Month: January 2020

Improper Input Validation | Add Custom Text and URLs In SMS send by Snapchat | Bug Bounty POC

Hey guys so this blog post is about an Issue in Snapchat’s Website, due to Improper Input Validation one can add custom text & urls in SMS send by Snapchat here’s a Short POC of the issue.     HackerOne Report: #420420 A Subdomain on Snapchat’s website https://whatis.snapchat.com/ Gives the basic information about Snapchat, what…


User Account Takeover via Signup Feature | Bug Bounty POC

Hey guys so this blog post is about a User Account Takeover issue that i discover. the bug was an Account Takeover issue that was found in Signup & Switch Accounts feature so here’s the a Short POC of the issue.   While testing i saw that there is a “Switch Accounts” Option in Application…