writeups.xyz writeups.xyz / Eaton Z. (@XeEaton)

Title Vulnerabilities Programs Authors
How 1 Exposed Honeywell API Gave us Control Over an Internal Engineering System
Plug Security Holes in React Apps That Can Lead to API Exploitation
Hacking into a Toyota/Eicher Motors insurance company by exploiting their premium calculator website
CVE-2023-6483: Improper/missing API authentication in ADiTaaS v5.1
Tapping into a telecommunications company’s office cameras
Compromising Honda’s power equipment / marine / lawn & garden dealer eCommerce platform through a vulnerable password reset API
Insecure Toyota CRM exposed Mexican customer information
Hacking into Toyota’s global supplier management network
Hacking into the worldwide Jacuzzi SmartTub network
Microsoft accidentally exposed their private Xbox game developer forums
An experience with Daimler’s vulnerability reporting program