Open redirects occur when a developer mistrusts attacker- controlled input to redirect to another site, usually via a URL parameter, HTML <meta> refresh tags, or the DOM window location property.

Many websites intentionally redirect users to other sites by placing a destination URL as a parameter…

Hey there,

I am Deepak Patidar and Netowork security engineer with 7 year of experience,

This is my first writeup about “ Account takeover without user interaction”

This vulnerability can be found on password reset page, basically this vulnerability can be based on token generated for password reset which is…

Deep Patidar

Network Security Engineer

Get the Medium app

A button that says 'Download on the App Store', and if clicked it will lead you to the iOS App store
A button that says 'Get it on, Google Play', and if clicked it will lead you to the Google Play store