rashahacks

How I Got Multiple Privilege Escalations - The Easy Trick?

Hello hackers! Today, I'll describe a way through which I got multiple privilege escalations. Background: It's a vast application with tenants and user roles. For testing basic privilege escalations first, I created two accounts: admin user and least privilege user. Least privilege user is the user

Bypassing Okta SSO=> HTTPS/HTTP

Summary: When doing recon on Yahoo assets during Hackerone AWC 2023, I found a host foo.bar.yahoo.com. I thought it must be some internal tool for engineers, few pages are listed but clicking on any of the pages redirects to Okta SSO. I found a bug during black

Pwning Admin Panel To Change Movie Ticket Prices at Disney

Summary This bug allowed me to access a Management Information System Portal by bruteforcing common passwords. The admin panel allows changing theatre names, theatre status, changing ticket prices, user management, viewing system logs, etc. in South Asian countries. Reproduction Steps 1. Find all the ASNs owned by The Walt Disney

How do I approach exploiting access control bugs?

Hi, I am Inderjeet Singh, a student in the morning and a bug bounty hunter in night. Today I will write about access control issues and why or why shouldn't you use Autorize or some automated extension to hunt for this bug. Access Control Vulnerabilities Let's

Exposing Users Table From a Leaky GraphQL Query

Hello Hackers, I am Inderjeet Singh aka encodedguy on HackerOne. In this blog post, I will give a walkthrough of my recent finding in which I got the data from the users table. Background 0x01: Before starting the attack, let's first understand the background of the application. For

rashahacks © 2026