Mahmoud YoussefHow I Found multiple SQL Injection with FFUF and Sqlmap in a few minutesHello all, hope you’re OK. Our journey today is about how I found multiple SQL Injection in a BugBounty program in just few minutes with a…Nov 6, 2021A response icon14Nov 6, 2021A response icon14
InInfoSec Write-upsbyMahmoud YoussefHow I Found multiple SQL Injection with FFUF and Sqlmap in a few minutesHello all, hope you’re OK. Our journey today is about how I found multiple SQL Injections in a bug bounty program in just a few minutes…Dec 14, 2021A response icon11Dec 14, 2021A response icon11
Mahmoud Youssef0-click ATO via Stored-XSSHello everybody, today we have a simple Stored XSS vulnerability that leads to stealing cookies and Taking over the account. Let’s startMay 15, 2022A response icon2May 15, 2022A response icon2
Mahmoud YoussefAdmin account takeover via weird Password Reset FunctionalityHello all, I hope you’re fine! Our story today is a funny ATO I recently found it, so I decided to share it with you.Jul 2, 2022A response icon7Jul 2, 2022A response icon7
Mahmoud YoussefExploiting Out-of-Band XXE in the WildHello all, I hope you’re fine! Our story today is about one of the most interesting bugs I found, actually, it’s my first time finding this…Sep 6, 2022A response icon3Sep 6, 2022A response icon3