Write-ups

Check The Published Writeups

WDBTitleTagsProgramsAuthorsTypePublicationAdded
4510Privilege Escalation like a Boss IDOR NA Jay Jani (@JayJani007) Bug Bounty2018-10-272023-06-13
4505IDOR in JWT and the shortest token you will ever see {}.{“uid”: “1234567890”} IDOR NA Plenum (@plenumlab) Bug Bounty2018-10-302023-06-13
4493Duplicate but still cool IDOR Account takeover NA Plenum (@plenumlab) Bug Bounty2018-11-052023-06-13
4489Vine User’s Private information disclosure IDOR Information disclosure Vine Prial Islam Khan (@prial261) Bug Bounty2018-11-072023-06-13
4471HackenProof Customer Story: Uklon XSS IDOR Blind XSS Account takeover Uklon HackenProof (@hackenproof) Bug Bounty2018-11-162023-06-13
4427Change Anyone’s profile picture-Exploiting IDOR IDOR NA Rupika Luhach (@Rup_Ki_Rani) Bug Bounty2018-12-092023-06-13
4424How I was able to generate Access Tokens for any Facebook user. IDOR Information disclosure Meta / Facebook Youssef Sammouda (@samm0uda) Bug Bounty2018-12-112023-06-13
4423How I could have stolen your photos from Google Parameter tampering Authorization flaw IDOR Google Gergő Turcsányi (@GergoTurcsanyi) Bug Bounty2018-12-112023-06-13
4390How I Was Able To Takeover All User Account And Admin Panel IDOR Account takeover NA Dipak kumar Das (@d1pakdas) Bug Bounty2018-12-282023-06-13
4387How I was able to delete Google Gallery Data [IDOR] IDOR Google Yogesh Tantak Bug Bounty2018-12-302023-06-13
4382How I was able to Harvest other Vine users IP address IDOR Vine Prial Islam Khan (@prial261) Bug Bounty2019-01-022023-06-13
4380Yes I can see your OTP IDOR NA Vulnerables Bug Bounty2019-01-032023-06-13
4368Workplace Logo ID to workplace owner name Disclosure Facebook Bug Bounty IDOR Meta / Facebook Ajay Gautam (@evilboyajay) Bug Bounty2019-01-112023-06-13
4339AntiHack IDOR on Create Submission IDOR AntiHack.me Syahrul Akbar Rohmani (@sahruldotid) Bug Bounty2019-01-262023-06-13
4331Publish tweets by any other user IDOR Twitter Kedrisec (@kedrisec) Bug Bounty2019-01-302023-06-13
4326How I was able to Extract Information of Other Users- Exploiting IDOR IDOR Knowyourmeds.com Rupika Luhach (@Rup_Ki_Rani) Bug Bounty2019-02-022023-06-13
4309Hacking YouTube for #fun and #profit IDOR Google Alexandru Coltuneac (@dekeeu) Bug Bounty2019-02-122023-06-13
4307Disclose private attachments in Facebook Messenger Infrastructure - 15,000$ IDOR Meta / Facebook Sarmad Hassan (@JubaBaghdad) Bug Bounty2019-02-132023-06-13
4289Bug Writeup: FBCTF IDOR IDOR Meta / Facebook George Osterweil Bug Bounty2019-02-202023-06-13
4269Facebook exploit – Confirm website visitor identities Information disclosure IDOR Meta / Facebook Tom Anthony (@TomAnthonySEO) Bug Bounty2019-03-042023-06-13
4260Inserting malware into anyone’s Google Earth Projects Archive IDOR XSS Authorization flaw Google Thomas Orlita (@ThomasOrlita) Bug Bounty2019-03-102023-06-13
4248How I was able to pwned 30000+ user’s webhook IDOR NA gujjuboy10x00 (@vis_hacker) Bug Bounty2019-03-142023-06-13
4246Disclosure of Pending Roles for any Facebook Page IDOR Meta / Facebook Avinash Kumar (@itsavinash_) Bug Bounty2019-03-162023-06-13
4232My very first bug: a dreaded dupe and then an IDOR jackpot! IDOR Yahoo! / Verizon Media John H4X00R (@JohnH4X00R) Bug Bounty2019-03-282023-06-13
4227EdM0d0 IDOR Vulnerabilities IDOR Edmodo Pratyush Anjan Sarangi Bug Bounty2019-04-012023-06-13