Open Redirect

A collection of Open Redirect write-ups and report

🟠 Null Byte on Steroids

A null byte, often represented as '\0', is a special character with a value of zero. In programming, it's used to indicate the end of a string or data.

🟠 Leaking Meta FXAuth Token leading to 2 click Account Takeover

Legacy surfaces still exist where attackers can execute JavaScript under controlled paths. One such surface is apps.facebook.com.