writeups.xyz writeups.xyz / Kunal Pandey (@Kunalp94)

Title Vulnerabilities Programs Authors
Stealing User’s PII info by visiting API endpoint directly
Indirect UXSS issue on a private Android target app
Web Cache Deception to API endpoint attack using cached token header
Web Cache Deception Attack leads to user info disclosure
Imagemagick GIF coder vulnerability leads to memory disclosure (Hackerone)