Back to directory
WRITEUP #1779

Zero Click To Account Takeover (IDOR + XSS)

IDORXSSAccount takeover
by@M7arm4n(Arman)
Program
-
Published
Dec 21, 2022
Added to HackDex
Dec 23, 2022
Read Full Writeuphttps://m7arm4n.medium.com/zero-click-to-account-takeover-idor-xss-98dd6cce63c4
RELATED WRITEUPS
Self-XSS to ATO via Site Features
XSSSelf-XSS
How I got my first $13500 bounty through Parameter Polluting (HPP)
IDORXSS
The Butterfly Effect: Turning Overlooked - Misconfigurations into Zero Click Account Takeover
APIGraphQL
Interesting Story of an Account Takeover Vulnerability
Auth BypassAccount takeover
How 100% Manual Hacking (Without Even Kali And Burp) Led To 2 Medium Vulnerabilities On YesWeHack
XSS

Built with ❤️ by Shubham Rawat