Back to directory
WRITEUP #750

nOAuth: Account Takeover via Microsoft Oauth

OAuthAccount takeover
byBibek Shah
Program
-
Published
Oct 2, 2023
Added to HackDex
Oct 3, 2023
Read Full Writeuphttps://bibek-shah.medium.com/noauth-account-takeover-via-microsoft-oauth-cc653410b886
RELATED WRITEUPS
Stealing First Party Access Token of Facebook Users: Meta Bug Bounty
OAuthAccount takeover
Self XSS + Login CSRF + OAuth = Account Takeover
Auth BypassAccount takeover
Interesting Story of an Account Takeover Vulnerability
Auth BypassAccount takeover
Self-XSS to ATO via Site Features
XSSSelf-XSS
How I Got $250 For My Second Bug on HackerOne
OAuthSession expiration issue

Built with ❤️ by Shubham Rawat