Writeups
-
Easy
2FA broken logic
broken 2fa logic where the second stage trusts a client supplied verify parameter to choose the account, abused to generate a victim code then brute force the four digit value and land in their session
Authentication 1 min -
Easy
Username enumeration via account lock
username enumeration through account lockout where only real accounts can be locked, surfaced with a cluster bomb attack
Authentication 3 min -
Medium
Broken brute-force protection, IP block
broken brute force protection where a successful login resets the failed attempt counter, defeated with a pitchfork attack that interleaves wiener:peter logins between carlos password guesses to keep the ip block from ever firing
Authentication 3 min -
Easy
Username enumeration via response timing
username enumeration through response timing where a valid account takes longer to hash a long password, read with a pitchfork intruder attack that spoofs X-Forwarded-For to defeat the ip based rate limit
Authentication 3 min -
Easy
Username enumeration via subtly different responses
username enumeration where valid accounts return a near identical error missing a single full stop
Authentication 3 min
Nothing matched that.
No writeups here yet. Try a broader tag, or clear the filter to see everything.
Clear filters