When Session Fixation Meets Session Confusion: A Case of Cross-User Control
InfoSec Write-ups - Medium
2025-06-18 14:22:37
收藏
In this post, I’ll share a real-world (very fresh) vulnerability involving improper session management, leading to cross-user session…
目录
最新
- How to Easily Find exposed Secret keys and Tokens in Bug Hunting
- Here’s what I learned after solving 5 Path Traversal Labs.
- Write-up: File path traversal, traversal sequences stripped with superfluous URL-decode
- Data Collection Methods for CTI: How to Collect Data
- VAPT Report on HTTPAPI Services in Windows 10 Healthcare Endpoint
- I Found a Bug in Internal Testing: Stored XSS in KYC Form Address Field
- darkmailr
- Head(er) Games: How I Turned CORS Misconfig into a Full Data Dump