⤷ Title: Who Am I?- CyberTalents Walkthrough
════════════════════════
𐀪 Author: Bridget
════════════════════════
ⴵ Time: Fri, 04 Jul 2025 20:45:27 GMT
════════════════════════
⌗ Tags: #writeup #cyber_talents #cookies #broken_authentication #cybersecurity
════════════════════════
𐀪 Author: Bridget
════════════════════════
ⴵ Time: Fri, 04 Jul 2025 20:45:27 GMT
════════════════════════
⌗ Tags: #writeup #cyber_talents #cookies #broken_authentication #cybersecurity
Medium
Who Am I?- CyberTalents Walkthrough
Writeup of the ‘Who Am I?’ CyberTalents challenge using manual cookie tampering and Burp Suite to demonstrate broken access control
⤷ Title: API2:2023 Broken Authentication
════════════════════════
𐀪 Author: Tunahan Balcı
════════════════════════
ⴵ Time: Tue, 08 Jul 2025 13:48:05 GMT
════════════════════════
⌗ Tags: #api_security #broken_authentication #owasp_api_security_top_10 #api_development #api
════════════════════════
𐀪 Author: Tunahan Balcı
════════════════════════
ⴵ Time: Tue, 08 Jul 2025 13:48:05 GMT
════════════════════════
⌗ Tags: #api_security #broken_authentication #owasp_api_security_top_10 #api_development #api
Medium
API2:2023 Broken Authentication
Modern uygulamalarımızın kalbi API, ya bu kalp açık veriyorsa? 🧠🔐
⤷ Title: API2:2023 Broken Authentication
════════════════════════
𐀪 Author: Apifort
════════════════════════
ⴵ Time: Wed, 09 Jul 2025 07:09:24 GMT
════════════════════════
⌗ Tags: #cybersecurity #api #api_security #broken_authentication #owasp_api_security_top_10
════════════════════════
𐀪 Author: Apifort
════════════════════════
ⴵ Time: Wed, 09 Jul 2025 07:09:24 GMT
════════════════════════
⌗ Tags: #cybersecurity #api #api_security #broken_authentication #owasp_api_security_top_10
Medium
API2:2023 Broken Authentication
Modern uygulamalarımızın kalbi API, ya bu kalp açık veriyorsa? 🧠🔐
⤷ Title: alg: none JWT Zafiyeti – Sessiz Tehlike
════════════════════════
𐀪 Author: Tunahan Balcı
════════════════════════
ⴵ Time: Thu, 10 Jul 2025 07:16:23 GMT
════════════════════════
⌗ Tags: #cybersecurity #jwt_token #broken_authentication #owasp_api_security_top_10 #api_security
════════════════════════
𐀪 Author: Tunahan Balcı
════════════════════════
ⴵ Time: Thu, 10 Jul 2025 07:16:23 GMT
════════════════════════
⌗ Tags: #cybersecurity #jwt_token #broken_authentication #owasp_api_security_top_10 #api_security
Medium
🔓 alg: none JWT Zafiyeti – Sessiz Tehlike
JWT (JSON Web Token), günümüz modern uygulamalarında kimlik doğrulama ve yetkilendirme süreçlerinin temel yapı taşlarından biri. Ancak bu…
⤷ Title: The Auth Apocalypse: Broken Authentication & Session Management Explored.
════════════════════════
𐀪 Author: Yamini Yadav
════════════════════════
ⴵ Time: Mon, 28 Jul 2025 06:03:25 GMT
════════════════════════
⌗ Tags: #penetration_testing #bug_bounty_writeup #ethical_hacking #broken_authentication #cybersecurity
════════════════════════
𐀪 Author: Yamini Yadav
════════════════════════
ⴵ Time: Mon, 28 Jul 2025 06:03:25 GMT
════════════════════════
⌗ Tags: #penetration_testing #bug_bounty_writeup #ethical_hacking #broken_authentication #cybersecurity
Medium
The Auth Apocalypse: Broken Authentication & Session Management Explored.
Episode 1: How One Cookie Can Compromise Everything — The Dangers of Session Fixation
⤷ Title: How I Was Able to Take Over Accounts Without Email or Password
════════════════════════
𐀪 Author: Zyad Ibrahim
════════════════════════
ⴵ Time: Sun, 24 Aug 2025 22:36:27 GMT
════════════════════════
⌗ Tags: #cybersecurity #account_takeover #broken_authentication #idor #bug_bounty
════════════════════════
𐀪 Author: Zyad Ibrahim
════════════════════════
ⴵ Time: Sun, 24 Aug 2025 22:36:27 GMT
════════════════════════
⌗ Tags: #cybersecurity #account_takeover #broken_authentication #idor #bug_bounty
Medium
How I Was Able to Take Over Accounts Without Email or Password
Today, I want to share a story about how I discovered a session management flaw in a well-known global platform that helps users build…
⤷ Title: I Cracked a JWT Secret and Became Admin
════════════════════════
𐀪 Author: Humairah Adamu Sidi
════════════════════════
ⴵ Time: Mon, 15 Sep 2025 17:00:48 GMT
════════════════════════
⌗ Tags: #penetration_testing #application_security #broken_authentication #encryption #cybersecurity
════════════════════════
𐀪 Author: Humairah Adamu Sidi
════════════════════════
ⴵ Time: Mon, 15 Sep 2025 17:00:48 GMT
════════════════════════
⌗ Tags: #penetration_testing #application_security #broken_authentication #encryption #cybersecurity
Medium
I Cracked a JWT Secret and Became Admin
How a weak HS256 secret allowed me to forge an admin token — demo, commands, screenshots, and how to fix it.
⤷ Title: Cracking the Login (HTB): Hands-on Broken Authentication Techniques Part 1
════════════════════════
𐀪 Author: Isv0x1
════════════════════════
ⴵ Time: Wed, 22 Oct 2025 19:51:08 GMT
════════════════════════
⌗ Tags: #bug_bounty #hackthebox #broken_authentication #info_sec_writeups #hacking
════════════════════════
𐀪 Author: Isv0x1
════════════════════════
ⴵ Time: Wed, 22 Oct 2025 19:51:08 GMT
════════════════════════
⌗ Tags: #bug_bounty #hackthebox #broken_authentication #info_sec_writeups #hacking
Medium
Cracking the Login (HTB): Hands-on Broken Authentication Techniques Part 1
What Is Authentication?
⤷ Title: HTB API Attacks Module: Broken Authentication Section Exercise
════════════════════════
𐀪 Author: gabrielschwartz
════════════════════════
ⴵ Time: Wed, 29 Oct 2025 19:18:12 GMT
════════════════════════
⌗ Tags: #hackthebox #hacking #owasp_api_security_top_10 #broken_authentication
════════════════════════
𐀪 Author: gabrielschwartz
════════════════════════
ⴵ Time: Wed, 29 Oct 2025 19:18:12 GMT
════════════════════════
⌗ Tags: #hackthebox #hacking #owasp_api_security_top_10 #broken_authentication
Medium
HTB API Attacks Module: Broken Authentication Section Exercise
My Journey to the API Attacks Module
⤷ Title: How I Found Broken Authentication and Authorization on a Website
════════════════════════
𐀪 Author: Shir0E
════════════════════════
ⴵ Time: Wed, 07 Jan 2026 16:35:01 GMT
════════════════════════
⌗ Tags: #bug_bounty_writeup #cybersecurity #broken_authentication #broken_access_control #bug_bounty
════════════════════════
𐀪 Author: Shir0E
════════════════════════
ⴵ Time: Wed, 07 Jan 2026 16:35:01 GMT
════════════════════════
⌗ Tags: #bug_bounty_writeup #cybersecurity #broken_authentication #broken_access_control #bug_bounty
Medium
How I Found Broken Authentication and Authorization on a Website
Hello everyone, long time no see! I was inactive for quite a while (mostly due to laziness 😄), but today I want to share a real-world…
⤷ Title: CyberHeroes THM Writeup
════════════════════════
𐀪 Author: Death Esther
════════════════════════
ⴵ Time: Thu, 08 Jan 2026 14:31:28 GMT
════════════════════════
⌗ Tags: #tryhackme_walkthrough #cyberheros_thm #exposed_javascript #broken_authentication #tryhackme
════════════════════════
𐀪 Author: Death Esther
════════════════════════
ⴵ Time: Thu, 08 Jan 2026 14:31:28 GMT
════════════════════════
⌗ Tags: #tryhackme_walkthrough #cyberheros_thm #exposed_javascript #broken_authentication #tryhackme
Medium
CyberHeroes THM Writeup
Understanding Broken Authentication Through Exposed JavaScript Logic
⤷ Title: HTB Academy -API Attacks (Broken Authentication) Exercise Walkthrough
════════════════════════
𐀪 Author: Farouq Hassan
════════════════════════
ⴵ Time: Mon, 16 Mar 2026 12:50:54 GMT
════════════════════════
⌗ Tags: #hackthebox #penetration_testing #owasp_api_security_top_10 #broken_authentication #api_security
════════════════════════
𐀪 Author: Farouq Hassan
════════════════════════
ⴵ Time: Mon, 16 Mar 2026 12:50:54 GMT
════════════════════════
⌗ Tags: #hackthebox #penetration_testing #owasp_api_security_top_10 #broken_authentication #api_security
Medium
HTB Academy -API Attacks (Broken Authentication) Exercise Walkthrough
Exploiting OTP Brute Forcing in Password Reset APIs
⤷ Title: Breaking Email Trust: How I Bypassed Email Verification in a Real-World Application.
════════════════════════
𐀪 Author: kjulius
════════════════════════
ⴵ Time: Tue, 21 Apr 2026 05:54:27 GMT
════════════════════════
⌗ Tags: #bug_bounty_writeup #authentication_bypass #broken_authentication
════════════════════════
𐀪 Author: kjulius
════════════════════════
ⴵ Time: Tue, 21 Apr 2026 05:54:27 GMT
════════════════════════
⌗ Tags: #bug_bounty_writeup #authentication_bypass #broken_authentication
Medium
🔓 Breaking Email Trust: How I Bypassed Email Verification in a Real-World Application.
Introduction
⤷ Title: Juice Shop Write-up: Two Factor Authentication Challenge
════════════════════════
𐀪 Author: ~ Jeff ~
════════════════════════
ⴵ Time: Wed, 22 Apr 2026 13:07:21 GMT
════════════════════════
⌗ Tags: #web_penetration_testing #totp #owasp_juice_shop #broken_authentication #sql_injection
════════════════════════
𐀪 Author: ~ Jeff ~
════════════════════════
ⴵ Time: Wed, 22 Apr 2026 13:07:21 GMT
════════════════════════
⌗ Tags: #web_penetration_testing #totp #owasp_juice_shop #broken_authentication #sql_injection
Medium
Juice Shop Write-up: Two Factor Authentication Challenge
The goal of this challenge is to bypass the 2FA mechanism by retrieving a user’s TOTP secret from the database and using it to generate…
⤷ Title: Overpass | TryHackMe
════════════════════════
𐀪 Author: Gerald
════════════════════════
ⴵ Time: Wed, 13 May 2026 09:35:18 GMT
════════════════════════
⌗ Tags: #broken_authentication #infosec #tryhackme #ctf #cybersecurity
════════════════════════
𐀪 Author: Gerald
════════════════════════
ⴵ Time: Wed, 13 May 2026 09:35:18 GMT
════════════════════════
⌗ Tags: #broken_authentication #infosec #tryhackme #ctf #cybersecurity
Medium
Overpass | TryHackMe
In this walkthrough, I demonstrate how I obtained ownership of Overpass on TryHackMe.
⤷ Title: Broken Authentication: How Attackers Gain Unauthorized Access to Your Application.
════════════════════════
𐀪 Author: Sana Jalil
════════════════════════
ⴵ Time: Sat, 16 May 2026 16:54:23 GMT
════════════════════════
⌗ Tags: #owasp_top_10 #api_penetration_testing #broken_authentication #owasp_api_security_top_10 #bug_bounty
════════════════════════
𐀪 Author: Sana Jalil
════════════════════════
ⴵ Time: Sat, 16 May 2026 16:54:23 GMT
════════════════════════
⌗ Tags: #owasp_top_10 #api_penetration_testing #broken_authentication #owasp_api_security_top_10 #bug_bounty
Medium
Broken Authentication: How Attackers Gain Unauthorized Access to Your Application.
Introduction: Why Broken Authentication Still Wins