writeups.xyz writeups.xyz / Saad Ahmed (@XSaadAhmedX)

Title Vulnerabilities Programs Authors
Exploiting Auto-save Functionality To Steal Login Credentials
Weaponizing XSS For Fun & Profit
Bypassing CORS
Bypass CSRF With ClickJacking Worth $1250
Accidental IDOR
Self XSS To Evil XSS
SQl Injection
Account Takeover Worth $900
Complete Web Server Access
IDOR — Account Takeover