

DONE ✅
- https://blog.carnal0wnage.com/2019/01/i-found-gcp-service-account-tokennow.html GCP
- https://blog.carnal0wnage.com/2020/03/what-is-your-gcp-infra-worthabout-700.html GCP
- https://blog.assetnote.io/bug-bounty/2019/04/23/getting-access-zendesk-gcp/ GCP
- https://aaronesau.com/blog/posts/5 Debug
- https://addictivehackers.blogspot.com/2019/08/from-github-recon-to-account-takeover.html ATO
- https://medium.com/@pratiky054/graphql-bug-to-steal-anyones-address-fc34f0374417 GraphQl
- https://blog.usejournal.com/how-recon-helped-samsung-protect-their-production-repositories-of-samsungtv-ecommerce-estores-4c51d6ec4fdd IMPORTANT
- https://web.archive.org/web/20191204223739/https://daleys.space/writeup/0day/2019/09/09/verizon-leak.html
- https://blog.evanricafort.com/2019/07/business-logic-plex-tv.html
- https://flex0geek.blogspot.com/2019/10/leak-can-i-take-user-information-please.html
- https://hackernoon.com/how-i-could-have-hacked-all-uber-accounts-rtzl3z72
- https://medium.com/@D0rkerDevil/how-i-found-credential-enriched-redis-dump-2b9e808024c4
- https://medium.com/@Skylinearafat/how-to-look-for-js-files-vulnerability-for-fun-and-profit-78bfdfbd6731
- https://medium.com/@cc1h2e1/unauthorized-access-to-all-user-information-leaks-5db95746aecf
- https://medium.com/@harrmahar/how-i-get-my-first-p1-sensitive-information-disclosure-using-wpscan-c2fba00ac361
- https://hbothra22.medium.com/recon-to-sensitive-information-disclosure-in-minutes-503fc7ccdf0b
NOT DONE ❌