Back to directory
WRITEUP #5581

Oauth Misconfiguration lead to complete account takeover

CSRFOAuthAccount takeover
by@Jacksonkv22(Jackson kv)
Program
-
Published
Jan 20, 2019
Added to HackDex
Sep 15, 2022
Read Full Writeuphttps://medium.com/@Jacksonkv22/oauth-misconfiguration-lead-to-complete-account-takeover-c8e4e89a96a
RELATED WRITEUPS
CSRF Bypass Using Domain Confusion Leads To ATO
CSRFAccount takeover
AI Under Siege: Discovering and Exploiting Vulnerabilities
AI / LLMAI
Stealing First Party Access Token of Facebook Users: Meta Bug Bounty
OAuthAccount takeover
Self XSS + Login CSRF + OAuth = Account Takeover
Auth BypassAccount takeover
Interesting Story of an Account Takeover Vulnerability
Auth BypassAccount takeover

Built with ❤️ by Shubham Rawat