writeups.xyz writeups.xyz / Corben Leo (@Hacker_)

Title Vulnerabilities Programs Authors
A $1,000,000 bounty? The KuCoin User Information Leak
A Simple SQL Injection in an Air Force Website
Exposed Jenkins to RCE on 8 Adobe Experience Managers
"CI Knew There Would Be Bugs Here" — Exploring Continuous Integration Services as a Bug Bounty Hunter
XSS to XXE in Prince v10 and below (CVE-2018-19858)
Chaining Bugs to Steal Yahoo Contacts!
Hacking the Hackers: Leveraging an SSRF in HackerTarget
SQL Injection in rog.asus.com
Tricky CORS Bypass in Yahoo! View
Stored XSS in Bandcamp
Remote Code Execution in AT&T