Back to directory
WRITEUP #368

Race Condition Authentication Bypass leads to Full Account Takeover

Race ConditionAuthentication bypassAccount takeover
by@KeiZo_Zo(Keizo)
Program
-
Published
Apr 5, 2024
Added to HackDex
Jul 15, 2024
Read Full Writeuphttps://medium.com/@keizobugbounty/race-condition-authentication-bypass-leads-to-full-account-takeover-6b5c9bc0a54d
RELATED WRITEUPS
The Butterfly Effect: Turning Overlooked - Misconfigurations into Zero Click Account Takeover
APIGraphQL
Vulnerabilities in Open Source C2 Frameworks
RCEOS command injection
Interesting Story of an Account Takeover Vulnerability
Auth BypassAccount takeover
Self-XSS to ATO via Site Features
XSSSelf-XSS
CSRF Bypass Using Domain Confusion Leads To ATO
CSRFAccount takeover

Built with ❤️ by Shubham Rawat