API Breach Prevented in Fintech App
How a ₹10 Lakh data breach was stopped by catching an IDOR vulnerability in production.
Read MoreXSS in EdTech Platform
Critical stored XSS in student profiles fixed to prevent data theft and credential stealing.
Read MoreBroken Authentication in SaaS App
Privilege escalation vulnerability allowed unauthorized access — fixed with role-based checks.
Read MoreOAuth Token Bypass
Flawed OAuth flows exposed patient records — fixed with secure token verification.
Read MoreSSRF via Image Upload
SSRF vulnerability let attackers fetch internal URLs — mitigated with strict validations.
Read MoreCSRF in Online Banking
Cross-site request forgery found in fund transfer form — resolved with token validation.
Read MoreIDOR in Finance API
Predictable transaction IDs exposed data — patched to check authorization properly.
Read MoreSQLi in E-Commerce Platform
Critical SQL injection in search query exposed sensitive user orders — blocked with input sanitization.
Read MoreOAuth Token Bypass in Healthcare Portal
A healthcare management platform storing medical records, prescriptions, and reports for a comprehensive API VAPT.
Read More