writeups.xyz
/
Mohamed Reda (@M0x0101)
Title
Vulnerabilities
Programs
Authors
How i was able to get Account Takeover via Insecure Data Storage and WebView With Exported Activity
Account Takeover
Android
Webview
Insecure Data Storage
Firebase
Undisclosed
Mohamed Reda (@M0x0101)
How I was able to get account takeover via IDOR form JWT
JWT
IDOR
Bruteforce
Self-XSS
Account Takeover
Undisclosed
Mohamed Reda (@M0x0101)
How I was able to steal users credentials via Swagger UI DOM-XSS
DOM XSS
Old Components With Known Vulnerabilities
Undisclosed
Mohamed Reda (@M0x0101)
Page 1 of 1