One-Click-ATO
From Useless Open Redirect and Useless SSRF to Full Account Takeover.
Introduction
Vulnerability 1: Whitelisted Open Redirect
Identifying the Issue
https://account.example.com/login?signin=admin&redirect-to=*.example.com

Vulnerability 2: SSRF on a Whitelisted Subdomain
Examining the SSRF Endpoint

Chaining the Vulnerabilities
Crafting the Exploit

Achieving Account Takeover
Mitigation Strategies
Conclusion
Last updated