhusam) Bug Bounty2015-08-032023-06-13
5212Hacking Facebook Pages Authorization flaw Privilege escalation Broken Access Control Meta / Facebook Laxman Muthiyah (@LaxmanMuthiyah) Bug Bounty2015-08-262023-06-13
5211CVE-2014-7216: A Journey Through Yahoo’s Bug Bounty Program Buffer Overflow Memory corruption Yahoo! / Verizon Media Julien Ahrens (@MrTuxracer) Bug Bounty2015-09-032023-06-13
5210XSS to RCE in ... XSS RCE NA Neil Hakuna Matatall (@ndm) Bug Bounty2015-09-082023-06-13
5209XSS vulnerability in Google image search XSS Google Mahmoud Gamal (@Zombiehelp54) Bug Bounty2015-09-182023-06-13
5208Open Redirect in Linkedin and Yahoo Open redirect LinkedIn Yahoo! / Verizon Media Vitor “r0t” Oliveira (@r0t1v) Bug Bounty2015-09-242023-06-13
5207XSS to RCE in Atlassian Hipchat XSS RCE Atlassian Matt Austin (@mattaustin) Bug Bounty2015-11-152023-06-13
5206Cloudflare WAF XSS XSS Cloudflare Abdullah Hussam (@Abdulahhusam) Bug Bounty2015-11-162023-06-13
5205How To Hack PayU – And Buy 10x More For The Same Price RCE PayU Rick Harris (@codel10n) Bug Bounty2015-12-182023-06-13
5204Arbitary File Upload Vulnerability in Google Nest (Write Up) Unrestricted file upload Stored XSS Google Evan Ricafort (@evanricafort) Bug Bounty2015-12-212023-06-13
5203Local File XSS Vulnerability in Wordpress.com (Write Up) XSS WordPress Evan Ricafort (@evanricafort) Bug Bounty2015-12-212023-06-13
5202Instagram%27s Million Dollar Bug RCE Meta / Facebook Wesley Wineberg Bug Bounty2015-12-272023-06-13
5201Leaking API keys in Bing Maps Portal IDOR Microsoft Sai Krishna Kothapalli (@kmskrishna) Bug Bounty2015-12-312023-06-13
5200Broken Access Control in bingmapsportal !!! Broken Access Control Microsoft Sai Krishna Kothapalli (@kmskrishna) Bug Bounty2016-01-232023-06-13
5199[manager.paypal.com] Remote Code Execution Vulnerability RCE Paypal Michael Stepankin (@artsploit) Bug Bounty2016-01-252023-06-13
5198An XSS on Facebook via PNGs & Wonky Content Types XSS Meta / Facebook Jack Whitton (@fin1te) Bug Bounty2016-01-272023-06-13