Open in app
Home
Notifications
Lists
Stories

Write
Basyouni
Basyouni

Home

About

May 12

Forging OAuth tokens using discovered client id and client secret

Below is a short story about leaked OAuth client id and client secret which I found in the page source that led to generating foreign tokens. Recon: I usually before using any tool or starting the recon process I take a look at the main domain, when I opened the page…

2 min read

Forging OAuth tokens using discovered client id and client secret
Forging OAuth tokens using discovered client id and client secret
Basyouni

Basyouni

Cyber Security Engineer & Penetration Tester | Bug Bounty Hunter

Following
  • InfoSec Write-ups

    InfoSec Write-ups

  • Jefferson Gonzales

    Jefferson Gonzales

  • Asem Eleraky

    Asem Eleraky

  • Ahmed Elsherif

    Ahmed Elsherif

  • Khaled Mohamed

    Khaled Mohamed

Help

Status

Writers

Blog

Careers

Privacy

Terms

About

Knowable