writeups.xyz writeups.xyz / Amol Baikar (@AmolBaikar)

Title Vulnerabilities Programs Authors
Facebook OAuth Framework Vulnerability
Determine users with detailed role model on behalf of any Facebook Application
Disclose Full Admin List of any Facebook Applications
Disclose Facebook Business Account ID
XSS on Facebook’s acquisition Oculus CDN Server
Disclose contact_email of any Facebook application
Amol Baikar (@AmolBaikar)
XSS on Facebook-Instagram CDN Server bypassing signature protection.
XSS on Facebook’s acquisition Oculus CDN