pichik


Rank #28 Level 5



100
unique bugs discovered

84
reports accepted
100 Accuracy

Vulnerability Types Found

Bug Submissions & total bug count


Hackevent (FirstBlood) Activity

Report Title Event ID Severity Vulnerability Type
Editing other users appointments with IDOR FirstBlood v1 High Insecure direct object reference
IDOR in aptid which grants access to every appointment FirstBlood v1 High Insecure direct object reference
Info leak on reddit leads to create acc with admin privileges FirstBlood v1 High Authorisation Issue
Reflected XSS on register page FirstBlood v1 Medium Reflective XSS