Found Algolia key in the DOM using my own Chrome extension. It searches the defined keywords in the DOM and JS files. github.com/dirtycoder0124… Exploit the key by following the steps given on hackwithsuryesh.medium.com/algolia-api-ke… #bugbounty #bugbountytips
5
32
240
162
13千
Escalated algolia key misconfiguration to stored xss.
0
0
4
0
463
Congratulations bro, I'm happy for you that my writeup helps you to exploit this.
1
0
3
0
253
Thank you for such a nice and easy to understand writeup. Everything is clear and step by step.
0
0
1
0
125
Wow, that's cool. Add some features from the DotGit plugin to it.
1
0
0
0
32
Lol, a lot of companies told me to fuck off, we don't care, and closed it as info, so I stopped reporting it.
1
0
0
0
96
United States 趨勢
- 1. Luka 96.7K posts
- 2. Dodgers 122K posts
- 3. Blue Jays 81.8K posts
- 4. #WorldSeries 104K posts
- 5. #LakeShow 3,494 posts
- 6. #TheLastDriveIn 4,553 posts
- 7. Mavs 13.4K posts
- 8. Snell 14.4K posts
- 9. Toronto 67.8K posts
- 10. Halo 163K posts
- 11. Marcus Smart 3,546 posts
- 12. #SmackDown 34.2K posts
- 13. Nico Harrison 2,478 posts
- 14. Vando 2,650 posts
- 15. Kyshawn George 4,220 posts
- 16. Addison Barger 18.1K posts
- 17. Blazers 10.8K posts
- 18. #BostonBlue 5,487 posts
- 19. Wizards 10.5K posts
- 20. Naz Reid N/A
Loading...
Something went wrong.
Something went wrong.