writeups.xyz writeups.xyz / Lyubomir Tsirkov (@Lyubo_tsirkov)

Title Vulnerabilities Programs Authors
Bypassing iCloud Web Access Restriction
Cross-Site Scripting via Web Cache Poisoning and WAF bypass
Netflix — Bypassing Multi-Factor Authentication (MFA)
[Netflix][Smart TV] — Chaining Self-XSS with Session poisoning.
[GITLAB] — Just another SSRF issue.
[GITLAB] — Server Side Request Forgery in “Project Import” page.
[GITLAB] — Denial of service via “Login Panel” functionality.