Open in app

Sign in

Medium Logo
Write

Sign in

bombon
bombon
he

4.3K followers

Home

About

Let’s Talk About Encryption And IDORs(Yes, IDOR,s Again)— @bxmbn

Imagine a system designed to protect sensitive user data — like insurance policies — only to have a single misstep turn it into an open…

Feb 23
4
Let’s Talk About Encryption And IDORs(Yes, IDOR,s Again)— @bxmbn
Let’s Talk About Encryption And IDORs(Yes, IDOR,s Again)— @bxmbn
Feb 23
4

Hijacking Sessions with IDOR and XSS— @bxmbn

Picture a platform designed to handle sensitive documentation — think insurance claims or identity verification — turning into a goldmine…

Feb 23
7
Hijacking Sessions with IDOR and XSS— @bxmbn
Hijacking Sessions with IDOR and XSS— @bxmbn
Feb 23
7

Bank offer IDOR Fix Bypassed: How I Accessed Unauthorized Offers and Secured a $10,000 Bounty —…

Feb 23
4
Bank offer IDOR Fix Bypassed: How I Accessed Unauthorized Offers and Secured a $10,000 Bounty —…
Bank offer IDOR Fix Bypassed: How I Accessed Unauthorized Offers and Secured a $10,000 Bounty —…
Feb 23
4

I received a Bank offer in my mailbox and discovered an IDOR vulnerability - $5,000 bounty - @bxmbn

In October 2023, I opened a bank account with the hope of uncovering any vulnerabilities. I had tested this bank program before, however I…

Jan 5, 2024
9
I received a Bank offer in my mailbox and discovered an IDOR vulnerability - $5,000 bounty - @bxmbn
I received a Bank offer in my mailbox and discovered an IDOR vulnerability - $5,000 bounty - @bxmbn
Jan 5, 2024
9

How I Prevented a Mass Data Breach - $15,000 bounty - @bxmbn

In July 2023, I received an invite of a significant bug bounty program, with massive assets in-scope, my approach mirrored what I typically

Jan 5, 2024
12
How I Prevented a Mass Data Breach - $15,000 bounty - @bxmbn
How I Prevented a Mass Data Breach - $15,000 bounty - @bxmbn
Jan 5, 2024
12

Cache Deception Allows Cache Poisoning

@bxmbn

Dec 1, 2022
1
Cache Deception Allows Cache Poisoning
Cache Deception Allows Cache Poisoning
Dec 1, 2022
1

Ultimate Tips And Tricks To Find More Cross-Site Scripting Vulnerabilities

@bxmbn

Jul 21, 2022
7
Ultimate Tips And Tricks To Find More Cross-Site Scripting Vulnerabilities
Ultimate Tips And Tricks To Find More Cross-Site Scripting Vulnerabilities
Jul 21, 2022
7

How I Test For Web Cache Vulnerabilities + Tips And Tricks

@bxmbn

Jul 21, 2022
18
How I Test For Web Cache Vulnerabilities + Tips And Tricks
How I Test For Web Cache Vulnerabilities + Tips And Tricks
Jul 21, 2022
18
InfoSec Write-ups

Published in

InfoSec Write-ups

How I Made +$16,500 Hacking CDN Caching Servers — Part 3

@bxmbn

Jan 29, 2022
3
How I Made +$16,500 Hacking CDN Caching Servers — Part 3
How I Made +$16,500 Hacking CDN Caching Servers — Part 3
Jan 29, 2022
3
InfoSec Write-ups

Published in

InfoSec Write-ups

How I Made +$16,500 Hacking CDN Caching Servers — Part 2

@bxmbn

Jan 29, 2022
3
How I Made +$16,500 Hacking CDN Caching Servers — Part 2
How I Made +$16,500 Hacking CDN Caching Servers — Part 2
Jan 29, 2022
3
bombon

bombon

he
4.3K followers

Help

Status

About

Careers

Press

Blog

Privacy

Rules

Terms

Text to speech