New Writeup❗️
Date: Fri, 26 Feb 2021 17:09:09 GMT
Title: Story About Stop 10000+ users to get Their job notification
Link: https://medium.com/p/6a8aca542c85
Date: Fri, 26 Feb 2021 17:09:09 GMT
Title: Story About Stop 10000+ users to get Their job notification
Link: https://medium.com/p/6a8aca542c85
Medium
Story About Stop 10000+ users to get Their job notification
Greeting Everyone ! Hope Everything Is going good ! This Story Is about to How I able to Stop all Users of example.com to get their…
New Writeup❗️
Date: Tue, 27 Oct 2020 15:23:28 GMT
Title: Make Your Recon Better Recon using automation If Your Beginner !
Link: https://medium.com/p/a4f762205412
Date: Tue, 27 Oct 2020 15:23:28 GMT
Title: Make Your Recon Better Recon using automation If Your Beginner !
Link: https://medium.com/p/a4f762205412
Medium
Make Your Recon Better Recon using automation If Your Beginner !
Greeting Everyone ! Hope Everything Is Going Good ! Today we Are Going to see How Easily You Can Perform Recon Against Your Targeted…
New Writeup❗️
Date: Sat, 15 Aug 2020 19:22:52 GMT
Title: How How i am able to Steal email verification token By Host header Poisoning
Link: https://medium.com/p/875bec0d477d
Date: Sat, 15 Aug 2020 19:22:52 GMT
Title: How How i am able to Steal email verification token By Host header Poisoning
Link: https://medium.com/p/875bec0d477d
Medium
How How i am able to Steal email verification token By Host header Poisoning
Greeting Everyone ! I am pallab Twitter (@PJBorah2) Today I going to share my first Accepted p2 Bug I found on Bugcrowd Private program…
New Writeup❗️
Date: Sat, 23 May 2020 10:49:34 GMT
Title: Story About OTP Bypass To Stored XSS
Link: https://medium.com/p/81bfd735c709
Date: Sat, 23 May 2020 10:49:34 GMT
Title: Story About OTP Bypass To Stored XSS
Link: https://medium.com/p/81bfd735c709
Medium
Story About OTP Bypass To Stored XSS
Hello Hunters!
New Writeup❗️
Date: Fri, 22 May 2020 13:38:36 GMT
Title: XSS Tricky Exploitation
Link: https://medium.com/p/a2ef6dbb31b6
Date: Fri, 22 May 2020 13:38:36 GMT
Title: XSS Tricky Exploitation
Link: https://medium.com/p/a2ef6dbb31b6
Medium
XSS Tricky Exploitation
Hello Hunters !
New Writeup❗️
Date: Tue, 05 Jan 2021 20:06:09 GMT
Title: Privilege Escalation from being a normal user to admin
Link: https://medium.com/p/3f86896f1c93
Date: Tue, 05 Jan 2021 20:06:09 GMT
Title: Privilege Escalation from being a normal user to admin
Link: https://medium.com/p/3f86896f1c93
Medium
Privilege Escalation from being a normal user to admin
Privilege Escalation: Privilege escalation happens when a malicious user exploits a bug, design flaw, or configuration error in an…
New Writeup❗️
Date: Tue, 10 Nov 2020 15:01:14 GMT
Title: Easy win with Broken Link Hijacking
Link: https://medium.com/p/1084007966f3
Date: Tue, 10 Nov 2020 15:01:14 GMT
Title: Easy win with Broken Link Hijacking
Link: https://medium.com/p/1084007966f3
Medium
Easy win with Broken Link Hijacking
What is Broken Link Hijacking?
New Writeup❗️
Date: Tue, 27 Oct 2020 14:36:19 GMT
Title: Automating xss identification with Dalfox & Paramspider
Link: https://medium.com/p/e14283bb7916
Date: Tue, 27 Oct 2020 14:36:19 GMT
Title: Automating xss identification with Dalfox & Paramspider
Link: https://medium.com/p/e14283bb7916
Medium
Automating xss identification with Dalfox & Paramspider
Cross Site Scripting allows an attacker to inject malicious javascript code in the web application through some parameters and can be…
New Writeup❗️
Date: Fri, 09 Oct 2020 11:53:26 GMT
Title: CVE-2018–5230 | JIRA Cross Site Scripting
Link: https://medium.com/p/59ec96b3d75f
Date: Fri, 09 Oct 2020 11:53:26 GMT
Title: CVE-2018–5230 | JIRA Cross Site Scripting
Link: https://medium.com/p/59ec96b3d75f
Medium
CVE-2018–5230 | JIRA Cross Site Scripting
CVE Description
New Writeup❗️
Date: Tue, 11 Aug 2020 12:40:26 GMT
Title: Hunting for CVE: 2020–3187 , 2020–3452
Link: https://medium.com/p/9f0dcc66f4d8
Date: Tue, 11 Aug 2020 12:40:26 GMT
Title: Hunting for CVE: 2020–3187 , 2020–3452
Link: https://medium.com/p/9f0dcc66f4d8
Medium
Hunting for CVE: 2020–3187 , 2020–3452
Back with another writeup. In this I will be discussing about how easy is to hunt for CVE:2020–3187&, 2020-3452 and what are the steps…
New Writeup❗️
Date: Sat, 06 Mar 2021 18:01:13 GMT
Title: My First Bug Bounty
Link: https://medium.com/p/a011d2d049ce
Date: Sat, 06 Mar 2021 18:01:13 GMT
Title: My First Bug Bounty
Link: https://medium.com/p/a011d2d049ce
Medium
My First Bug Bounty
Hello everyone, this is Prajwol from Nepal. This is an explaination about my first bug bounty.
New Writeup❗️
Date: Sun, 12 Dec 2021 09:14:05 GMT
Title: SVG based Stored XSS
Link: https://medium.com/p/ee6e9b240dee
Date: Sun, 12 Dec 2021 09:14:05 GMT
Title: SVG based Stored XSS
Link: https://medium.com/p/ee6e9b240dee
Medium
SVG based Stored XSS
Hi, hope you guys doing great! Here is a story about me finding a stored XSS using svg files
New Writeup❗️
Date: Fri, 19 Mar 2021 05:49:46 GMT
Title: Browser fingerprinting via Caching
Link: https://medium.com/p/1b2b9eb53551
Date: Fri, 19 Mar 2021 05:49:46 GMT
Title: Browser fingerprinting via Caching
Link: https://medium.com/p/1b2b9eb53551
Medium
Browser fingerprinting via Caching
Introduction
New Writeup❗️
Date: Wed, 09 Feb 2022 07:52:47 GMT
Title: Microsoft Team’s Unpatched URL Spoofing Vulnerability
Link: https://medium.com/p/c58f5949fac8
Date: Wed, 09 Feb 2022 07:52:47 GMT
Title: Microsoft Team’s Unpatched URL Spoofing Vulnerability
Link: https://medium.com/p/c58f5949fac8
Medium
Microsoft Team’s Unpatched URL Spoofing Vulnerability
What is URL Spoofing?
New Writeup❗️
Date: Mon, 13 Feb 2023 21:54:46 GMT
Title: Bypassing CORS configurations to produce an Account Takeover for Fun and Profit
Link: https://medium.com/p/3e50c3f2a124
Date: Mon, 13 Feb 2023 21:54:46 GMT
Title: Bypassing CORS configurations to produce an Account Takeover for Fun and Profit
Link: https://medium.com/p/3e50c3f2a124
Medium
Bypassing CORS configurations to produce an Account Takeover for Fun and Profit
The bug that is being written about here is from an previous bug bounty engagement for a major telecommunication company. This bug consists…
New Writeup❗️
Date: Wed, 03 Feb 2021 02:58:31 GMT
Title: How I was able to Turn a XSS into A Account Takeover
Link: https://medium.com/p/ae0c478640e7
Date: Wed, 03 Feb 2021 02:58:31 GMT
Title: How I was able to Turn a XSS into A Account Takeover
Link: https://medium.com/p/ae0c478640e7
Medium
How I was able to Turn a XSS into a Account Takeover
To begin,this is a vulnerability that I found during a bug bounty engagement.I would split this into two parts, or two separate…
New Writeup❗️
Date: Tue, 17 Nov 2020 23:06:25 GMT
Title: OpenEMR 5.0.1.3 — (Authenticated) Arbitrary File Actions
Link: https://medium.com/p/f7006e636b8c
Date: Tue, 17 Nov 2020 23:06:25 GMT
Title: OpenEMR 5.0.1.3 — (Authenticated) Arbitrary File Actions
Link: https://medium.com/p/f7006e636b8c
Medium
OpenEMR 5.0.1.3 — (Authenticated) Arbitrary File Actions
Back in 2018, a group of security researchers and I decided to try our hands at OpenEMR and find security vulnerabilities.The full report…
New Writeup❗️
Date: Thu, 04 Mar 2021 20:39:46 GMT
Title: Full Account takeOver throught enabled laravel debug mode
Link: https://medium.com/p/54a68156d258
Date: Thu, 04 Mar 2021 20:39:46 GMT
Title: Full Account takeOver throught enabled laravel debug mode
Link: https://medium.com/p/54a68156d258
Medium
Full Account takeOver throught enabled laravel debug mode
hey folks
New Writeup❗️
Date: Thu, 21 Jan 2021 17:19:12 GMT
Title: SSRF exploitation in Spreedsheet to PDF converter
Link: https://medium.com/p/2c7eacdac781
Date: Thu, 21 Jan 2021 17:19:12 GMT
Title: SSRF exploitation in Spreedsheet to PDF converter
Link: https://medium.com/p/2c7eacdac781
Medium
SSRF exploitation in Spreedsheet to PDF converter
hello folks . this is my first writeup about one of my recent finding on a private bug bounty program , i hope you can store a new…
New Writeup❗️
Date: Tue, 29 Dec 2020 10:09:44 GMT
Title: Clickjacking Leads to IDOR at Mola TV
Link: https://medium.com/p/db62c3db50c9
Date: Tue, 29 Dec 2020 10:09:44 GMT
Title: Clickjacking Leads to IDOR at Mola TV
Link: https://medium.com/p/db62c3db50c9
Medium
Clickjacking Leads to IDOR at Mola TV
Hii Now i want to share about “How i got easy Clickjacking and escalated to Idor at Mola TV”