Back to directory
WRITEUP #1881

Access Any Owner Account without Authentication (Auth bypass + 2FA bypass)

Auth BypassAuthentication bypass2FA / MFA bypassAccount takeover
by@sharp488(Sharat Kaikolamthuruthil)
Program
-
Published
Nov 27, 2022
Added to HackDex
Nov 30, 2022
Read Full Writeuphttps://medium.com/@sharp488/access-any-owner-account-without-authentication-auth-bypass-2fa-bypass-94d0d3ef0d9c
RELATED WRITEUPS
Instagram and Meta 2FA Bypass by Unprotected Backup Code Retrieval in Accounts Center
Auth Bypass2FA / MFA bypass
Interesting Story of an Account Takeover Vulnerability
Auth BypassAccount takeover
$1600 Bounty on a Main Domain
ReconSession fixation
Forced SSO Session Fixation
Auth BypassSSO
Account takeover on 8 years old public program
Auth BypassAccount takeover

Built with ❤️ by Shubham Rawat