Biscuit's Bug Bounty Playbook
Ctrl
K
Copy
Bug Bounty Reports & Articles
1๏ธโฃ
Takeover's (Accounts, Sub-domains, etc)
๐
Account Takeover
0-Click Account Takeover Earned Me โฌ900 Bounty
Medium
Open Redirect Validation Bypass Leads To Account Take Over (ATO)
Medium
Full Account Takeover Leading to RCE Remote Code Execution
Waqas Zaka
Pre account takeover
Medium
Oauth Misconfiguration Leads to 0-Click ATO
Medium
How I Earned $1800 for finding a (Business Logic) Account Takeover Vulnerability?
Medium
Account (of the CEO) Takeover via Password Reset
Medium
Account Takeover via Email Confirmation
Medium
Account Takeover via Weak OTP
Medium
[Account Take Over] through reset password token leaked in response, 2500 โฌ Reward
Medium
5 Ways to do ATO in a Single Website
Medium
Account takeover in cups.mail.ru
Medium
U.S. Dept Of Defense disclosed on HackerOne: Password Reset link...
HackerOne
https://hackerone.com/reports/843160
hackerone.com
UPS VDP disclosed on HackerOne: Admin Authentication Bypass Lead to...
HackerOne
PII Leakage via IDOR + Weak PasswordReset = Full Account Takeover
Medium
0 Click Account takeover
Medium
https://www.youtube.com/watch?v=EI52YTRfGRU
www.youtube.com
Previous
Sub Domain Takeover
Next
dependency confusion vulnerability
Last updated
1 month ago