url-encoding-bypass

2 articles
sort: new top best
clear filter
0 6/10

A bug bounty hunter demonstrates a union-based SQL injection attack against a private company's web application, using order-by enumeration to identify 11 vulnerable columns, extracting database version, user, OS details, and dumping table schemas via information_schema queries with encoding bypasses.

Nur A Alam Dipu
medium.com · devanshbatham/Awesome-Bugbounty-Writeups · 4 hours ago · details
0 5/10

Researcher bypassed CSP protection on Google MyAccount by URL-encoding a carriage return character in the origin parameter, enabling clickjacking attacks that could lead to account takeover. Google rewarded the finding with $7,500.

Google myaccount.google.com business.google.com Burp Suite Firefox ESR Firefox Quantum
apapedulimu.click · devanshbatham/Awesome-Bugbounty-Writeups · 4 hours ago · details