parameter-discovery

4 articles
sort: new top best
clear filter
0 5/10

A researcher discovered a SQL injection vulnerability in a trading company's reporting download endpoint via a hidden 'status' parameter that was discovered using parameter mining tools, exploitable through time-based blind SQL injection.

Rutvik Hajare OWASP sqlmap Burp Suite
hajarerutik9.medium.com · kh4sh3i/bug-bounty-writeups · 17 hours ago · details
0 6/10

Writeup of three bugs submitted to Google VRP: a reflected XSS in artsexperiments.withgoogle.com discovered via ParamSpider and kxss automation, and two IDORs in AppSheet endpoints where access control could be bypassed—one requiring a specific version parameter to exploit. The author details the discovery process, initial rejections, and eventual acceptance with $500 bounties awarded.

Google VRP AppSheet ParamSpider kxss artsexperiments.withgoogle.com appsheet.com Sudhanshu Rajbhar
infosecwriteups.com · kh4sh3i/bug-bounty-writeups · 17 hours ago · details
0 5/10

Researcher discovered full account takeover vulnerability by chaining a missing CSRF token validation on the password change endpoint with a hidden 'uid' parameter discovered via Param Miner, allowing password changes for any user without authentication, resulting in a $1000 bounty.

Mohsin Khan Param Miner Burp Suite James Kettle
mokhansec.medium.com · kh4sh3i/bug-bounty-writeups · 17 hours ago · details
0 6/10

A bug bounty hunter discovered a union-based SQL injection vulnerability in a private company's web application by identifying vulnerable parameters and methodically determining the number of columns (11) before extracting database version, user information, table schemas, and column names using UNION SELECT queries and information_schema enumeration.

Nur A Alam Dipu
medium.com · devanshbatham/Awesome-Bugbounty-Writeups · 17 hours ago · details