Open in app

Sign In

Write

Sign In

Basavaraj Banakar
Basavaraj Banakar

405 Followers

Home

About

Published in InfoSec Write-ups

·Feb 12

SSRF That Allowed Us to Access Whole Infra Web Services and Many More

Hi this is Basavaraj back again with another writeup on SSRF. This Writeup/Report/Bug will collaborated with my dost i.e Lohith Gowda What is SSRF? SSRF stands for Server-Side Request Forgery, which is a type of security vulnerability that allows an attacker to send unauthorized requests from a vulnerable server to…

Hacker

5 min read

SSRF That Allowed Us to Access Whole Infra Web Services and Many More
SSRF That Allowed Us to Access Whole Infra Web Services and Many More
Hacker

5 min read


Feb 7

Google Meet Flaw — Join Any Organisation Call (Not an 0day but still acts as 0day) — Refused by GoogleVRP

Hi everyone Myself Basavaraj Banakar . Without wasting time we will jump in to the matter. Issue Background : Google Meet is a popular video conferencing tool used by many organizations for virtual meetings and online collaboration. However, a recent vulnerability has been discovered by me that allows unauthorized individuals…

Google

3 min read

Google Meet Flaw — Join Any Organisation Call (Not an 0day but still acts as 0day) — Refused by…
Google Meet Flaw — Join Any Organisation Call (Not an 0day but still acts as 0day) — Refused by…
Google

3 min read


Published in InfoSec Write-ups

·Nov 22, 2022

SSRF via DNS Rebinding (CVE-2022–4096)

Hello everyone myself Basavaraj , Today in this writeup I will explain about my 2nd CVE i.e CVE-2022–4096 Let’s get started SSRF using DNS rebinding found in Appsmith . FYI : Appsmith is used to Build, ship, and maintain internal tools. Initially I discovered the 2 SSRF’s in appsmith by…

Ssrf

3 min read

SSRF via DNS Rebinding (CVE-2022–4096)
SSRF via DNS Rebinding (CVE-2022–4096)
Ssrf

3 min read


Dec 3, 2021

SSRF Internal resource accessing & Bypassing Filter (CTF)

Hello Everyone, Hope you are doing well. Myself Basavaraj here are my old blogs or writeups if you wanna check those click here Today I am gonna show how an Server side request forgery vulnerability allows to access internal resources . Before starting I will share some resources which I…

Cybersecurity

3 min read

SSRF Internal resource accessing & Bypassing Filter (CTF)
SSRF Internal resource accessing & Bypassing Filter (CTF)
Cybersecurity

3 min read


Jul 3, 2021

An Unexpected Account Takeover

Hii Everyone, Hope everyone doing well. Myself Basavaraj, I am back again with My 3rd writeup, May be from this writeup you will learn something new or never neglect to check everything on a target. Lets Start, I thought to hack on a public program i.e old(around 3000+ bugs reported)…

Hacking

3 min read

An Unexpected Account Takeover
An Unexpected Account Takeover
Hacking

3 min read


Published in InfoSec Write-ups

·Jun 16, 2021

Story of Google Hall of Fame and Private program bounty worth $$$$

Hello Infosec Community myself Basavaraj, this my 2nd writeup, the first one is about Hacking scammers(click here to read), I seen many people getting hall of fames and bounties from google vrp , I thought why should I give a try and successfully got 4 duplicate(and any beginners reading this…

Hacker

4 min read

Story of Google Hall of Fame and Private program bounty worth $$$$
Story of Google Hall of Fame and Private program bounty worth $$$$
Hacker

4 min read


Dec 9, 2020

How I Hacked Scammers with whole windows server takeover by RDP

Hii InfoSec and non InfoSec Community Welcome To my first article about how i hacked scammers(Who makes fruad things online i.e Ripping of money), scamming online with their fake websites, Myself an BugBounty Hunter and CTF player and Ethical Hacker(Not certified yet)…. As Usual Morning when i wake up i…

Hacker

4 min read

How I Hacked Scammers with whole windows server takeover by RDP
How I Hacked Scammers with whole windows server takeover by RDP
Hacker

4 min read

Basavaraj Banakar

Basavaraj Banakar

405 Followers

Bug Bounty Hunter | Pentester | CTF Player | Cybersecurity Enthuasist https://twitter.com/basu_banakar

Following
  • Santosh Kumar Sha (@killmongar1996)

    Santosh Kumar Sha (@killmongar1996)

  • Lohith Gowda M

    Lohith Gowda M

  • Sujan Shetty

    Sujan Shetty

  • Orwa Atyat

    Orwa Atyat

  • Riddhi Shree

    Riddhi Shree

Help

Status

Writers

Blog

Careers

Privacy

Terms

About

Text to speech