InfoSec Write-ups

A collection of write-ups from the best hackers in the world on topics ranging from bug bounties…

Follow publication

Member-only story

I Pasted a Link, Inspected the HTML, and Facebook Gave Me $1000

--

My article is open to everyone; non-member readers can click this link to read the full text.

Introduction

Imagine this: You’ve joined a private event on Facebook. The guest list is hidden, so there’s no way to know who else is attending. But what if I told you there was a simple trick to uncover it — despite Facebook’s claims of secrecy?

The Hacker Stereotype

When you hear the word “hacker,” what image comes to mind? A hooded figure surrounded by multiple screens, lines of code flashing in the dark?

Now, meet me — just an ordinary programmer, sitting late at night after work, dressed in nothing but underwear, searching not for a security flaw, but for a way to balance my ever-growing belly.

Do I have multiple console screens flashing on my monitor? Nope. Am I running some ultra-advanced Kali Linux version 10,000? Not at all. What I do have is a habit of thinking outside the box — paying attention to details, observing things others overlook. That’s it. And I believe anyone can do the same.

That’s exactly what I did here. I observed.

The Bug: Snooping on a “Hidden” Guest List

--

--

Published in InfoSec Write-ups

A collection of write-ups from the best hackers in the world on topics ranging from bug bounties and CTFs to vulnhub machines, hardware challenges and real life encounters. Subscribe to our weekly newsletter for the coolest infosec updates: https://weekly.infosecwriteups.com/

Written by Vivek PS

I’m a programmer, web security researcher and chess player, focused on innovation, learning, and creating impactful solutions for growth.

Responses (2)

Write a response