Write-ups

Check The Published Writeups

WDBTitleTagsProgramsAuthorsTypePublicationAdded
2594How I was able to Retrieve your Personal Documents using the Wayback Machine! Privacy issue Information disclosure NA Savir Suda (@savxiety) Bug Bounty2021-04-302023-06-13
2560Counter-Strike Global Offsets: reliable remote code execution RCE Valve brymko (@brymko) Bug Bounty2021-05-132023-06-13
2503How I was able to see likes and dislikes count even though is hidden by victim | YouTube #3 Broken Access Control Google R ando (@Rando02355205) Bug Bounty2021-06-042023-06-13
2494How i was able to bypass parental pin of showmax Authorization flaw Showmax abdulsec (@moodiAbdoul) Bug Bounty2021-06-092023-06-13
2488How I was able to bypass the admin panel without the credentials. Information disclosure NA Pratikkhalane (@KhalanePratik) Bug Bounty2021-06-122023-06-13
2478This is how I was able to see Private, Archived Posts/Stories of users on Instagram without following them IDOR GraphQL NA Mayur Fartade (@mayurfartade) Bug Bounty2021-06-152023-06-13
2477How We Are Able To Hack Any Company By Sending Message – $20,000 Bounty [CVE-2021–34506] Universal XSS Microsoft Shivam Kumar Singh (@MrRajputHacker) Bug Bounty2021-06-152023-06-13
2468How We Are Able To Hack Any Company By Sending Message - $20,000 Bounty [CVE-2021–34506] Universal XSS Microsoft Vansh Devgan (@Th3Pr0xyB0y) Bug Bounty2021-06-182023-06-13
2456How i was able to get Appreciation from the organization of a website just by changing a sign..!!! Information disclosure Source code disclosure NA Fardeen Ahmed (@fardeenahmed411) Bug Bounty2021-06-232023-06-13
2448Gaining access to protected components Vulnerable Android content provider Android NA DavMehtab Zafar (@0xmzfr) Bug Bounty2021-06-252023-06-13
2438How I was able to Takeover Accounts on Foxit.com Password reset Account takeover NA Jefferson Gonzales (@gonzxph) Bug Bounty2021-06-292023-06-13
2423Account Takeovers — Believe the Unbelievable Account takeover Session management issue Weak credentials Components with known vulnerabilities Password reset NA Nikhil (niks) (@niksthehacker) Bug Bounty2021-07-092023-06-13
2409Stored XSS in Google Doubleclick Studio [Google Research Grant] Stored XSS Google Jasminder Pal Singh (@Singh_Jasminder) Bug Bounty2021-07-142023-06-13
2407How i was able to bypass Cloudflare for XSS! XSS NA hosein vita (@HoseinVita) Bug Bounty2021-07-162023-06-13
2397How I was able Find mass leaked AWS s3 bucket from js File AWS misconfiguration NA Santosh Kumar Sha (@killmongar1996) Bug Bounty2021-07-202023-06-13
2360The journey from Google Honorable Mention to Hall of Fame. Referer leakage Information disclosure Password reset Google Akash basnet (@noneofyou007) Bug Bounty2021-08-012023-06-13
2354~/BugBounty/IDOR/”How I was able to exfiltrate any user’s credit coupons” IDOR NA Jai Sharma (@ja1sharma) Bug Bounty2021-08-022023-06-13
2328How we was able to takeover whole organization via Privilege Escalation Privilege escalation Authorization flaw NA Yasser Mohammed (@boomneroli) Bug Bounty2021-08-132023-06-13
2318Two weeks of securing Samsung devices: Part 2 Arbitrary file write Arbitrary file read Vulnerable Android content provider Android Samsung Oversecured (@OversecuredInc) Bug Bounty2021-08-162023-06-13
2308How I was able to get 1000$ bounty from a ds-store file? Information disclosure Debugging enabled NA Khaled Mohamed (@0xElkomy) Bug Bounty2021-08-212023-06-13
2301How i was able to steal private files of any user on Larksuite IDOR NA Imran Nissar (@Imrannissar3) Bug Bounty2021-08-242023-06-13
2296Vulnerability in Bumble dating app reveals any user%27s exact location Information disclosure Logic flaw Bumble Robert Heaton (@RobJHeaton) Bug Bounty2021-08-252023-06-13
2290Oauth client secret leak and possible IDOR leading to PII Disclosure IDOR OAuth Information disclosure NA Monke (@pmofcats) Bug Bounty2021-08-262023-06-13
2233How I Was Able to delete any facebook story where am I mentioned or tagged Logic flaw Meta / Facebook Sank Dahal (@sank68034756) Bug Bounty2021-09-102023-06-13
2218How I was able to find 100+ XSS in United nations Bug Bounty Program XSS United Nations mrpentestguy (@MR_iambatman) Bug Bounty2021-09-162023-06-13