multi-threading-attack

1 article
sort: new top best
clear filter
0 7/10

A researcher discovered an improper authorization vulnerability combined with a race condition on an e-commerce checkout page that allowed attackers to harvest credit card details by rapidly requesting a checkout URL with Burp Intruder while a victim submitted payment information, causing the server to leak cached form data before redirecting.

Mandeep Jadon Burp Intruder
medium.com · devanshbatham/Awesome-Bugbounty-Writeups · 9 hours ago · details