Write-ups

Check The Published Writeups

WDBTitleTagsProgramsAuthorsTypePublicationAdded
3908A Simple bypass of Registration Activation that Lead to many Bug - Information disclosure IDOR CSRF NA YoKo Kho (@YokoAcc) Bug Bounty2019-09-212023-06-13
3905[Bug Bounty] Exploiting Cookie Based XSS by Finding RCE Information disclosure SQL injection Authentication bypass Unrestricted file upload RCE XSS NA Tomi (@noobe_io) Bug Bounty2019-09-222023-06-13
3901Information Disclosure at PayPal and Xoom (PayPal Acquisition) via Simple Google Dork - 1,000 USD Information disclosure Paypal YoKo Kho (@YokoAcc) Bug Bounty2019-09-242023-06-13
3900Analysis of CVE-2019-14994 – Jira Service Desk Path Traversal leads to Massive Information Disclosure Path traversal Atlassian Sam Curry (@samwcyo) Bug Bounty2019-09-252023-06-13
3891GraphQL Introspection leads to Sensitive Data Disclosure. Information disclosure NA Pranay Bafna Bug Bounty2019-10-022023-06-13
3887How “Recon” helped Samsung protect their production repositories of SamsungTv, eCommerce / eStores Information disclosure Samsung Prateek Tiwari Bug Bounty2019-10-052023-06-13
3885EXIF Geolocation Data Not Stripped From Uploaded Images Information disclosure NA Sourav Newatia (@souravnewatia) Bug Bounty2019-10-092023-06-13
3874Hunting for bounties antihack.me case study RCE XSS Logic flaw Information disclosure AntiHack.me 0xSha (@0xsha) Bug Bounty2019-10-202023-06-13
3870(POC) Disclose members in any closed Facebook group Information disclosure Meta / Facebook Ahmad Talahmeh Bug Bounty2019-10-222023-06-13
3867How I earned $$$$ by finding confidential customer data including plain-text passwords! Directory listing Information disclosure NA Sushant Soni (@sushantsoni5392) Bug Bounty2019-10-242023-06-13
3862Android Reddit App leaks images Information disclosure Reddit Eric Urban Bug Bounty2019-10-292023-06-13
3860[Leak] Can I take the user information, please?!! Information disclosure NA Mohamed Sayed (@FlEx0Geek) Bug Bounty2019-10-292023-06-13
3856GraphQL introspection leads to sensitive data disclosure. Information disclosure NA Eshan Singh (@R0X4R) Bug Bounty2019-10-302023-06-13
3825Million Users PII Leak Data Leak Information disclosure Blind XSS NA Shivbihari Pandey (@ninja_pandit_) Bug Bounty2019-11-182023-06-13
3768Full Account Takeover (Android Application) Information disclosure Account takeover NA Vishal Bharad Bug Bounty2019-12-212023-06-13
3763GraphQL IDOR leads to information disclosure IDOR NA Eshan Singh (@R0X4R) Bug Bounty2019-12-242023-06-13
3749Facebook Bug bounty Story: $X000 for an Information Disclosure Bug Information disclosure Meta / Facebook Circle Ninja (@circleninja) Bug Bounty2019-12-292023-06-13
3746Bug Hunting Journey of 2019 XSS Privilege escalation Information disclosure Alibaba Yahoo! / Verizon Media Sudhanshu Rajbhar (@sudhanshur705) Bug Bounty2019-12-312023-06-13
3712Password Reset Token Leak Via Referrer Password reset Information disclosure NA Shrey Shah (@ShreySh43332033) Bug Bounty2020-01-222023-06-13
3710CORS Misconfiguration leading to Private Information Disclosure CORS misconfiguration NA Virus0X01 (@Virus0X01) Bug Bounty2020-01-232023-06-13
3700Tale of a Misconfiguration in Password Reset Password reset Information disclosure NA Naveenroy Bug Bounty2020-01-272023-06-13
3697How I get my first SWAG from SIDN (Sensitive Data Expose) Broken Access Control Information disclosure SIDN Mehedi Hasan Remon (@mehedi1194) Bug Bounty2020-01-292023-06-13
3685How, I dumped crypto data by chaining directory listing to open S3 Bucket AWS misconfiguration Directory listing Information disclosure NA Ddigvijay Bug Bounty2020-02-052023-06-13
3681How I Made $600 in Bug Bounty in 15 Minutes with Contrast CE – CVE- 2019-8442 Information disclosure Atlassian David Lindner (@golfhackerdave) Bug Bounty2020-02-052023-06-13
3672A step-by-step walk-through of an Invalid Endpoint Information disclosure NA Mohammed Israil (@mdisrail2468) Bug Bounty2020-02-092023-06-13