writeups.xyz writeups.xyz / Weak Crypto

Title Vulnerabilities Programs Authors
Insecure Authentication Tokens leading to Account Takeover
Microsoft Office 365 Message Encryption Insecure Mode of Operation
Weak private key generation in SSH.NET <= 2020.0.1
A vulnerability on Patreon, and their elusive bounty program.
We discovered major vulnerabilities in Control Web Panel. Here’s how we found them.
How I Gained Access To A Finance Company’s Accounts (Session Hijacking)
Pre-Account Takeover by Reversing a Weak Email Verification Token Algorithm
Kaspersky Password Manager: All your passwords are belong to us
Cracking Encrypted Credit Card Numbers Exposed By API
Pentest-Story: Empirum password decryption
How Netgear meshed(*) up WiFi for Business
break and bypass verification email
Disclose files content from Facebook internal CDNs