Biscuit's Bug Bounty Playbook
Ctrl
K
Copy
Bug Bounty Reports & Articles
7๏ธโฃ
Broken Access Control & Broken Authentication
โ๏ธ
2FA Functionality
Glassdoor disclosed on HackerOne: 2FA bypass by sending blank code
HackerOne
Nextcloud disclosed on HackerOne: Two-factor authentication...
HackerOne
GitLab disclosed on HackerOne: Ability to bypass email verification...
HackerOne
Glassdoor disclosed on HackerOne: 2FA bypass by sending blank code
HackerOne
Shopify disclosed on HackerOne: Email Confirmation Bypass in...
HackerOne
The $12,000 2FA BypassโโโSo Simple, Yet So Critical!
Medium
Bypassing 2FA in a Public Bug Bounty Program: A $6000 Journey | by Mohsin khan - Freedium
freedium.cfd
HackerOne disclosed on HackerOne: Changing the 2FA secret key and...
HackerOne
Nextcloud disclosed on HackerOne: Two-factor authentication...
HackerOne
Khan Academy disclosed on HackerOne: Email Verification Bypass...
HackerOne
Simple logic flaw lead to P3 bug in public BBP
Medium
Previous
Password Reset Functionality
Next
Oauth Functionality
Last updated
7 days ago