writeups.xyz
/
Bukalapak
Title
Vulnerabilities
Programs
Authors
Oh-Auth - Abusing OAuth to take over millions of accounts
OAuth
Account Takeover
Grammarly
Vidio
Bukalapak
Aviad Carmel (@AviadCarmel)
From broken link to subfolder takeover on Bukalapak
AWS Misconfiguration
Bukalapak
Wis4nggeni
break and bypass verification email
Open Redirect
Email Verification Bypass
Weak Crypto
Bukalapak
Abdelhak Kharroubi
CRLF injection allow => cookie injection in root domain & xss
CRLF Injection
Bukalapak
Abdelhak Kharroubi
Price Parameter Tampering On Bukalapak
Parameter Tampering
Payment Tampering
Bukalapak
Apapedulimu / Nosa Shandy (@LocalHost31337)
Page 1 of 1