Quartz 🪬

Home

❯

002 Cyber Security

❯

Blogs

Folder: 002-Cyber-Security/Blogs

13 items under this folder.

  • Aug 09, 2025

    Bypassing Access Control through OPTIONS Request + Method Smuggling

    • write-up
    • broken-access-control
  • Aug 09, 2025

    Bypassing HackerOne 2FA Due to Race Condition

    • race-conditions
    • write-up
    • 2fa-bypass
  • Aug 09, 2025

    Hacking High-Profile Bug Bounty Targets - Deep Dive into a Client-Side Chain

    • CSPT
    • XSS
    • CSRF
    • write-up
  • Aug 09, 2025

    How I Discovered XSS that Affects around 20 Uber Subdomains

    • XSS
    • write-up
  • Aug 09, 2025

    How We Got Persistent XSS on Every AEM Cloud Site, Thrice

    • XSS
    • write-up
  • Aug 09, 2025

    Oh-Auth - Abusing OAuth to Take over Millions of Accounts

    • oauth-vulns
    • write-up
    • broken-authentication
  • Aug 09, 2025

    PayPal Bypass OTP Verification Code Vulnerability Worth $15,000 Bounty

    • write-up
    • 2fa-bypass
  • Aug 09, 2025

    Salt Labs Exposes a New Vulnerability in Popular OAuth Framework

    • oauth-vulns
    • write-up
  • Aug 09, 2025

    Stored XSS to Account Takeover (ATO) via GraphQL API

    • XSS
    • graphql-vulns
    • write-up
  • Aug 09, 2025

    Testing LFI in Windows - How I (never) got a $30000 bounty

    • file-inclusion
    • write-up
  • Aug 09, 2025

    Traveling with OAuth - Account Takeover on Booking.com

    • write-up
    • oauth-vulns
  • Aug 09, 2025

    Trivial Csharp Random Exploitation

    • cryptography
    • csharp
    • write-up
  • Aug 09, 2025

    Using Microsoft SSO to Achieve Full Account Takeover

    • recon
    • write-up
    • reversing
    • broken-authentication

Created with Quartz v4.5.2 © 2025

  • GitHub
  • Discord Community