sony

1 article
sort: new top best
clear filter
0 5/10

First-time bug bounty hunter discovered XSS vulnerability on a Sony sandbox subdomain (authtry.dev2.sandbox.dev.ppf.sony.net) through subdomain enumeration using crt.sh, assetfinder, and httprobe, then exploited parameter injection on the target's index.php with a classic XSS payload.

Sony ppf.sony.net authtry.dev2.sandbox.dev.ppf.sony.net crt.sh assetfinder httprobe dirsearch Gökhan Güzelkokar
medium.com · devanshbatham/Awesome-Bugbounty-Writeups · 10 hours ago · details