Back to directory
WRITEUP #2858

How I Was Able To TakeOver Any Account On One Of Europe's Largest Media Companies

IDORAccount takeover
byTobydavenn
Program
-
Published
Mar 23, 2022
Added to HackDex
Sep 15, 2022
Read Full Writeuphttps://medium.com/@tobydavenn/how-i-was-able-to-takeover-any-account-on-one-of-europes-largest-media-companies-e8d25e59c08
RELATED WRITEUPS
The Butterfly Effect: Turning Overlooked - Misconfigurations into Zero Click Account Takeover
APIGraphQL
Interesting Story of an Account Takeover Vulnerability
Auth BypassAccount takeover
Self-XSS to ATO via Site Features
XSSSelf-XSS
Zomatoooo! IDOR in Saved Payments
IDOR
CSRF Bypass Using Domain Confusion Leads To ATO
CSRFAccount takeover

Built with ❤️ by Shubham Rawat