writeups.xyz writeups.xyz / Aviad Carmel (@AviadCarmel)

Title Vulnerabilities Programs Authors
Over 1 Million websites are at risk of sensitive information leakage - XSS is dead. Long live XSS
Security Flaws within ChatGPT Ecosystem Allowed Access to Accounts On Third-Party Websites and Sensitive Data
Oh-Auth - Abusing OAuth to take over millions of accounts
Salt Labs exposes a new vulnerability in popular OAuth framework, used in hundreds of online services
Traveling with OAuth - Account Takeover on Booking.com