Write-ups

Check The Published Writeups

WDBTitleTagsProgramsAuthorsTypePublicationAdded
4281Bug Bounty 101 — Always Check The Source Code Lack of rate limiting Information disclosure NA Spazzy Bug Bounty2019-02-232023-06-13
4280Chain of hacks leading to Database Compromise! LFI SSRF NA Avinash Jain (@logicbomb_1) Bug Bounty2019-02-232023-06-13
4279SHAREit Multiple Vulnerabilities Enable Unrestricted Access to Adjacent Devices’ Files Android Arbitrary file download Authentication bypass SHAREit Abdulrahman Nour (@aboodnour) Bug Bounty2019-02-252023-06-13
4278Web Cache Deception Attack leads to user info disclosure Web cache deception Information disclosure NA Kunal pandey (@kunalp94) Bug Bounty2019-02-252023-06-13
4277How I alert(1) in Azure DevOps XSS CSP bypass Microsoft SpyD3r (@TarunkantG) Bug Bounty2019-02-262023-06-13
4276[Still work] Redirect Yahoo Subdomain XSS Reflected from americangreetings.com Reflected XSS Yahoo! / Verizon Media Mohamed Haron (@m7mdharon) Bug Bounty2019-02-262023-06-13
4275Horizontal Privilege Escalation on Quora which can compromise all users on Quora Privilege escalation Quora SpyD3r (@TarunkantG) Bug Bounty2019-02-262023-06-13
4274Yet Another (unexpected) Hack for Bounty Information disclosure Sli.do Pumudu Ruhunage Bug Bounty2019-03-012023-06-13
4273Bypassing a restrictive JS sandbox JS sandbox breakout RCE NA Licencia para Hackear Bug Bounty2019-03-012023-06-13
4271XSS in Edmodo within 5 Minute (My First Bug Bounty) Reflected XSS Edmodo Vala Keyur (@valakeyur) Bug Bounty2019-03-042023-06-13
4270Auditing GitHub Repo Wikis for Fun and Profit Misconfigured Github wiki NA Smeege (@SmeegeSec) Bug Bounty2019-03-042023-06-13
4269Facebook exploit – Confirm website visitor identities Information disclosure IDOR Meta / Facebook Tom Anthony (@TomAnthonySEO) Bug Bounty2019-03-042023-06-13
4268Fixed : Brute-force Instagram account’s passwords Bruteforce Rate limiting bypass Meta / Facebook Sameer Rao Bug Bounty2019-03-052023-06-13
4267Fixed : Register any email address on Facebook Account Authorization flaw Meta / Facebook Sameer Rao Bug Bounty2019-03-052023-06-13
42663 XSS in ProtonMail for iOS XSS Apple Vladimir Metnew (@vladimir_metnew) Bug Bounty2019-03-062023-06-13
4265Facebook Messenger server random memory exposure through corrupted GIF image Information disclosure Meta / Facebook Dzmitry Lukyanenka (@vulnano) Bug Bounty2019-03-062023-06-13
4264Mapping Communication Between Facebook Accounts Using a Browser-Based Side Channel Attack Side-channel attack Cross-Site Frame Leakage (CSFL) Meta / Facebook Ron Masas (@RonMasas) Bug Bounty2019-03-072023-06-13
4263Vimeo SSRF with code execution potential. SSRF Vimeo Harsh Jaiswal (@rootxharsh) Bug Bounty2019-03-082023-06-13
4262Account Takeover Using Cross-Site WebSocket Hijacking (CSWH) Cross-Site WebSocket Hijacking (CSWH) Account takeover NA Sharan Panegav (@PanegavSharan) Bug Bounty2019-03-092023-06-13
4261SQL injection for $50 bounty, but still worth reading!! SQL injection NA Ronaldo Messi Bug Bounty2019-03-102023-06-13
4260Inserting malware into anyone’s Google Earth Projects Archive IDOR XSS Authorization flaw Google Thomas Orlita (@ThomasOrlita) Bug Bounty2019-03-102023-06-13
4258Escalating SSRF to RCE SSRF RCE NA Youssef A. Mohamed (@GeneralEG64) Bug Bounty2019-03-252023-06-13
4257Brute Forcing User IDS via CSRF To Delete all Users with CSRF attack. CSRF Bruteforce NA Armaan Pathan (@armaancrockroax) Bug Bounty2019-03-122023-06-13
4256How I found Blind XSS Vulnerability in redacted.com Blind XSS NA ssid (@newp_th) Bug Bounty2019-03-122023-06-13
4255Hack Your Form-New vector for Blind XSS Blind XSS Stored XSS NA Youssef A. Mohamed (@GeneralEG64) Bug Bounty2019-03-132023-06-13