3630 | SOP Bypass |
SOP bypass |
NA |
Kenan (@kenanistaken) |
Bug Bounty | 2020-03-03 | 2023-06-13 |
3629 | SSRF vulnerability in Uppy, Detected by Shieldfy |
SSRF |
Node.js third-party modules |
Eslam Salem (@net_code) |
Bug Bounty | 2020-03-03 | 2023-06-13 |
3628 | Abusing Slack for Offensive Operations |
Logic flaw |
Slack |
Cody Thomas (@its_a_feature_) |
Bug Bounty | 2020-03-04 | 2023-06-13 |
3627 | Got *Bounty* with Account takeover (ATO ) Unicode-Case Mapping Collision ! |
Account takeover |
NA |
Shaurya Sharma (@ShauryaSharma05) |
Bug Bounty | 2020-03-05 | 2023-06-13 |
3626 | Google Bug Bounty: Clickjacking on Google Payment (1337$) |
Clickjacking |
Google |
santuySec (@santuySec) |
Bug Bounty | 2020-03-06 | 2023-06-13 |
3625 | How I exploit the JSON CSRF with method override technique |
CSRF |
NA |
Simgamsetti Manikanta (@zaheckmania) |
Bug Bounty | 2020-03-07 | 2023-06-13 |
3624 | Google Ads Self-XSS & Html Injection $5000 |
Self-XSS
HTML injection |
Google |
Syahri Ramadan (@adonkidz7) |
Bug Bounty | 2020-03-07 | 2023-06-13 |
3623 | $5,005 worth vulnerability Duplicated, How I loose $5,005 in a day? Denial of Service - Billion LAUGH Attack (XXE) |
DoS
XXE |
NA |
Muhammad Asim Shahzad (@protector47) |
Bug Bounty | 2020-03-08 | 2023-06-13 |
3622 | Breaking the Competition (Bug Bounty Write-up) |
Race condition
DoS
Logic flaw
Session management issue |
NA |
George O (@georgeomnet) |
Bug Bounty | 2020-03-08 | 2023-06-13 |
3621 | The unexpected Google wide domain check bypass |
Logic flaw |
Google |
David Schütz (@xdavidhu) |
Bug Bounty | 2020-03-08 | 2023-06-13 |
3620 | Broke limited scope with a chain of bugs (tips for every rider CORS) |
CORS misconfiguration
RCE |
NA |
Valeriy Shevchenko (@Krevetk0Valeriy) |
Bug Bounty | 2020-03-09 | 2023-06-13 |
3619 | Vulnerable design leads to personal data leakage- yet another case of an inter-application vulnerability… |
Logic flaw |
NA |
Marcin Szydlowski (@SecurityKsl) |
Bug Bounty | 2020-03-09 | 2023-06-13 |
3618 | Got Easiest Bounty with HTML injection via email confirmation! |
HTML injection |
NA |
Shaurya Sharma (@ShauryaSharma05) |
Bug Bounty | 2020-03-11 | 2023-06-13 |
3617 | Finding a P1 in one minute with Shodan.io (RCE) |
RCE |
NA |
sw33tLie (@sw33tLie) |
Bug Bounty | 2020-03-11 | 2023-06-13 |
3616 | OTP Bypass - Developer’s Check |
OTP bypass |
NA |
Shrey Shah (@ShreySh43332033) |
Bug Bounty | 2020-03-11 | 2023-06-13 |
3615 | How I was able to bypass the current password? |
Account takeover
CSRF |
NA |
Ninad Mathpati (@ninad_mathpati) |
Bug Bounty | 2020-03-11 | 2023-06-13 |
3612 | How I Reported a DoS Vulnerability to AWS |
DoS |
AWS |
Amey Anekar (@ameyanekar) |
Bug Bounty | 2020-03-11 | 2023-06-13 |
3611 | [Bug Bounty] Email Content Injection |
Email content injection |
NA |
Navneet (@na5n33t) |
Bug Bounty | 2020-03-12 | 2023-06-13 |
3610 | How I got access to critical data of a Company in no time ? |
Information disclosure
Lack of rate limiting
Bruteforce |
NA |
Kaustubh Kale |
Bug Bounty | 2020-03-12 | 2023-06-13 |
3608 | API secret key Leakage leads to disclosure of Employee’s Information |
Information disclosure |
NA |
Ace Candelario (@phspades) |
Bug Bounty | 2020-03-13 | 2023-06-13 |
3607 | User%27s email disclosure via invalid password reset link [$250] |
Password reset
Information disclosure |
NA |
Myo Min Thu (@myominthu1337) |
Bug Bounty | 2020-03-13 | 2023-06-13 |
3606 | What is your GCP infra worth?...about ~$700 [Bugbounty] |
Information disclosure |
Tokopedia |
Chris Gates (@carnal0wnage) |
Bug Bounty | 2020-03-13 | 2023-06-13 |
3605 | Blocked User Can Send Notification Due to Logical Bug in Instagram | First Instagram Bug |
Logic flaw |
Meta / Facebook |
Divyanshu Shukla (@justm0rph3u5) |
Bug Bounty | 2020-03-14 | 2023-06-13 |
3604 | My Weirdest Bug Bounty — Getting PII from O365. |
Subdomain takeover |
Microsoft |
Omaid Faizyar (@rulesofthetrade) |
Bug Bounty | 2020-03-14 | 2023-06-13 |
3603 | How I earned $800 for Host Header Injection Vulnerability |
Host header injection
Password reset |
NA |
Pethuraj (@Pethuraj) |
Bug Bounty | 2020-03-15 | 2023-06-13 |