Posts

What can I do with Open Redirect with OAuth?

Bypassing CSP is not enough to gain your XSS

Just a DOM-Based XSS

Bypass CORS Filter leads to CSRF Application Wide

[CVE-2020-11110] What really happened in Grafana code?

Exfiltrate data from Blind SQL Injection (Boolean Based) | Using Scripting

Unexploitable CORS can lead to Stored XSS?

Bug Poc XSS Challenge - Writeup

Using CSRF I Got Weird Account Takeover

Business Logic Bugs!! What is that?!!

[Part 2] What is XSS and Example of Filters & Bypasses

[Leak] Can I take the user information, please?!!

[Part 1] What is XSS and Example of Filters & Bypasses