Class Central is learner-supported. When you buy through links on our site, we may earn an affiliate commission.

YouTube

Referral Beware - Your Rewards Are Mine

DEFCONConference via YouTube

Overview

Coursera Spring Sale
40% Off Coursera Plus Annual!
Grab it
Explore the hidden security vulnerabilities lurking within referral rewards programs through this 25-minute DEF CON 33 conference talk by cybersecurity researcher Whit Taylor. Discover how seemingly mundane referral functionality, often overlooked by bug bounty hunters, actually harbors a treasure trove of critical security flaws. Learn about the comprehensive research methodology used to analyze referral program implementations across dozens of major platforms, uncovering business logic vulnerabilities, race conditions, and sophisticated client-side attack vectors. Examine real-world examples of cookie injection and client-side path traversal vulnerabilities that can be chained together for maximum impact. Understand how these overlooked attack surfaces led to successful bug discoveries across multiple high-profile bug bounty programs, transforming what many consider boring functionality into lucrative security research opportunities. Gain practical insights into identifying and exploiting referral program weaknesses that could significantly enhance your bug hunting methodology and help you find vulnerabilities that others miss.

Syllabus

DEF CON 33 - Referral Beware, Your Rewards Are Mine - Whit @un1tycyb3r Taylor

Taught by

DEFCONConference

Reviews

Start your review of Referral Beware - Your Rewards Are Mine

Never Stop Learning.

Get personalized course recommendations, track subjects and courses with reminders, and more.

Someone learning on their laptop while sitting on the floor.