Yassine AkrachliInteresting .DS_Store finding worth $$$Hello fellow hacker, hope you’re doing well. In this write-up, I’ll discuss a bug I’ve discovered across multiple AWS URL within a private…May 18, 20242May 18, 20242
z3r0xk.hIDOR lead to PII DisclosureIDOR, or Insecure Direct Object Reference, is a vulnerability where an attacker can access and manipulate resources directly by modifying…May 3, 20243May 3, 20243
InInfoSec Write-upsbyPh.HitachiHow i Find Database Credentials via Mass Recon & Recon Scoping on GcashHi guys,Apr 22, 20248Apr 22, 20248
mehedishakeelInformation Disclosure — My First Finding on Hackerone!Information Disclosure is a kind of bug that is not so hard to find but could has huge impact. Some time you could get a very sensitive…Oct 21, 20227Oct 21, 20227