Write-ups

Check The Published Writeups

WDBTitleTagsProgramsAuthorsTypePublicationAdded
3670Weird Vulnerabilities Happening on Load Balancers, Shallow Copies and Caches Information disclosure NA Ozgur Alp (@ozgur_bbh) Bug Bounty2020-02-112023-06-13
3658From Recon to Optimizing RCE Results – Simple Story with One of the Biggest ICT Company in the World Information disclosure RCE NA YoKo Kho (@YokoAcc) Bug Bounty2020-02-182023-06-13
3656Hacking SMS API Service Provider of a Company |Android App Static Security Analysis | Bug Bounty POC Information disclosure Hardcoded credentials NA Muhammad Khizer Javed (@khizer_javed47) Bug Bounty2020-02-192023-06-13
3646How I Get my first P1 (Sensitive Information Disclosure) using WPScan Information disclosure NA Harrmahar (@harrmahar) Bug Bounty2020-02-262023-06-13
3640Page Admin Disclosure via an Upgraded Page Post Authorization flaw Information disclosure Meta / Facebook Dan Fabro (@0x61_) Bug Bounty2020-02-282023-06-13
3610How I got access to critical data of a Company in no time ? Information disclosure Lack of rate limiting Bruteforce NA Kaustubh Kale Bug Bounty2020-03-122023-06-13
3608API secret key Leakage leads to disclosure of Employee’s Information Information disclosure NA Ace Candelario (@phspades) Bug Bounty2020-03-132023-06-13
3607User%27s email disclosure via invalid password reset link [$250] Password reset Information disclosure NA Myo Min Thu (@myominthu1337) Bug Bounty2020-03-132023-06-13
3606What is your GCP infra worth?...about ~$700 [Bugbounty] Information disclosure Tokopedia Chris Gates (@carnal0wnage) Bug Bounty2020-03-132023-06-13
3581Exploiting magic links, critical bugs are one line away Information disclosure Missing authentication Razer 0xSha (@0xsha) Bug Bounty2020-03-272023-06-13
3567Account Take Over without user Interaction Password reset Information disclosure Account takeover NA Ravilla Bharath Bug Bounty2020-04-022023-06-13
3560Page Admin Disclosure: Facebook Bug Bounty 2020 Information disclosure Logic flaw Meta / Facebook Saugat Pokharel (@saugatpk5) Bug Bounty2020-04-042023-06-13
3557$3K Bounty For Elastic-Search Takeover Elasticsearch Takeover Information disclosure NA Ashish Kunwar (@D0rkerDevil) Bug Bounty2020-04-062023-06-13
3519Recon to Sensitive Information Disclosure in Minutes Information disclosure Outdated component with a known vulnerability NA Harsh Bothra (@harshbothra_) Bug Bounty2020-04-282023-06-13
3499A tale of verbose error message and a JWT token Information disclosure Authorization flaw NA Marek Geleta (@marek_geleta) Bug Bounty2020-05-052023-06-13
3490How I made $10K in bug bounties from GitHub secret leaks Information disclosure NA Tillson Galloway (tillson_) Bug Bounty2020-05-102023-06-13
3485$3000 Bug Bounty Award from Mozilla for a successful targeted Credential Hunt Information disclosure NA Johann Rehberger (wunderwuzzi23) Bug Bounty2020-05-132023-06-13
3476Stored XSS Leads to Plaintext Password Disclosure Stored XSS Information disclosure Unrestricted file upload NA bad5ect0r (@bad5ect0r) Bug Bounty2020-05-172023-06-13
3467How I got 200$ in 5 minutes – Sensitive data leak Information disclosure NA Sanjay Verdu (@codersanjay) Bug Bounty2020-05-192023-06-13
3461Parsing the DOM elements of Other pages via XSS: A Bug Bounty Story XSS Information disclosure NA Mandeep Jadon (@1337tr0lls) Bug Bounty2020-05-222023-06-13
3459How Source code reading helped me find an IDOR IDOR Information disclosure NA Sanjay Verdu (@codersanjay) Bug Bounty2020-05-222023-06-13
3448How I was able to see Private Video Uploader Via Facebook Rights Manager.[Responsible Disclosure] Information disclosure Meta / Facebook Kishore TK (@kishoretk_off) Bug Bounty2020-05-282023-06-13
3445Exploring macOS Calendar Alerts: Part 1 – Attempting to execute code Information disclosure Apple Andy Grant Bug Bounty2020-05-282023-06-13
3437The story of My First $xxx Bug Bounty From Facebook Logic flaw Information disclosure Meta / Facebook Sudip Shah Bug Bounty2020-05-312023-06-13
3435Hunting on ASPX Application For P1%27s [Unauthenticated SOAP,RCE, Info Disclosure] RCE Information disclosure IDOR NA ElMahdi Mrhassel (@ElMrhassel) Bug Bounty2020-05-312023-06-13