token-disclosure

1 article
sort: new top best
clear filter
0 5/10

A researcher chained CSRF token disclosure from an unprotected API endpoint with clickjacking to trick users into hijacking their own CSRF tokens and submitting account modification requests. The attack uses a fake lottery page with a hidden iframe to exfiltrate tokens via manual copy-paste, then automatically submits a form with the stolen token.

Saad Ahmed
medium.com · devanshbatham/Awesome-Bugbounty-Writeups · 22 hours ago · details