1. CVE-2026-61967 — miniOrange OTP Verification Ultimate Member Password Reset Authentication Bypass research | 2026-08-15 00:00 | CVE-2026-61967 | aretiq.ai | original ↗ | #ai-security | #authentication-bypass | #wordpress
2. CVE-2026-8206 — Themeum Kirki WordPress Plugin Password Reset Email Redirect Privilege Escalation research | 2026-06-02 00:00 | CVE-2026-8206 | aretiq.ai | original ↗ | #appsec | #vulnerability-research | #account-takeover
3. Bypassing Windows Login Without Password research | 2025-09-12 05:55 | projectblack.io | original ↗ | #pentesting | #privilege-escalation | #windows
4. Access Control vs Account Takeover: What Bug Bounty Hunters Need to Know blog | 2025-07-03 12:00 | bugcrowd.com | original ↗ | #bug-bounty | #access-control | #account-takeover
5. Bugcrowd Security Update: Password Reset and MFA Requirement blog | 2025-04-08 02:47 | bugcrowd.com | original ↗ | #bug-bounty | #threat-intelligence | #bugcrowd
6. Hacking Unicode Like a Boss vulnerability | 2020-02-28 00:00 | bugcrowd.com | original ↗ | #github | #guest-post | #password-reset
7. Permanent account takeover on Yahoo's Small Business platform blog | 2017-06-25 00:00 | samcurry.net | original ↗ | #bug-bounty | #account-takeover | #authentication