newfolder
@newfolderj
Muslim Security Student -- NOT from OXFORD | HARVARD | MIT | IIT | IBA | NUST | LUMS | FAST | UET
ID: 916258383887523841
06-10-2017 11:06:36
151 Tweet
1,1K Takipçi
227 Takip Edilen
Quick Account Takeover in a minute: Auth Implementation: After signup ,user change email to unsigned user, session refreshes ,email changed/confirmed to unsigned user. change to [email protected] =>user exists change to "[email protected]<SPACE>" or %20 =>200 ok victim id got 2 passwords