hunt 2 Session Hijacking Vulnerability in Password Reset Flow Leading to Cross-Account Access Apr 7, 2025 Exploiting CSRF and OTP Reuse: How Weak Token Management Enables Password Reset Attacks, Leading to ATO Nov 28, 2024