Back to directory
WRITEUP #1748

How I got a Bug At Apple that lead’s to takeover accounts of any user who view my profile

XSSAccount takeover
by@hamzadzworm(Abdelkader Mouaz)
Program
Apple
Published
Dec 29, 2022
Added to HackDex
Dec 30, 2022
Read Full Writeuphttps://hamzadzworm.medium.com/how-i-got-a-bug-that-leads-to-takeover-accounts-of-any-user-who-view-my-profile-913c8704f6cd
RELATED WRITEUPS
Self-XSS to ATO via Site Features
XSSSelf-XSS
Interesting Story of an Account Takeover Vulnerability
Auth BypassAccount takeover
How 100% Manual Hacking (Without Even Kali And Burp) Led To 2 Medium Vulnerabilities On YesWeHack
XSS
Basic HTTP Authentication Risk: Uncovering pyspider Vulnerabilities
XSSReflected XSS
Bypassing CSP via URL Parser Confusions : XSS on Netlify’s Image CDN
XSSCSP bypass

Built with ❤️ by Shubham Rawat