Write-ups

Check The Published Writeups

WDBTitleTagsProgramsAuthorsTypePublicationAdded
3497DOM XSS Walkthrough DOM XSS NA Youssef Lahouifi (@YLahouifi) Bug Bounty2020-05-062023-06-13
3496How we Hijacked 26+ Subdomains Subdomain takeover NA Aishwarya Kendle (@aish_kendle) Bug Bounty2020-05-072023-06-13
3495DOM-Based XSS at accounts.google.com by Google Voice Extension. DOM XSS Google missoum1307 (@missoum1307) Bug Bounty2020-05-072023-06-13
3494I Found XSS Security Flaws in Rails – Here%27s What Happened. XSS Ruby on Rails Jesse Campos Bug Bounty2020-05-072023-06-13
3493$20000 Facebook DOM XSS DOM XSS Meta / Facebook Vinoth Kumar (@vinodsparrow) Bug Bounty2020-05-072023-06-13
3492Pentesting Cisco SD-WAN Part 2: Breaking Routers OS command injection Security code review Cisco Julien Legras (@Julien_Legras) Bug Bounty2020-05-072023-06-13
3491Bypass XSS filter using HTML Escape XSS Google Syahri Ramadan (@adonkidz7) Bug Bounty2020-05-082023-06-13
3490How I made $10K in bug bounties from GitHub secret leaks Information disclosure NA Tillson Galloway (tillson_) Bug Bounty2020-05-102023-06-13
3489Another Zoho ManageEngine Story Authentication bypass Zoho Florian Hauser (@frycos) Bug Bounty2020-05-112023-06-13
3488Magic of the Back Slash Path traversal NA Anil Tom (mr_4nk) Bug Bounty2020-05-112023-06-13
3486Lucky Bug Which Let Me Change Name of Every Accounts at a Single Click SQL injection NA Merbin Russel (e_23_e) Bug Bounty2020-05-132023-06-13
3485$3000 Bug Bounty Award from Mozilla for a successful targeted Credential Hunt Information disclosure NA Johann Rehberger (wunderwuzzi23) Bug Bounty2020-05-132023-06-13
3484Bug Bounty — Advanced Manual Penetration Testing Leading to Price Manipulation Vulnerability Payment tampering NA Talatmehmood Bug Bounty2020-05-142023-06-13
3483Weak Cryptography in Password Reset to Full Account Takeover Account takeover Password reset Cryptographic issues NA Harsh Bothra (@harshbothra_) Bug Bounty2020-05-152023-06-13
3482How I got my first swag on Edmodo with a simple XSS. Stored XSS Edmodo Sanjay Verdu (@codersanjay) Bug Bounty2020-05-162023-06-13
3481Password Reset Poisoning leading to Account Takeover Password reset Account takeover NA Swapnil Maurya (@swapmaurya20) Bug Bounty2020-05-162023-06-13
3480Chained Bugs [ Account TakeOver ] IDOR XSS Account takeover NA Bilal Khan (@bilalmerokhel) Bug Bounty2020-05-162023-06-13
3479How I was able to make users loss of money on Google Pay Clickjacking Google santuySec (@santuySec) Bug Bounty2020-05-162023-06-13
3478Logical Bug which let me stop Users from Creating Ads at a Website Logic flaw DoS NA Merbin Russel (e_23_e) Bug Bounty2020-05-172023-06-13
3477One Param => $10k IDOR XSS Account takeover NA Bilal Khan (@bilalmerokhel) Bug Bounty2020-05-172023-06-13
3476Stored XSS Leads to Plaintext Password Disclosure Stored XSS Information disclosure Unrestricted file upload NA bad5ect0r (@bad5ect0r) Bug Bounty2020-05-172023-06-13
3475Tale of Account Takeovers (Part-2) Account takeover NA Vijaysimha Reddy Bathini (@fatratfatrat) Bug Bounty2020-05-172023-06-13
3474Cors Blimey: The power of chaining CORS CORS misconfiguration Stored XSS CSRF NA Hazana (@hazanasec) Bug Bounty2020-05-172023-06-13
3473How Netgear meshed(*) up WiFi for Business Weak crypto Authentication flaw Netgear Thorsten Schröder Bug Bounty2020-05-182023-06-13
3472My first 10k bdt bounty from an e-commerce site IDOR NA Md Saikat Bug Bounty2020-05-182023-06-13