Vulnerabilities: - Numan Rajkotiya
Vulnerabilities: - Numan Rajkotiya
Account Takeover
Missing DKIM/DMARC
Delete Account
X-Webkit-CSP
WiFi SSID+Password Unnecessary Data Collection
Privacy Concerns Content-Security-Policy-Report-Only
Rosetta Flash
OPTIONS
Potentially Unsafe HTTP Method Enabled
Outdated Software Version
TRACE
Using Components with Known
Captcha Bypass
Vulnerabilities Lack of Forward Secrecy
Insecure SSL
OCR (Optical Character Recognition)
Insecure Cipher Suite
Bitsquatting
Token is Not Invalidated After Use
iframe Injection
Lack of Notification Email
GET-Based
Homograph/IDN-Based
Header-Based
Parameter Pollution Social Media Sharing Buttons
Unvalidated Redirects and
Tabnabbing
Forwards
Lack of Security Speed Bump Page Authentication Bypass
Long Timeout
Unauthenticated Action
Password Disclosure
Insecure Direct Object References (IDOR) Broken Access Control (BAC) Critically Sensitive Data
Private API Keys
Exposed Sensitive Android Intent
Referer Weak Password Reset Implementation Password Reset Token Sent Over HTTP
JSON Hijacking
Command Injection
Cross Site Script Inclusion (XSSI)
Privileged User
Insecure OS/Firmware
Hardcoded Password
Non-Privileged User
- Numan Rajkotiya