writeups.xyz writeups.xyz / Insecure Deeplink

Title Vulnerabilities Programs Authors
How did we find the same vulnerability in 9 Android Apps
The Old, The New and The Bypass - One-click/Open-redirect to own Samsung S22 at Pwn2Own 2022
How I Leak Other’s Access Token by Exploiting Evil Deeplink Flaw
Access Twitter blue features using deeplink without a subscription.
Technical Advisory – Multiple Vulnerabilities in the Galaxy App Store (CVE-2023-21433, CVE-2023-21434)
2022 Microsoft Teams RCE
Instagram vulnerability : Turn off all type of message requests using deeplink (Android)
Account Takeover in KAYAK
Gcash Vulnerability Walkthrough
Shopping App Deeplink Arbitrary URLs
Vulnerability in TikTok Android app could lead to one-click account hijacking
Impact of an Insecure DeepLink
Facebook android vulnerability: Launching internal/tighten deeplink onbehalf of user
Facebook room deep linking vulnerability, allow malicious user to know the code for anyone’s meeting.
Impact of an Insecure Deep Link
Auth Bypass in Google Assistant
Facebook Messenger for android indirect thread deletion vulnerability.
ShazLocate! Abusing CVE-2019-8791 & CVE-2019-8792
Ability To Backdoor Facebook For Android