Research
How We Exploited a Shared Guest Session to Steal Password Reset Tokens — Without Any Authentication
Some of the most dangerous vulnerabilities don't originate from traditional attack vectors — they emerge from subtle architectural decisions in how user sessions are managed. In this write-up, we detail a critical vulnerability our team discovered in a cloud-based employee monitoring platform during a bug bounty engagement,