recently on the poe website located their admin profiling system source code if anybodys good at dealing with Oauth pen testing ive discovered Active OAuth token endpoint confirmed - /oauth/token is functional
Client credentials system exposed - Need to find valid client_id/secret
Token generation pathway confirmed - Can obtain admin access tokens
Standard OAuth 2.0 implementation - Predictable attack patterns
Admin profiling auth endpoints - Additional authentication layers and again ive disovered the source code to the admin profiling system so i know every admin account available on the path of exile website.... anyways i wanna sell the info because i was just running learning test and fell down a rabbit hole too many projects to bother to try phising them or discovering the passes through brute. anyways if you know anybody who might wanna know that sort of thing let me know.







