Biscuit's Bug Bounty Playbook
Ctrl
k
Copy
Bug Bounty Reports & Articles
5๏ธโฃ
Request Forgery (CSRF & SSRF)
๐ข
CSRF
Grammarly disclosed on HackerOne: Lack of CSRF header validation at...
HackerOne
Logitech disclosed on HackerOne: One Click Account takeover using...
HackerOne
U.S. Dept Of Defense disclosed on HackerOne: Account takeover...
HackerOne
Reddit disclosed on HackerOne: CSRF (protection bypassed) to force...
HackerOne
https://hackerone.com/reports/1066189
hackerone.com
Gratipay disclosed on HackerOne: CSRF csrftoken in cookies
HackerOne
drchrono disclosed on HackerOne: CSRF Add Album On onpatient.com
HackerOne
Coinbase disclosed on HackerOne: CSRF bug on password change
HackerOne
https://blog.witcoat.com/2020/12/03/site-wide-csrf-on-glassdoor/
blog.witcoat.com
Previous
Request Forgery (CSRF & SSRF)
Next
SSRF
Last updated
1 year ago