synchronization

2 articles
sort: new top best
clear filter
0 6/10

A practical guide to identifying race conditions in web applications using Burp Suite, demonstrating how multiple simultaneous requests can exploit unsynchronized access to shared resources like account balances and vouchers.

Burp Suite Egor Homakov Starbucks
medium.com · devanshbatham/Awesome-Bugbounty-Writeups · 22 hours ago · details
0 7/10

Educational article explaining race condition vulnerabilities in web applications, particularly in financial systems, with real-world examples including the Starbucks gift card exploit where attackers could generate unlimited credit by sending concurrent transfer requests to bypass balance checks.

Egor Homakov Starbucks Vickie Li
medium.com · devanshbatham/Awesome-Bugbounty-Writeups · 22 hours ago · details