Back to directory
WRITEUP #6031

How I hacked companies related to the crypto currency and earned $60,000

CSRFBroken authorizationIDORStored XSSHTML injection
by@0xw2w(Max)
Bounty
59,400
Program
okex.comlivecoin.net
Published
Apr 14, 2018
Added to HackDex
Sep 15, 2022
Read Full Writeuphttps://medium.com/@iSecMax/how-i-hacked-companies-related-to-the-crypto-currency-and-earned-60-000-93e9b3299f4e
RELATED WRITEUPS
CVE-2024-45195: Apache OFBiz Unauthenticated Remote Code Execution (Fixed)
RCEForced browsing
Zomatoooo! IDOR in Saved Payments
IDOR
Basic HTTP Authentication Risk: Uncovering pyspider Vulnerabilities
XSSReflected XSS
CSRF Bypass Using Domain Confusion Leads To ATO
CSRFAccount takeover
Vulnerabilities in Homepage Dashboard
RCESSRF

Built with ❤️ by Shubham Rawat