Kick.com Vulnerability
×
I found a vulnerability in Kick's API that allowed unauthorized changes to the request body.
By carefully analyzing their endpoints, I could send chat messages on behalf of other users.
Kick rewarded me with a bounty (P2 - High priority) for responsibly disclosing the issue.