writeups.xyz writeups.xyz / Amine Aboud (@Amineaboud)

Title Vulnerabilities Programs Authors
Disclose leads form details of any Facebook Business Account or Facebook Page (Bug Bounty)
Access developer tasks list of any Facebook Application (GraphQL IDOR)
Disclose the FB profile of Facebook employees who create official announcement messages (Bug Bounty)
$10000 Facebook SSRF (Bug Bounty)
Story of a weird vulnerability I found on Facebook