You like that, huh?

Would you like some help on this one?

  • CVSS 9.6 Account Takeover in Azerbaijan's Most Visited Platforms

    CVSS 9.6 Account Takeover in Azerbaijan's Most Visited Platforms
    1000 rvfet

    How an OAuth token leakage through Open Redirect enabled complete account takeover on tap.az and turbo.az. A case study on critical vulnerabilities and exemplary vendor response by Digital Classifieds MMC.

    Full Write-up