Write-ups

Check The Published Writeups

WDBTitleTagsProgramsAuthorsTypePublicationAdded
1393How I find open redirect in Facebook Open redirect Brave Software Abhinav Kumar (@abhinavsecond) Bug Bounty2022-07-072023-06-13
1255Email Confirmation bypass at Instagram Email verification bypass Logic flaw Meta / Facebook Avinash Kumar (@itsavinash_) Bug Bounty2022-08-102023-06-13
1164How I found reflected XSS on IDFC Bank with burp-suite Intruder Reflected XSS IDFC Bank Santosh Kumar Sha (@killmongar1996) Bug Bounty2022-08-282023-06-13
1163Out-Of-Bond Remote code Execution(RCE) on De Nederlandsche Bank N.V. with burp-suite collaborator OS command injection RCE De Nederlandsche Bank Santosh Kumar Sha (@killmongar1996) Bug Bounty2022-08-282023-06-13
1037Blind XSS on Admin Portal Leads to Information Disclosure Blind XSS NA Rohit Kumar (Rohit_443) Bug Bounty2022-09-242023-06-13
1006Using Default Credential to Admin Account Takeover Weak credentials NA Rohit Kumar (Rohit_443) Bug Bounty2022-10-022023-06-13
949Facebook SMS Captcha Was Vulnerable to CSRF Attack CSRF Meta / Facebook Lokesh Kumar (@lokeshdlk77) Bug Bounty2022-10-172023-06-13
715Privilege Escalation to remove the owner from the organization Privilege escalation Mass assignment NA Hemant Kumar Bug Bounty2022-12-092023-06-13
696How I Hacked A Company (My First Red Team Engagement 🚩)Permalink SQL injection NA Monish Kumar (@aidenpearce369) Bug Bounty2022-12-132023-06-13
467We Hacked GitHub for a Month: Here’s What We Found Pre-account takeover Broken Access Control Email verification bypass Logic flaw GitHub Shivam Kumar Singh (@MrRajputHacker) Bug Bounty2023-02-112023-06-13
461Zip bomb attack Zip bomb DoS Unrestricted file upload NA Ramkumar Nadar Bug Bounty2023-02-122023-06-13
374How I Earned $1800 for finding a (Business Logic) Account Takeover Vulnerability? Account takeover Authentication bypass NA Vivek Kumar Yadav (@0xd3vil) Bug Bounty2023-03-012023-06-13
277How I got access to Essilor International company customer PII INFO by AWS metadata access through SSRF SSRF NA Santosh Kumar Sha (@killmongar1996) Bug Bounty2023-03-212023-06-13