New Writeup❗️
Date: Tue, 25 Aug 2020 08:33:19 GMT
Title: How i found 3 SSRF in one day on different bug bounty targets.
Link: https://medium.com/p/62e91b4268f8
Date: Tue, 25 Aug 2020 08:33:19 GMT
Title: How i found 3 SSRF in one day on different bug bounty targets.
Link: https://medium.com/p/62e91b4268f8
Medium
How i found 3 SSRF in one day on different bug bounty targets
This blog is about how i approach a bug bounty target, and how i got 3 SSRF in 5–6 hours after choosing a target. I hope you will enjoy…
New Writeup❗️
Date: Fri, 14 Sep 2018 14:28:36 GMT
Title: Hacking your own antivirus for fun and profit (Safe browsing gone wrong)
Link: https://medium.com/p/365db9d1d3f7
Date: Fri, 14 Sep 2018 14:28:36 GMT
Title: Hacking your own antivirus for fun and profit (Safe browsing gone wrong)
Link: https://medium.com/p/365db9d1d3f7
Medium
Hacking your own antivirus for fun and profit (Safe browsing gone wrong)
Bullguard has a safe browsing feature to prevent their users from entering websites that contain malware, phishing or other malicious…
New Writeup❗️
Date: Tue, 01 Jan 2019 12:24:58 GMT
Title: A Curious Case From Little To Complete Email Verification Bypass
Link: https://medium.com/p/2c7570040e7e
Date: Tue, 01 Jan 2019 12:24:58 GMT
Title: A Curious Case From Little To Complete Email Verification Bypass
Link: https://medium.com/p/2c7570040e7e
Medium
A Curious Case From Little To Complete Email Verification Bypass
Implementing a secure email verification mechanism is easy to mess up. A slight mistake in validation can lead to minor issues or…
New Writeup❗️
Date: Fri, 12 Jun 2020 19:49:27 GMT
Title: DoS and BugBounties :A series of DoS attacks on HackerOne
Link: https://medium.com/p/9c8316e192c9
Date: Fri, 12 Jun 2020 19:49:27 GMT
Title: DoS and BugBounties :A series of DoS attacks on HackerOne
Link: https://medium.com/p/9c8316e192c9
Medium
DoS and BugBounties :A series of DoS attacks on HackerOne
Greetings, this is my first writeup and I will discuss a very common vulnerability that is so underrated everybody seems to ignore it…
New Writeup❗️
Date: Sun, 19 Feb 2023 07:37:56 GMT
Title: NFS: The Deep Dive into Vulnerability Assessment and Exploitation Techniques
Link: https://medium.com/p/41f19a380217
Date: Sun, 19 Feb 2023 07:37:56 GMT
Title: NFS: The Deep Dive into Vulnerability Assessment and Exploitation Techniques
Link: https://medium.com/p/41f19a380217
Medium
NFS: The Deep Dive into Vulnerability Assessment and Exploitation Techniques
Introduction:
New Writeup❗️
Date: Sun, 22 Jan 2023 13:24:36 GMT
Title: Chasing the Hackers: A Network Forensics Investigation
Link: https://medium.com/p/f0bee9bc34
Date: Sun, 22 Jan 2023 13:24:36 GMT
Title: Chasing the Hackers: A Network Forensics Investigation
Link: https://medium.com/p/f0bee9bc34
Medium
Chasing the Hackers: A Network Forensics Investigation
In this blog, I will be diving deep into the Chase challenge, a network forensic challenge where we uncover the hackers’ trail and gain…
New Writeup❗️
Date: Wed, 18 Jan 2023 19:00:19 GMT
Title: How I identified and reported vulnerabilities in Oracle and the rewards of responsible…
Link: https://medium.com/p/43ee5fea457f
Date: Wed, 18 Jan 2023 19:00:19 GMT
Title: How I identified and reported vulnerabilities in Oracle and the rewards of responsible…
Link: https://medium.com/p/43ee5fea457f
Medium
How I identified and reported vulnerabilities in Oracle and the rewards of responsible disclosure:From Backup Leak to Hall of Fame
Hello folks I hope you are doing well. I’m a Parag Bagul security Researcher and bug bounty hunter.
New Writeup❗️
Date: Sun, 15 Jan 2023 05:27:50 GMT
Title: Penetration Testing XML-RPC: Uncovering the Weaknesses
Link: https://medium.com/p/cda2acd14629
Date: Sun, 15 Jan 2023 05:27:50 GMT
Title: Penetration Testing XML-RPC: Uncovering the Weaknesses
Link: https://medium.com/p/cda2acd14629
Medium
Penetration Testing XML-RPC: Uncovering the Weaknesses
An Introduction to XML-RPC: Understanding the Basics of Remote Procedure Call
New Writeup❗️
Date: Wed, 11 Jan 2023 09:41:21 GMT
Title: Preventing Cross-Site Scripting (XSS) Attacks with the HTML Special Characters Function in PHP
Link: https://medium.com/p/1b9db17bcdb4
Date: Wed, 11 Jan 2023 09:41:21 GMT
Title: Preventing Cross-Site Scripting (XSS) Attacks with the HTML Special Characters Function in PHP
Link: https://medium.com/p/1b9db17bcdb4
Medium
Preventing Cross-Site Scripting (XSS) Attacks with the HTML Special Characters Function in PHP
Introduction:
New Writeup❗️
Date: Sun, 18 Sep 2022 14:17:06 GMT
Title: SSRF ATTACK LEADING TO AWS METADATA
Link: https://medium.com/p/e95155fa6c6f
Date: Sun, 18 Sep 2022 14:17:06 GMT
Title: SSRF ATTACK LEADING TO AWS METADATA
Link: https://medium.com/p/e95155fa6c6f
Medium
SSRF ATTACK LEADING TO AWS METADATA
Hello folks,
New Writeup❗️
Date: Sat, 10 Sep 2022 16:57:34 GMT
Title: How I was able to Bypass Philips Authentication
Link: https://medium.com/p/c3bd3e1df9ff
Date: Sat, 10 Sep 2022 16:57:34 GMT
Title: How I was able to Bypass Philips Authentication
Link: https://medium.com/p/c3bd3e1df9ff
Medium
How I was able to Bypass Philips Authentication
Hello folks I hope you are doing well. I’m a Parag Bagul security Researcher and bug bounty hunter.
New Writeup❗️
Date: Wed, 07 Sep 2022 11:54:06 GMT
Title: How I found Moodle Cross site scripting
Link: https://medium.com/p/459a1c9ad4d5
Date: Wed, 07 Sep 2022 11:54:06 GMT
Title: How I found Moodle Cross site scripting
Link: https://medium.com/p/459a1c9ad4d5
Medium
How I found Moodle Cross site scripting
Hello folks I hope you are doing well. I’m a Parag Bagul security Researcher and bug bounty hunter
New Writeup❗️
Date: Tue, 24 Dec 2019 18:25:16 GMT
Title: GraphQL IDOR leads to information disclosure
Link: https://medium.com/p/175eb560170d
Date: Tue, 24 Dec 2019 18:25:16 GMT
Title: GraphQL IDOR leads to information disclosure
Link: https://medium.com/p/175eb560170d
Medium
GraphQL IDOR leads to information disclosure
Hello World!, I’m Eshan Singh aka R0X4R. I’m here to share my recent findings on GraphQL IDOR (Insecure Direct Object Reference), which…
New Writeup❗️
Date: Wed, 30 Oct 2019 14:50:36 GMT
Title: GraphQL introspection leads to sensitive data disclosure.
Link: https://medium.com/p/714f1d9d9d4a
Date: Wed, 30 Oct 2019 14:50:36 GMT
Title: GraphQL introspection leads to sensitive data disclosure.
Link: https://medium.com/p/714f1d9d9d4a
Medium
GraphQL introspection leads to sensitive data disclosure.
GraphQL is a query language for APIs and a runtime for fulfilling those queries with your existing data. GraphQL provides a complete…
New Writeup❗️
Date: Tue, 03 Mar 2020 12:42:06 GMT
Title: SQL Injection Via Stopping the redirection to a login page
Link: https://medium.com/p/52b0792d5592
Date: Tue, 03 Mar 2020 12:42:06 GMT
Title: SQL Injection Via Stopping the redirection to a login page
Link: https://medium.com/p/52b0792d5592
Medium
SQL Injection Via Stopping redirection to a login page
Hi everyone,
🗿1
New Writeup❗️
Date: Tue, 12 Apr 2022 21:32:13 GMT
Title: Bypass Apple Corp SSO on Apple Admin Panel
Link: https://medium.com/p/dbfb72c7e634
Date: Tue, 12 Apr 2022 21:32:13 GMT
Title: Bypass Apple Corp SSO on Apple Admin Panel
Link: https://medium.com/p/dbfb72c7e634
Medium
Bypass Apple Corp SSO on Apple Admin Panel
WhoAmI:
New Writeup❗️
Date: Tue, 05 Apr 2022 16:35:26 GMT
Title: HTTP Request Smuggling on business.apple.com and Others.
Link: https://medium.com/p/2c43e81bcc52
Date: Tue, 05 Apr 2022 16:35:26 GMT
Title: HTTP Request Smuggling on business.apple.com and Others.
Link: https://medium.com/p/2c43e81bcc52
Medium
HTTP Request Smuggling on business.apple.com and Others.
WhoAmI:
New Writeup❗️
Date: Sat, 23 Jul 2022 09:43:43 GMT
Title: $$$ bounty in less 3 minutes from a google dork
Link: https://medium.com/p/54bd9bf3a650
Date: Sat, 23 Jul 2022 09:43:43 GMT
Title: $$$ bounty in less 3 minutes from a google dork
Link: https://medium.com/p/54bd9bf3a650
Medium
$$$ bounty in less 3 minutes from a google dork
~ Hi Bug Bounty Hunters & CyberSecurity folks!!! It’s been long since i dropped a bug bounty writeup. Got lots of them in store, and i will…
New Writeup❗️
Date: Sat, 23 Jul 2022 09:14:29 GMT
Title: CyberTalents BootCamp 2022 #mailer
Link: https://medium.com/p/9a667344058d
Date: Sat, 23 Jul 2022 09:14:29 GMT
Title: CyberTalents BootCamp 2022 #mailer
Link: https://medium.com/p/9a667344058d
Medium
CyberTalents BootCamp 2022 #mailer
~ In this article we will cover:
New Writeup❗️
Date: Sat, 23 Jul 2022 08:44:51 GMT
Title: CyberTalents BootCamp 2022 #Competition
Link: https://medium.com/p/2b5009bdf73d
Date: Sat, 23 Jul 2022 08:44:51 GMT
Title: CyberTalents BootCamp 2022 #Competition
Link: https://medium.com/p/2b5009bdf73d
Medium
CyberTalents BootCamp 2022 #Competition
~ In this article we will cover: