Sept. 18, 2023, 4:55 a.m. | whit3ros3

InfoSec Write-ups - Medium infosecwriteups.com

Finally, the day arrived when I could share my own findings, rather than just reading other researchers’ findings (which I truly love to do, as they are a significant source of my motivation). Without further ado, let’s dive into the journey of my first bug discovery. In short, it’s an API misconfiguration bug where I found an API key with potentially dangerous permissions in the request.

Allow me to introduce you to our target with a cliché statement: let’s call …

bug bounty bug-bounty-tips bug-bounty-writeup ethical hacking hackerone

CyberSOC Technical Lead

@ Integrity360 | Sandyford, Dublin, Ireland

Cyber Security Strategy Consultant

@ Capco | New York City

Cyber Security Senior Consultant

@ Capco | Chicago, IL

Risk and compliance specialist

@ ZainCash | Baghdad, Baghdad Governorate, Iraq

Information Security Compliance Analyst

@ Evelyn Partners | Liverpool, United Kingdom

Director of Security Engineering

@ Kasada | Melbourne