writeups.xyz writeups.xyz / OAuth

Title Vulnerabilities Programs Authors
Stealing Facebook access_tokens using CSRF in device login flow
Stealing Facebook Access Tokens with a Double Submit