Write-ups

Check The Published Writeups

WDBTitleTagsProgramsAuthorsTypePublicationAdded
3792Media deletion CSRF vulnerability on Instagram CSRF Meta / Facebook Pouya Darabi (@Pouyadarabi) Bug Bounty2019-12-092023-06-13
3791Authentication Bypass MFA bypass NA Rushiikesh (@u1tran00b) Bug Bounty2019-12-092023-06-13
3789AirDoS: Remotely render any nearby iPhone or iPad unusable DoS Apple Kishan Bagaria (@KishanBagaria) Bug Bounty2019-12-102023-06-13
3788Blind XSS (A mind game to win the battle) Blind XSS NA Dirtycoder (@dirtycoder0124) Bug Bounty2019-12-112023-06-13
3787SSRF via FFmpeg HLS processing SSRF NA Pflash Punk (@PflashPunk) Bug Bounty2019-12-112023-06-13
3786A $25 Easy Bug. Session management issue NA Navneet (@na5n33t) Bug Bounty2019-12-122023-06-13
3785$500 getClass Sandbox bypass Google Ezequiel Pereira (@epereiralopez) Bug Bounty2019-12-122023-06-13
3784Multiple Host Header Attacks after bypassing protection with… a Header Attack Host header injection NA vict0ni (@vict0ni) Bug Bounty2019-12-122023-06-13
3783Facebook New Account Verification Bypass Authentication bypass Meta / Facebook Santosh Baral (@santoshbrl5) Bug Bounty2019-12-132023-06-13
3782How I was able to find a logical bug on Instagram? Logic flaw Meta / Facebook Jabir Khan (@Jabirkhan0x0) Bug Bounty2019-12-132023-06-13
3781Vimeo upload function SSRF SSRF NA Sayed Abdelhafiz (@dPhoeniixx) Bug Bounty2019-12-152023-06-13
3780Authorization bug that every bug hunter missed on a popular program Authorization flaw NA Ajinkya Pathare (@fellchase) Bug Bounty2019-12-152023-06-13
37794 Google Cloud Shell bugs explained RCE Google wtm@offensi.com (@wtm_offensi) Bug Bounty2019-12-162023-06-13
3778How I Took Over 2 Subdomains with Azure CDN Profiles Subdomain takeover NA m0chan (@m0chan98) Bug Bounty2019-12-162023-06-13
3777Stored Iframe Injection + CSRF = Account Takeover 😎😎 HTML injection CSRF NA Rounak Dhadiwal (@XploiteR_D) Bug Bounty2019-12-162023-06-13
3776Inf0rM@tion Disclosure via IDOR IDOR NA Pratyush Anjan Sarangi Bug Bounty2019-12-162023-06-13
3775BreakingApp – WhatsApp Crash & Data Loss Bug DoS Meta / Facebook Dikla Barda Bug Bounty2019-12-172023-06-13
3774Abusing feature to steal your tokens OAuth NA Harsh Jaiswal (@rootxharsh) Bug Bounty2019-12-172023-06-13
3773Javascript Anti Debugging - Abusing SourceMappingURL Browser hacking Google (Chromium) Gal Weizman (@WeizmanGal) Bug Bounty2019-12-172023-06-13
3772[Google VRP] SSRF in Google Cloud Platform StackDriver SSRF Google Ron Chan (@ngalongc) Bug Bounty2019-12-192023-06-13
3771#BugBounty — How Snapdeal (India’s Popular E-commerce Website) Kept their Users Data at Risk! Insecure storage of sensitive information Snapdeal Nanda Kumar (@nk00_nk) Bug Bounty2019-12-192023-06-13
3770Account Takeover Through Password Reset Poisoning Password reset Account takeover NA Vishal Bharad Bug Bounty2019-12-192023-06-13
3769Bypassing Captcha ! Captcha bypass NA Abhishek Yadav (@abhishake100) Bug Bounty2019-12-202023-06-13
3768Full Account Takeover (Android Application) Information disclosure Account takeover NA Vishal Bharad Bug Bounty2019-12-212023-06-13
37672 FA Bypass via CSRF Attack MFA bypass CSRF Mail.ru Vishal Bharad Bug Bounty2019-12-232023-06-13