Biscuit's Bug Bounty Playbook
Search...
Ctrl +โK
Bug Bounty Reports & Articles
7๏ธโฃ
Broken Access Control & Broken Authentication
โ๏ธ
2FA Functionality
Previous
Password Reset Functionality
Next
Oauth Functionality
Last updated
5 months ago
GitLab disclosed on HackerOne: Ability to bypass email verification...
HackerOne
Glassdoor disclosed on HackerOne: 2FA bypass by sending blank code
HackerOne
Khan Academy disclosed on HackerOne: Email Verification Bypass...
HackerOne
Shopify disclosed on HackerOne: Email Confirmation Bypass in...
HackerOne
HackerOne disclosed on HackerOne: Changing the 2FA secret key and...
HackerOne
Nextcloud disclosed on HackerOne: Two-factor authentication...
HackerOne
Simple logic flaw lead to P3 bug in public BBP
Medium