
Episode 32: The Great Write-up Low-down
Critical Thinking - Bug Bounty Podcast
00:00
The Zero Click Attack with Sandwich Exploiting UUIDs
This chapter discusses the concept of a sandwich attack, which exploits vulnerabilities in password reset endpoints that use UUIDv1 reset tokens. The attackers can analyze the UUIDs used in the process to determine the range of time needed to brute force and gain access to victim's accounts.
Transcript
Play full episode