📕
Blog
Ctrl
K
Copy
✍️
Writeups
Technical Writeups
Reset Password Poisoning Via Host Header Injection Lead to (ATO)
OTP/2FA Bypasses
Lack of Authentication on the OTP Endpoint enables an attacker to brute force the Correct OTP
Previous
Web Vulnerabilities WriteUps
Next
Reset Password Poisoning Via Host Header Injection Lead to (ATO)