Exploiting Out-of-Band XXE in the WildHello all, I hope you’re fine! Our story today is about one of the most interesting bugs I found, actually, it’s my first time finding this…Sep 6, 2022A response icon3Sep 6, 2022A response icon3
Admin account takeover via weird Password Reset FunctionalityHello all, I hope you’re fine! Our story today is a funny ATO I recently found it, so I decided to share it with you.Jul 2, 2022A response icon7Jul 2, 2022A response icon7
How I managed to take over any account visits my profile with Stored XSSHello everybody, today we have a simple Stored XSS vulnerability that leads to stealing cookies and Taking over the account. Let’s startMay 15, 2022A response icon2May 15, 2022A response icon2
Published inInfoSec Write-upsHow I Found multiple SQL Injection with FFUF and Sqlmap in a few minutesHello all, hope you’re OK. Our journey today is about how I found multiple SQL Injections in a bug bounty program in just a few minutes…Dec 14, 2021A response icon11Dec 14, 2021A response icon11
How I Found multiple SQL Injection with FFUF and Sqlmap in a few minutesHello all, hope you’re OK. Our journey today is about how I found multiple SQL Injection in a BugBounty program in just few minutes with a…Nov 6, 2021A response icon14Nov 6, 2021A response icon14
Cybertalents Quals : Saudi, Sudan, Egypt and Tunisia National CTF 2020 Write-UpCybertalents Quals Challenges Write-UpSep 20, 2020A response icon1Sep 20, 2020A response icon1