Open in app

Sign In

Write

Sign In

Monish Basaniwal
Monish Basaniwal

112 Followers

Home

About

Dec 31, 2022

Hacking Bigbasket Ethically For Free Groceries

Who doesn’t love free groceries? In this write-up, I will be discussing a cart tampering vulnerability that I discovered in the popular online grocery platform, BigBasket. This vulnerability, if exploited, could have allowed an attacker to manipulate the contents and prices of a user’s shopping cart, potentially leading to financial…

Bug Bounty

3 min read

Hacking Bigbasket Ethically For Free Groceries
Hacking Bigbasket Ethically For Free Groceries
Bug Bounty

3 min read


Aug 27, 2022

The Million Dollar IDOR

“With great power comes great responsibility” Read on to find out how I was able to leverage a simple IDOR + Authorization vulnerability to expose thousands of Visa gift cards on a leading gift card company’s website + Bonus: Found a way to redeem them more than once. Monetary websites…

Bug Bounty

6 min read

The Million Dollar Hack 💰
The Million Dollar Hack 💰
Bug Bounty

6 min read


Apr 26, 2022

Deploying a NetFoundry zero-trust network and connecting your local machine.

I recently got to work with OpenZiti and learned a lot about Zero-trust networks. Today we are going to deploy a NetFoundry network and connect our own laptop with it Steps Sign up for a new NetFoundry Account Here, it’s really quick and easy! Once on the dashboard go ahead and…

Netfoundry

2 min read

Deploying a NetFoundry zero-trust network and connecting your local machine.
Deploying a NetFoundry zero-trust network and connecting your local machine.
Netfoundry

2 min read


Nov 21, 2021

Open Redirect Vulnerability On Zapier: An Accidental Find

Open Redirect Vulnerabilities have been around for a long time now, finding one can either be extremely easy, or at the same time can be extremely difficult to find. Read on to find out how I found an Open Redirect Vulnerability on a popular automation application. Report: Open Redirect Vulnerability …

Cybersecurity

2 min read

Open Redirect Vulnerability On Zapier: An Accidental Find
Open Redirect Vulnerability On Zapier: An Accidental Find
Cybersecurity

2 min read


Aug 22, 2021

Trusting Pre-domain Wildcard as Origin CSRF Attack — Devfolio

Cross Site Request Forgery (CSRF) attacks are the most common vulnerabilities on the web today, naturally they make their way into the OWASP Top 10. But did you know that there are several different ways in which this can be exploited? …

Cybersecurity

3 min read

Trusting Pre-domain Wildcard as Origin CSRF Attack — Devfolio
Trusting Pre-domain Wildcard as Origin CSRF Attack — Devfolio
Cybersecurity

3 min read


Aug 20, 2021

How I found my first Subdomain Takeover vulnerability

About the vulnerability Finding your very first vulnerability as a newbie security researcher can be really intimidating and can easily burn you out especially when you don’t know where to start from. …

Bug Bounty

4 min read

How I found my first Subdomain Takeover vulnerability
How I found my first Subdomain Takeover vulnerability
Bug Bounty

4 min read

Monish Basaniwal

Monish Basaniwal

112 Followers

Developer by day, Hacker by night

Following
  • Orwa Atyat

    Orwa Atyat

  • Prateek Jain

    Prateek Jain

  • Prajit Sindhkar

    Prajit Sindhkar

  • Santosh Kumar Sha (@killmongar1996)

    Santosh Kumar Sha (@killmongar1996)

  • SA If

    SA If

Help

Status

Writers

Blog

Careers

Privacy

Terms

About

Text to speech