Ahmed Ramadan
  • Research
  • Credentials

Research

CVE-2026-44977: Stored XSS to Account Takeover via Feedback File Upload

A stored cross-site scripting vulnerability in Countly's feedback upload where the server trusted a client-supplied MIME type, serving attacker-controlled HTML from the application's origin and enabling full session compromise.

September 25, 2026·5 min read
xssstored-xssaccount-takeovercveopen-sourceweb

Orphaned Accounts to Full Control: An Authentication Logic Flaw

Abusing accounts tied to deactivated organisations to reach a hidden signup endpoint, bypassing an invite-only model to create arbitrary accounts and self-select privileged roles.

September 7, 2025·3 min read
authenticationbusiness-logicoauthpenetration-testingweb

Mass Assignment in Patient Onboarding: One ID Breaks the System

A mass assignment vulnerability in a healthcare onboarding flow where a single unvalidated ID field let an attacker control the primary key sequence and disable patient creation platform-wide.

April 28, 2025·3 min read
mass-assignmentbusiness-logicapipenetration-testingweb

OAuth Session Token Flaw Leading to Full Account Takeover

A flaw in OAuth session token handling that allowed full account takeover with no user interaction.

September 23, 2024·2 min read
oauthauthenticationaccount-takeoverbug-bountyweb

© 2026 Ahmed Ramadan

SecurityRSSGitHub