Back to directory
WRITEUP #5529

Facebook CSRF protection bypass which leads to Account Takeover

CSRF
by@samm0uda(Youssef Sammouda)
Bounty
25,000
Program
Meta / Facebook
Published
Feb 12, 2019
Added to HackDex
Sep 15, 2022
Read Full Writeuphttps://ysamm.com/?p=185
RELATED WRITEUPS
Basic HTTP Authentication Risk: Uncovering pyspider Vulnerabilities
XSSReflected XSS
CSRF Bypass Using Domain Confusion Leads To ATO
CSRFAccount takeover
Vulnerabilities in Homepage Dashboard
RCESSRF
AI Under Siege: Discovering and Exploiting Vulnerabilities
AI / LLMAI
How Almost Sacrificing a University Group Project led to a Microsoft Bug Bounty
XSSCSRF

Built with ❤️ by Shubham Rawat