Posts
29 posts 27 Mar 2014 Flipkart.com - Elevation of Privilege 18 Feb 2014 SSRF/XSPA in MailChimp 21 Sep 2013 PayPal CSRF aids in account takeover! 28 Jun 2013 Triggering an unexploitable DOM-based XSS in Rediff Blogs automagically 13 Jun 2013 Pwning Facebook accounts, taking a little help from Quora 06 Jun 2013 Flash-based XSS Mayhem: Most Security Solution Vendors Vulnerable 21 May 2013 Dropbox for Business Mailing List Unsubscribe Users (Permission Issue) 16 May 2013 Dropbox Team Website Open Redirection 04 May 2013 Google Website Translator (Add Editor) CSRF and Google Tasks Clickjacking 12 Mar 2013 File Upload Bug in PayPal's BillMeLater