You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
I got a lot of bountys on hackerone (https://hackerone.com/arthuraires), I would like to share a case that might be a future implementation.
X8 noticed that a parameter modified the page's response, in case the parameter was reflected in uppercase, it didn't put it as reflected only as responsible for changing the number of items on the page.
So adding an add comparison with the uppercase string can increase the detection rate.
Thanks for listening!
The text was updated successfully, but these errors were encountered:
gHello, first thank you very much for your tool.
I got a lot of bountys on hackerone (https://hackerone.com/arthuraires), I would like to share a case that might be a future implementation.
X8 noticed that a parameter modified the page's response, in case the parameter was reflected in uppercase, it didn't put it as reflected only as responsible for changing the number of items on the page.
So adding an add comparison with the uppercase string can increase the detection rate.
Thanks for listening!
The text was updated successfully, but these errors were encountered: