Published inInfoSec Write-upsZoho Account Takeover: How a Single Click Can Lead to Full Control over your Zoho accountHello, in this story, I will discuss how I discovered DOM XSS and Postmessage misconfiguration and escalated them to take-over the Zoho…Feb 172Feb 172
Published inInfoSec Write-upsBehind the Message: Two Critical XSS Vulnerabilities in Zoho’s Web ApplicationsPostMessage misconfigurations can create significant security vulnerabilities in webFeb 81Feb 81