From N/A to Resolved For BackBlaze Android App[Hackerone Platform] Bucket TakeoverHello EveryoneJul 8, 2020Jul 8, 2020
Touch ID Authentication Bypass on Evernote and Dropbox IOS AppsThis blog will walk you through the technique that I used to bypass Touch ID authentication feature implemented on the Login Page in…Apr 3, 20202Apr 3, 20202
Setting Up Gitrob and using it to find Leaking Repository of an Employee in a hackerone private…Hello Everyone,Feb 9, 20191Feb 9, 20191
Bypassing Access Control in a Program on Hackerone !!This blog is about a vulnerability that I found in a program on hackerone i.e. Wakatime.It is a platform for developers and has an active…Dec 30, 2018Dec 30, 2018
Demystifying the working of Tor and Deploying your own Hidden Service.Hey Everyone, this blog will help you in understanding the basics about how to setup your own hidden service on Tor network.Before going…Oct 3, 20181Oct 3, 20181
Developing an Automated Tool{PortWitness} using Bash Scripting for OSINTToday I would like to share my work on how i automate my tasks using bash scripting for Web app pentesting.One month back I saw this tool…Apr 26, 20182Apr 26, 20182
JSON CSRF attack on a Social Networking Site[Hackerone Platform]Before describing the actual attack scenario let us first discuss what is CSRF attack ?Jan 26, 2018Jan 26, 2018
Exploitation of Google Open redirects using BeEF[Browser exploitation framework]One year back when i was hunting for bugs , I got a call from my friend and he told about the multiple open redirection issues he had found…Jan 23, 2018Jan 23, 2018