writeups.xyz writeups.xyz / Cristi Vlad (@CristiVlad25)

Title Vulnerabilities Programs Authors
Account Takeover [It Looked Secure at First]
Unauthenticated Massive PII Leak
Account (of the CEO) Takeover via Password Reset
Exfiltrating AWS Credentials via PDF Rendering of Unsanitized Input