Back to directory
WRITEUP #4587

One Token to leak them all : The story of a $8000 NPM_TOKEN

ReconInformation disclosure
by@AseemShrey(Aseem Shrey)
Bounty
8,000
Program
Google
Published
Jun 19, 2020
Added to HackDex
Sep 15, 2022
Read Full Writeuphttps://medium.com/@aseem.shrey/one-token-to-leak-them-all-the-story-of-a-8000-npm-token-79b13af182a3
RELATED WRITEUPS
P3 (Medium) : How I Gain Access To NASA's Internal Workspace?!
ReconInformation disclosure
How I Got Bugs From Google Dorks
ReconInformation disclosure
How I can easily get four P1 at NASA using Simple Google Dorking.
ReconInformation disclosure
How 1 Exposed Honeywell API Gave us Control Over an Internal Engineering System
ReconMissing authentication
$1600 Bounty on a Main Domain
ReconSession fixation

Built with ❤️ by Shubham Rawat