Biscuit's Bug Bounty Playbook
Search...
Ctrl +โK
Bug Bounty Reports & Articles
Takeover's (Accounts, Sub-domains, etc)
Account Takeover
Previous
Sub Domain Takeover
Next
dependency confusion vulnerability
Last updated
6 months ago
1๏ธโฃ
๐
Pre account takeover
Medium
Oauth Misconfiguration Leads to 0-Click ATO
Medium
How I Earned $1800 for finding a (Business Logic) Account Takeover Vulnerability?
Medium
Account (of the CEO) Takeover via Password Reset
Medium
Account Takeover via Email Confirmation
Medium
Account Takeover via Weak OTP
Medium
[Account Take Over] through reset password token leaked in response, 2500 โฌ Reward
InfoSec Write-ups
5 Ways to do ATO in a Single Website
Medium
Account takeover in cups.mail.ru
qwerty
U.S. Dept Of Defense disclosed on HackerOne: Password Reset link...
HackerOne
Mail.ru disclosed on HackerOne: Account takeover through password...
HackerOne
UPS VDP disclosed on HackerOne: Admin Authentication Bypass Lead to...
HackerOne
PII Leakage via IDOR + Weak PasswordReset = Full Account Takeover
InfoSec Write-ups
0 Click Account takeover
Medium