Open in app

Sign In

Write

Sign In

Neil Mark Ochea
Neil Mark Ochea

75 Followers

Home

About

Pinned

Xiaomi Execute Arbitrary JavaScript

In this writeup, I’ll tell you how I was able to Execute Arbitrary JavaScript in Xiaomi Browser using HTML Injection. Description Due to lack of HTML Sanitization, It’s possible to Inject Malicious Iframe tag in Readmode and Execute Arbitrary JavaScript code. I look the Browser file:///android_asset/readmode/Readability.js source code the HTML and…

Bug Bounty

2 min read

Xiaomi Execute Arbitrary JavaScript
Xiaomi Execute Arbitrary JavaScript
Bug Bounty

2 min read


Oct 10, 2022

Gcash Vulnerability Walkthrough

Advisory: Update your Gcash App now to the latest version. Disclaimer: The purpose of this research is to improve and strengthen security all issues discovered in this research are reported to the security team. The researcher is not affiliated with any hacking groups. The researcher didn’t include the sensitive data…

Vulnerability

6 min read

Gcash Vulnerability Walkthrough
Gcash Vulnerability Walkthrough
Vulnerability

6 min read


Oct 4, 2022

ML Wallet Vulnerability

Disclaimer: The purpose of this research is to improve and strengthen security all issues discovered in this research are reported to the security team. The researcher is not affiliated with any hacking groups. The researcher didn’t include the sensitive data in this write-up to reduce expose to the vulnerability. …

Vulnerability

2 min read

ML Wallet Vulnerability
ML Wallet Vulnerability
Vulnerability

2 min read


Sep 25, 2022

Shopping App Deeplink Arbitrary URLs

In this write-up, I’ll tell you how I was able to launch Arbitrary URLs to the internal web of the shopping application. Description Due to the lack of URLs Sanitization that passes through activities, It’s possible to launch Arbitrary URLs to the internal web of the shopping application using a crafted…

Bug Bounty

2 min read

Shopping App Deeplink Arbitrary URLs
Shopping App Deeplink Arbitrary URLs
Bug Bounty

2 min read


Sep 23, 2022

Arbitrary File Corruption: End - to - End Encrypted Messaging Application

In this write-up, I’ll tell you how I was able to Exfiltrate Database and Sandbox Files on End-to-End Encrypted Messaging Application. Description End-to-End Messaging application there are several places where the application use URI returned from a GET_CONTENT, PICK, etc. intent. Due to the lack of URI returned sanitizing an attacker/malicious…

Bug Bounty

3 min read

Arbitrary File Corruption: End - to - End Encrypted Messaging Application
Arbitrary File Corruption: End - to - End Encrypted Messaging Application
Bug Bounty

3 min read


Sep 12, 2022

PLMUN STUDENT PORTAL HACKED

Disclaimer: The purpose of this research is to improve and strengthen security all issues discovered in this research are reported to the security team. The researcher is not affiliated with any hacking groups. The researcher didn’t include the sensitive data in this write-up to reduce exposure to the vulnerability. …

Security

4 min read

PLMUN STUDENT PORTAL HACKED
PLMUN STUDENT PORTAL HACKED
Security

4 min read


Sep 8, 2022

StaySafe Philippines Contact Tracing Platform Vulnerability

Disclaimer: The purpose of this research is to improve and strengthen security all issues discovered in this research are reported to the security team. The researcher is not affiliated with any hacking groups. The researcher didn’t include the sensitive data in this write-up to reduce exposure to the vulnerability. …

Contact Tracing

4 min read

StaySafe Philippines Contact Tracing Platform Vulnerability
StaySafe Philippines Contact Tracing Platform Vulnerability
Contact Tracing

4 min read


Dec 8, 2020

Facebook Leak Referrer Data

While finding a facebook vulnerability I visited this interesting link with a back uri parameter endpoint So I view the source code and read it. After reading it i found out the url endpoint in the source code does not passing by linkshim, so by adding

Bug Bounty

2 min read

Facebook Leak Referrer Data
Facebook Leak Referrer Data
Bug Bounty

2 min read


Published in InfoSec Write-ups

·Dec 7, 2020

Facebook Push Notification Linkshim Bypassed

While browsing and finding facebook vulnerability I accidentally found this facebook push notification link when I visited the facebook link something strange the whole facebook page has blank, there’s nothing here hmm so I view the source code and read it to analyze Snippet JavaScript Code

Bug Bounty

3 min read

Facebook Push Notification Linkshim Bypassed
Facebook Push Notification Linkshim Bypassed
Bug Bounty

3 min read


Dec 5, 2020

Opera Browser Cross Site Scripting (XSS)

While using opera browser for android I noticed something strange the address bar in opera browser replaced by the reader mode and the web title added. I know that I can trigger the xss in reader mode but i dont know where so this my conclusion visit the website with…

Bug Bounty

3 min read

Opera Browser Cross Site Scripting (XSS)
Opera Browser Cross Site Scripting (XSS)
Bug Bounty

3 min read

Neil Mark Ochea

Neil Mark Ochea

75 Followers

_/G0T SECURITY?

Following
  • Sayed Abdelhafiz

    Sayed Abdelhafiz

  • Akshansh JaisWal

    Akshansh JaisWal

  • Pedro Oliveira

    Pedro Oliveira

Help

Status

Writers

Blog

Careers

Privacy

Terms

About

Text to speech