writeups.xyz writeups.xyz / Nikhil (Niks) (@Niksthehacker)

Title Vulnerabilities Programs Authors
Chaining Path Traversal with SSRF to disclose internal git repo data in a Bank Asset
XXE in Public Transport Ticketing Mobile APP
Account Takeovers — Believe the Unbelievable
Unauthenticated Account Takeover Through Forget Password
Interesting case of SQLi
Unauthenticated Account Takeover Through HTTP Leak
SOAP- Based Unauthenticated Out-of-Band XML External Entity (OOB-XXE) in a Help Desk Software