writeups.xyz writeups.xyz / Broken Authentication

Title Vulnerabilities Programs Authors
CVE-2020-13294
How I earned $500 from Google - Flaw in Authentication
Account Takeover For The Win 🏆
How Netgear meshed(*) up WiFi for Business
[ BUG BOUNTY ] Flaw in Authentication ( Hall of Fame Google )
Instagram account is reactivated without entering 2FA ($500)
How did I bypass a Custom Brute Force protection and why that solution is not a good idea?
Swiss_E-Voting_Publications
How I abused 2FA to maintain persistence after a password change (Google, Microsoft, Instagram, Cloudflare, etc)
Bypass HackerOne 2FA requirement and reporter blacklist
Bug bounty left over (and rant) Part III (Google and Twitter)
Password Not Provided - Compromising Any Flurry User's Account [Yahoo Bug Bounty]
Vine Re-auth Bypass [Twitter Bug Bounty]
A Hilarious ESET Broken Authentication Vulnerability (one click free purchase)