Write-ups

Check The Published Writeups

WDBTitleTagsProgramsAuthorsTypePublicationAdded
3741Bypass 2FA in a website MFA bypass NA Sourav Sahana (@kernel_rider) Bug Bounty2020-01-012023-06-13
3740Admin capabilities around your ears Local Privilege Escalation Poly (Plantronics) Markus Krell (@MarkusKrell) Bug Bounty2020-01-022023-06-13
3739Exploiting Wi-Fi Stack on Tesla Model S Wifi hacking Driver hacking RCE Memory corruption Tesla Tencent Keen Security Lab Bug Bounty2020-01-022023-06-13
3738Account takeover via HTTP Request Smuggling HTTP request smuggling Account takeover Open redirect Internal header disclosure NA hipotermia (@_hipotermia_) Bug Bounty2020-01-032023-06-13
3737From . in regex to SSRF — part 1 SSRF NA Niemiec Marcin (@xvnpw) Bug Bounty2020-01-052023-06-13
3736XSS on Sony subdomain Reflected XSS Sony Gökhan Güzelkokar (@gkhck_) Bug Bounty2020-01-062023-06-13
3735How I found a Privilege Escalation Bug in a private Ecommerce? Privilege escalation NA Baibhav Anand (@SpongeBhav) Bug Bounty2020-01-062023-06-13
3733HTML Injection(Unique Exploitation) HTML injection NA Pratik Yadav (@PratikY9967) Bug Bounty2020-01-072023-06-13
3732Update: Want to take over the Java ecosystem? All you need is a MITM! MiTM Insecure communications Github Jonathan Leitschuh (@jlleitschuh) Bug Bounty2020-01-082023-06-13
3731The Bug That Exposed Your PayPal Password XSSI Paypal Alex Birsan (@alxbrsn) Bug Bounty2020-01-082023-06-13
3730Google Chrome display locking fuzzing Use-After-Free Memory corruption Google Pawel Wylecial (@h0wlu) Bug Bounty2020-01-082023-06-13
3729Hunting Good Bugs with only <HTML> Open redirect HTML injection SSRF NA Ak1T4 (@akita_zen) Bug Bounty2020-01-102023-06-13
3728My First RCE (Stressed Employee gets me 2x bounty) Unrestricted file upload RCE NA Abhishek Yadav (@abhishake100) Bug Bounty2020-01-102023-06-13
3727How I earn $500 from Razer open S3 bucket AWS misconfiguration Razer Sourav Sahana (@kernel_rider) Bug Bounty2020-01-122023-06-13
3726No Rate Limit - 2K Bounty Lack of rate limiting Yahoo! / Verizon Media Shrey Shah (@ShreySh43332033) Bug Bounty2020-01-122023-06-13
3725In Cloud we “Trust”: Wrong Kubernetes implementation by Google Cloud Platform & Microsoft Azure affecting customers Old components with known vulnerabilities Microsoft Google Chen Cohen (@chencococococo) Bug Bounty2020-01-122023-06-13
3724Pwning Avast Secure Browser for fun and profit RCE Command injection Avast Wladimir Palant (@WPalant) Bug Bounty2020-01-132023-06-13
3723How I discovered an interesting account takeover flaw? Account takeover Password reset Lack of rate limiting NA Akash Methani (@0xAkash) Bug Bounty2020-01-142023-06-13
3722From . in regex to SSRF — part 2 SSRF NA Niemiec Marcin (@xvnpw) Bug Bounty2020-01-142023-06-13
3721The trouble with Microsoft’s Troubleshooters RCE MiTM Microsoft Imre Rad (@ImreRad) Bug Bounty2020-01-152023-06-13
3720Adding a malicious notebook to be treated like a trusted notebook in Google Colab — 1337$ Authorization flaw Logic flaw Google Raushan Raj (@raushan_rajj) Bug Bounty2020-01-172023-06-13
3719How I accidentally found Bug in Google Search Console Logic flaw Authorization flaw Google Tomi (@noobe_io) Bug Bounty2020-01-182023-06-13
3718GGvulnz — How I hacked hundreds of companies through Google Groups Logic flaw Google Milan Magyar Bug Bounty2020-01-202023-06-13
3717How i bought my way to subdomain takeover on Tokopedia Subdomain takeover Tokopedia wis4nggeni Bug Bounty2020-01-202023-06-13
3716Cross Site Request Forgery vulnerability Leads to User Profile Change in Microsoft Express Logic CSRF Microsoft Adesh Nandkishor kolte (@AdeshKolte) Bug Bounty2020-01-212023-06-13