Back to directory
WRITEUP #1589

Chaining Bugs to get my First Bug Bounty

CSRFOpen redirectClickjackingAccount takeover
by@ag3n7apk(ag3n7)
Program
-
Published
Feb 8, 2023
Added to HackDex
Mar 2, 2023
Read Full Writeuphttps://infosecwriteups.com/chaining-bugs-to-get-my-first-bug-bounty-7e94afb704e7
RELATED WRITEUPS
CSRF Bypass Using Domain Confusion Leads To ATO
CSRFAccount takeover
Interesting Story of an Account Takeover Vulnerability
Auth BypassAccount takeover
Self-XSS to ATO via Site Features
XSSSelf-XSS
Basic HTTP Authentication Risk: Uncovering pyspider Vulnerabilities
XSSReflected XSS
Instagram and Meta 2FA Bypass by Unprotected Backup Code Retrieval in Accounts Center
Auth Bypass2FA / MFA bypass

Built with ❤️ by Shubham Rawat