Back to directory
WRITEUP #3913

De-anonymize the members of a private Facebook Group as a non-member.

APIGraphQLInformation disclosure
by@SpongeBhav(Baibhav Anand)
Bounty
4,500
Program
Meta / Facebook
Published
Mar 15, 2021
Added to HackDex
Sep 15, 2022
Read Full Writeuphttps://baibhavjha.com.np/blogs/facebookgroupmemberdisclosure/
RELATED WRITEUPS
Authorization bypass due to cache misconfiguration
APIAuthorization bypass
The Butterfly Effect: Turning Overlooked - Misconfigurations into Zero Click Account Takeover
APIGraphQL
P3 (Medium) : How I Gain Access To NASA's Internal Workspace?!
ReconInformation disclosure
How I Got Bugs From Google Dorks
ReconInformation disclosure
How I can easily get four P1 at NASA using Simple Google Dorking.
ReconInformation disclosure

Built with ❤️ by Shubham Rawat