
Omar Hashem Docker daemon misconfiguration, Lack of authentication Worldwide Server-side Cache Poisoning on All Akamai Edge Nodes ($50K+ Bounty Earned)įrancesco Mariani medusa_1) & Jacopo Tediosi Paypal, Airbnb, Tesla, Valve, Zomato, Whitejar, Starbucks, PlayStation, Marriott, Hyatt Hotels, Goldman Sachs, Microsoft, Apple, LastPass, Brussels Airlines, Mastercard, eToro BBP, BMW Group, Rockstar Games Lohith Gowda M enforcement of server-side security Security vs Compliance-Cloudflare Password Policy Restriction Bypass
#BRAVE FRONTIER TIER LIST 2018 REDDIT CODE#
Two Lines Of JScript For $20,000 – Pwn2Own Miami 2022īen McBride Scanning Your Projects for Security Issues Can Lead to Remote Code Execution My First And Second Bugs Are - 2FA BypassĢFA bypass, HTTP response manipulation, Information disclosureĬSRF Attack - 0 click account delete - 1st write-upįorced browsing, 403 bypass, Information disclosure Securing Developer Tools: A New Supply Chain Attack on PHPĪrgument injection, RCE, Supply chain attackīugcrowd - Tale of multiple misconfigurations!! ❌Īccount takeover, OAuth flaw, OTP bypass, Password reset flaw RCE, Memory corruption bug, Format string vulnerabilityĪuthentication bypass, Information disclosure

Hacking TMNF: Part 1 - Fuzzing the game server & Part 2 - Exploiting a blind format string Sparsh Kulshrestha & Shashank Bharthwal (VDP)
#BRAVE FRONTIER TIER LIST 2018 REDDIT MANUAL#
Melting the DNS Iceberg: Taking over your infrastructure Kaminsky styleĮrror based SQL Injection with WAF bypass manual Exploit 100%Īhmed Qaramany & Mahmoud samaha injection, WAF bypassĪ Deep Dive of CVE-2022–33987 (Got allows a redirect to a UNIX socket)Īppsmith Patches Full-Read SSRF Vulnerabilities Reported by CloudSEK


Tanto Security team Insecure deserialization, Phar deserialization,
