authentication-bypass 16
- NoSQL Injection Leads to Treasury Account Takeover | Coined
- Authentication Bypass – Direct Dashboard Access | Pivot HR
- Authentication Bypass via Forged Remember-Me Cookie | Skein
- NoSQL Injection Authentication Bypass | Herbalist Remedies
- SQL Injection & File Upload Abuse – Admin Bypass Leading to RCE | Candy
- Weak Password Reset – Brute Force of 4-Digit Reset Token Leading to Account Takeover | Heartwood Outfitters
- SQL Injection – Authentication Bypass on Employee Portal | Gatekeeper
- NoSQL Injection Authentication Bypass – Admin Panel Access | SnickerDoodle
- JWT alg:none Authentication Bypass to Admin Access | EverGreen
- Predictable Time-Based Auth Token Leading to Authentication Bypass | Sokudo
- SQL Injection – UNION-Based Credential Extraction via Profile API | Ottergram
- SQL Injection – Credential Extraction via UNION Attack | Search Functionality Lab
- Broken Access Control – Admin Access Token Brute Force Leads to Unauthorized Admin Access | Gift List
- SQL Injection – Authentication Bypass & Privilege Escalation | Simple CTF
- Default Credentials – SSH Misconfiguration Leading to Root Access | Secure Command
- Default Credentials – Telnet Misconfiguration Leading to Root Access | Arrow