Posts tagged with #research
-
π On-site and Off-site Search Algorithm Manipulation on LinkedIn
1000 rvfet
Affected Company:LinkedInHow I discovered and responsibly reported an on-site and off-site search poisoning vulnerability that leads to indistinguishable user deception attacks on LinkedIn.
-
CVSS 9.6 Account Takeover in Azerbaijan's Most Visited Platforms
1000 rvfet
Affected Companies:tap.az ,turbo.azHow an OAuth token leakage through Open Redirect enabled complete account takeover on tap.az and turbo.az. A case study on critical vulnerabilities and exemplary vendor response by Digital Classifieds MMC.