Hello, good morning y'all
I've wrote my 1st blog and tried sum up every thing I've understood so far in following topic, in simple way so that non-cyber ppl can also understand chk it out 🤗 and give a feedback.
https://t.co/OmJgU8rrXI
While surfing through a website I noticed that the URL was leaking alot of details,so tried to test it 👀
- also dint supported TLS which can lead to MITM and cred. Theft.
- weak CSRF token.
- also I could change my 2nd acc passwd through the 1st acc , potentially an IDOR vuln
oki, Enough touching grass :'))
>what i've been doing last month?
- staring BB(#bugbounty) with sql injection and BAC vulns.
-been working on web security fundamentals(dont wanna be Skid😭)
-been doing some CTFs(online)
-writing my 2nd blog on really basic yet important topic