https://blog.vidocsecurity.com/blog/hacking-swagger-ui-from-xss-to-account-takeovers/
Hacking Swagger-UI - from XSS to account takeovers
We have reported more than 60 instances of this bug across a wide range of bug bounty programs including companies like Paypal, Atlassian, Microsoft, GitLab, Yahoo, ...
blog.vidocsecurity.com
'경로 및 정보' 카테고리의 다른 글
VDI python Package 설치 (0) | 2023.11.08 |
---|---|
Information Disclosure via Misconfigured AWS to AWS Bucket Takeover (0) | 2023.11.06 |
Active Directory 정보 수집 (0) | 2023.10.25 |
Active Directory Pentesting Resources (1) | 2023.10.25 |
Active Directory Attack List (1) | 2023.10.18 |