writeups.xyz
/
WeSecureApp (@Wesecureapp)
Title
Vulnerabilities
Programs
Authors
Assumed Breach Assessment Case Study: Uncovering WeSecureApp’s Approach
Internal Pentest
Missing Authentication
Hardcoded Credentials
Cloud
Undisclosed
WeSecureApp (@Wesecureapp)
Fabric.io API permission apocalypse – Privilege Escalations
Broken Authorization
Account Takeover
Twitter
WeSecureApp (@Wesecureapp)
How we tookover shopify accounts with one single click
Stored XSS
Shopify
WeSecureApp (@Wesecureapp)
XSS by tossing cookies
XSS
Cookie Tossing
Microsoft
Twitter
WeSecureApp (@Wesecureapp)
Page 1 of 1