writeups.xyz writeups.xyz / Josh Fam (@Pullerze)

Title Vulnerabilities Programs Authors
Bypassing CORS configurations to produce an Account Takeover for Fun and Profit
Web Cache Poisoning to Account Takeover
How I was able to Turn a XSS into a Account Takeover
OpenEMR 5.0.1.3 Arbitrary File Actions