Biscuit's Bug Bounty Playbook
Search...
Ctrl
K
Bug Bounty Reports & Articles
Broken Access Control & Broken Authentication
2FA Functionality
Previous
Password Reset Functionality
Next
Oauth Functionality
Last updated
8 months ago
7๏ธโฃ
โ๏ธ
Khan Academy disclosed on HackerOne: Email Verification Bypass...
HackerOne
HackerOne disclosed on HackerOne: Changing the 2FA secret key and...
HackerOne
Glassdoor disclosed on HackerOne: 2FA bypass by sending blank code
HackerOne
Nextcloud disclosed on HackerOne: Two-factor authentication...
HackerOne
Shopify disclosed on HackerOne: Email Confirmation Bypass in...
HackerOne
Simple logic flaw lead to P3 bug in public BBP
Medium
GitLab disclosed on HackerOne: Ability to bypass email verification...
HackerOne