Bez kategorii, vdp, write-upFrom AngularJS CSTI to credentials theft2024-07-030CommentsHello again This time I will tell you about the easy way of credentials theft. I was doing some recon on some sites. I stumbled upon a…
Bez kategorii, bug bounty, write-upTurning cookie based XSS into account takeover2022-09-060CommentsThe cookie-based XSS One evening I started hunting on the Terrahost Bug Bounty program. I was testing the terrahost.no main domain. There was a functionality…