Write-ups

Check The Published Writeups

WDBTitleTagsProgramsAuthorsTypePublicationAdded
5060Let’s steal some tokens! CSRF XSS Account takeover Google Shopify Mahmoud Gamal (@Zombiehelp54) Bug Bounty2017-06-112023-06-13
5059Godaddy XSS affects parked domains redirector/processor! Reflected XSS GoDaddy Mohamed A. Baset Bug Bounty2017-06-112023-06-13
5057XSS on Bugcrowd and so many other website’s main Domain Reflected XSS Bugcrowd Bull (@v0sx9b) Bug Bounty2017-06-142023-06-13
5054How I Built An XSS Worm On Atmail XSS Atmail Jake Miller Bug Bounty2017-06-232023-06-13
5052Stored XSS in the heart of the Russian email provider giant (Mail.ru) Stored XSS Mail.ru Seif Elsallamy (@seifelsallamy) Bug Bounty2017-06-242023-06-13
5049CVE-2017-10711: Reflected XSS vulnerability in SimpleRisk – Open Source Risk Management System Reflected XSS SimpleRisk Mohamed A. Baset Bug Bounty2017-06-282023-06-13
5048Escalating XSS in PhantomJS Image Rendering to SSRF/Local-File Read XSS SSRF LFI NA Brett Buerhaus (@bbuerhaus) Bug Bounty2017-06-292023-06-13
5045Stored XSS in Bandcamp Stored XSS Bandcamp Corben Leo (@hacker_) Bug Bounty2017-06-302023-06-13
5044Making an XSS triggered by CSP bypass on Twitter. XSS CSP bypass Twitter tbmnull Bug Bounty2017-07-062023-06-13
5042Managed Apps and Music: a tale of two XSSes in Google Play XSS Google Yasin Soliman (@SecurityYasin) Bug Bounty2017-07-072023-06-13
5041Medium Content Spoofing Leads to XSS Content spoofing Stored XSS Medium Abdullah Hussam (@Abdulahhusam) Bug Bounty2017-07-082023-06-13
5040Coinbase AngularJS DOM XSS via Kiteworks DOM XSS Coinbase Paulos Yibelo (@PaulosYibelo) Bug Bounty2017-07-082023-06-13
5038XSS by tossing cookies XSS Cookie tossing Microsoft Twitter WeSecureApp (@wesecureapp) Bug Bounty2017-07-102023-06-13
5037How we tookover shopify accounts with one single click Stored XSS Shopify WeSecureApp (@wesecureapp) Bug Bounty2017-07-102023-06-13
5029Xss using dynamically generated js file XSS NA Arbaz Hussain (@ArbazKiraak) Bug Bounty2017-07-192023-06-13
5028That Escalated Quickly : From partial CSRF to reflected XSS to complete CSRF to Stored XSS CSRF Reflected XSS Stored XSS NA Mandeep Jadon (@1337tr0lls) Bug Bounty2017-07-192023-06-13
5026Self XSS to Good XSS Clickjacking XSS Clickjacking NA Arbaz Hussain (@ArbazKiraak) Bug Bounty2017-07-202023-06-13
5023How i was able to bypass strong xss protection in well known website. (imgur.com) XSS Imgur Armaan Pathan (@armaancrockroax) Bug Bounty2017-07-212023-06-13
5020Stored XSS on Rockstar Game XSS Rockstar Games Arbaz Hussain (@ArbazKiraak) Bug Bounty2017-07-262023-06-13
5017How we invented the Tesla DOM DOOM XSS DOM XSS Tesla Detectify Labs Bug Bounty2017-07-272023-06-13
5016Cracking the lens: targeting HTTP%27s hidden attack-surface Reflected XSS SSRF Yahoo! / Verizon Media BT New Relic James Kettle (@albinowax) Bug Bounty2017-07-272023-06-13
5014Referer Based XSS XSS NA Arbaz Hussain (@ArbazKiraak) Bug Bounty2017-07-302023-06-13
5011XSS Because of wrong Content-type Header XSS Internshala Noman Shaikh (@nomanali181) Bug Bounty2017-08-042023-06-13
5005Reflected XSS on www.yahoo.com Reflected XSS Yahoo! / Verizon Media Samuel (@saamux) Bug Bounty2017-08-122023-06-13
4994Uber XSS via Cookie XSS Uber Chaobin Zhang Bug Bounty2017-08-302023-06-13