security-testing

2 articles
Sort: New Top Best
clear filter
0

Redcentric offers comprehensive penetration testing services including infrastructure, application, mobile, and social engineering assessments to identify and remediate security vulnerabilities before exploitation. Their approach combines manual testing techniques with business logic analysis to provide actionable security insights and regulatory compliance support.

Redcentric
7elements.co.uk · devanshbatham/Awesome-Bugbounty-Writeups · 4 hours ago · details
0
vulnerability

Site-wide CSRF vulnerability discovered on Messenger.com where CSRF token (fb_dtsg) validation was completely missing on multiple endpoints, allowing attackers to perform unauthorized actions like changing settings and removing users from group threads. The vulnerability affected all POST requests regardless of whether the token was modified, removed, or omitted entirely.

messenger.com Facebook @phwd @mazen160 fb_dtsg XMessengerDotComSettingsEditController
whitton.io · devanshbatham/Awesome-Bugbounty-Writeups · 4 hours ago · details