BAC

Posts

2FA Bypass and Deactivation Attack in MyTaag

2FA Bypass and Deactivation Attack in MyTaag

This blog post highlights critical vulnerabilities in the MyTaag web application that allows attackers to bypass two-factor authentication (2FA) and deactivate the 2FA mechanism itself. This exploit undermines the security of affected accounts by removing a key layer of protection.

Multiple Vulnerabilities in Feripro

Multiple Vulnerabilities in Feripro

This blog post describes three vulnerabilities in Feripro. These include two Incorrect Access Control vulnerabilities (CVE-2024-41517, CVE-2024-41518) and a Stored Cross-Site Scripting vulnerability (CVE-2024-41519). Feripro is a management software for vacation programs.