Open in app
Home
Notifications
Lists
Stories

Write
Filipe Azevedo | filipaze
Filipe Azevedo | filipaze

Home
About

Pinned

How I find my first Stored XSS: 650€

Introduction: Hi everyone! 🎉 My name is Filipe Azevedo, known as filipaze on the internet. This is my first write-up. 😃 How I started: During the COVID-19 pandemic with nothing to do between classes, I ventured into the world of cybersecurity and started doing bug bounties in October last year. So, let’s go to the funny part: I started the…

Info Sec Writeups

2 min read

How I find my first Stored XSS
How I find my first Stored XSS

Jul 27, 2021

Abusing JSON Web Token to steal accounts — 3000$

Hello fellow hackers! 👋 My name is Filipe Azevedo, I am a Cyber Security Researcher from Portugal. I work mainly for Intigriti and Hackerone. Today I’m going to show you a recent finding on a private program. So, let’s go to the vulnerability. What’s JWT? JWTs provide a stateless solution to…

Info Sec Writeups

2 min read

Abusing JSON Web Token to steal accounts — 3000$
Abusing JSON Web Token to steal accounts — 3000$

Jun 18, 2021

CSRF on Password Reset

Hi hackers! 👋 My name is Filipe Azevedo and in this post, I’m going to talk about a CSRF that I recently found on a private program on HackerOne. For obvious reasons let’s call it example.com. What is CSRF? Cross site request forgery (CSRF), is an attack that tricks a…

Info Sec Writeups

2 min read

CSRF on Password Reset
CSRF on Password Reset
Filipe Azevedo | filipaze

Filipe Azevedo | filipaze

Ethical Hacker | Bug Bounty Hunter | CTF Player | https://linktr.ee/filipaze

Following
  • Thexssrat

    Thexssrat

  • Immunefi

    Immunefi

  • Manas Harsh

    Manas Harsh

  • Anton Subbotin (skavans)

    Anton Subbotin (skavans)

  • Amine Aboud

    Amine Aboud

Help

Status

Writers

Blog

Careers

Privacy

Terms

About

Knowable