writeups.xyz writeups.xyz / Muhammad Asim Shahzad (@Protector47)

Title Vulnerabilities Programs Authors
Worth $1,500 IDOR (Access Unauthorize Data)
$5,005 worth vulnerability Duplicated, How I loose $5,005 in a day? Denial of Service - Billion LAUGH Attack (XXE)
Password Reset Vulnerability — Full Account takeover (Insecure Direct Object Reference)
How I earned $1,500 in just 15 mins due to Amazon S3 bucket misconfiguration?
Full Account Takeover via Referer Header (OAuth token Steal, Open Redirect Vulnerability Chaining)
Persistent Cross-Site Scripting on redacted worth $2,000
How I find Open-Redirect Vulnerability in redacted.com (One of the top online payment processing service website)