ReconDock By Kdairatchi
Go To ReconDock
MyRepo
MyRepo
  • Pastebin Services
  • Awesome Ai Talk
  • Bug Bounty Testing, Techniques, and Tools
  • Cybersources
  • Targets
  • Bug checklist
  • Bug Bounty Platforms
  • Awesome Bug Bounty Tips Awesome
    • CVE Exploits and PoC Collection
  • ============ Awesome Bugs
    • Awesome One-liner Bug Bounty
  • Awesome CS Courses
  • Awesome Cyber Co
  • Awesome Dev
  • Awesome Free Certs
  • Awesome Git
  • Awesome Github
  • Awesome Go
  • Awesome Interviews
  • Awesome Keys
  • Awesome Mac OpenSource
  • Awesome Mac
  • Awesome Python
    • Awesome Tool
  • Awesome-Selfhosted
    • Awesome Hacker Search Engines
  • Awesome Shell
  • Awesome Shodan Search Queries
  • Awesome Static Website Services Awesome
  • Awesome Vulnerable Applications
  • Awesome WAF
  • Awesome First PR Opportunities
  • Awesome-Bugbounty-Writeups
  • Awesome-web3-Security awesome
  • Bug-Bounty
  • CTF Tools
  • Awesome Blockchain Bug Bounty
  • Awesome Bug Bounty
  • awesome-design-systems
  • Awesome Google VRP Writeups
  • Web Scraping
  • awesome
  • bug-bounty-reference
  • the-book-of-secret-knowledge
  • APACHE
  • AWS
  • AZURE
  • CISCO
  • CLOUDFLARE
  • Cross Origin Resource Sharing (CORS)
  • CRLF Injection || HTTP Response Splitting
  • CSV Injection
  • Content Injection
  • CRLF Injection || HTTP Response Splitting
  • JENKINS
  • JIRA
  • LFI
  • OR
  • PostgreSQL Environment Variable Manipulation Vulnerability
  • RCE
  • Recon
  • SSRF
  • Proof OF Concept (POC): SharePoint Vulnerability Detection
  • Template Injection
  • WORDPRESS
  • XSLT Injection
  • XSS
  • XXE
  • Books
  • Firebase Subdomain Enumeration & PoC Testing
  • SQLI
  • Special Tools
  • Account Takeover
  • Authentication
  • Broken Link Hijacking
  • Business Logic Errors
  • Default Credentials
  • Email Spoofing
  • ExposedAPIkeys
  • ForgotPasswordFunctionality
  • JWT Vulnerabilities
  • OWASPTestingChecklist1
  • Tabnabbing
  • Web Cache Poisoning
  • Wordpress Endpoints to look
  • lfi_vulnerble_targets
  • (LFI)passwrd
  • LostSec
  • POCS
    • CVES
      • CVE-2021-36873
      • BreadcrumbsSQL_Injection_cve_2024
      • CVE-2024-0195
      • CVE-2024-29269 Exploit
  • 403-ByPass
  • Chat-bot_xss_payloads
  • burp
    • Match & Replace
    • Zap
  • cloudflare-waf-bypass
  • infosec
    • Customize the bash shell environments
    • automation
    • Website Ideas
  • 2FA bypass
  • Account Takeover
  • OWASP Web Application Security Testing Checklist
  • Projects
  • OWASP Top Ten
  • links
  • Bug Bounty Builder ¯\(ツ)/¯
  • Awesome
    • AllAboutBugBounty: All about bug bounty (bypasses, payloads, and etc)
  • Cheatsheets
  • Checklists
    • Here’s a clear, step by step breakdown of commands, tools, and objectives for each section in your Web Security Testing Guide (WSTG). Each test includes easy to follow commands, explanations, and examples where applicable.
  • Dorks
  • Scripts
  • Loads
  • OWASP
    • Checklist
  • ai
    • Ai Best for Information and Coding
  • Medium Recent Writeups
  • 🌟 Useful Extensions for Bug Bounty Hunting 🌟
  • Customize the bash shell environments
  • Fabric
    • Test Application Platform Configuration
  • Docker
  • Git auto
  • Bug Bounty Beginner's Roadmap
  • Methodology 2025
    • Advanced Recon Methodology
Powered by GitBook
On this page
  • The Bugs
  • Other Kind-of-Similar Lists
  • Contributing

============ Awesome Bugs

This repository contains a collection of "awesome", funny, obscure or unfortunate bugs in our software or hardware.

Some day it may become a talk. Or perhaps a blarg post.

The Bugs

  • Open Office Won't Print on Tuesdays <https://bugs.launchpad.net/ubuntu/+source/cupsys/+bug/255161>_

  • We Can't Send Email Farther Than 500 Miles <http://www.ibiblio.org/harris/500milemail.html>_

  • Print This File, Your Printer Will Jam <https://nedbatchelder.com/blog/200811/print_this_file_your_printer_will_jam.html>_

  • Pokemon Sword and Shield are Crashing Roku Devices <https://gamerant.com/pokemon-sword-shield-roku-device-crash/>_

  • I Can't Install Python Packages In Portugal. Disable IPv6 to Fix <https://github.com/pypa/pip/issues/5374>_

  • GitHub Satanically Messing With Markdown - Changes 666 to DCLXVI <https://stackoverflow.com/questions/44619165/github-satanically-messing-with-markdown-changes-666-to-dclxvi?rq=1>_

  • The Infinite Loop That Wasnt <https://mgba.io/2020/01/25/infinite-loop-holy-grail/>_

  • Ocarina of Time, any% -- all of it

  • MacBook Pro Runs Hot When Charged On the Right Side and Not Left <https://apple.stackexchange.com/questions/363337/how-to-find-cause-of-high-kernel-task-cpu-usage/363933#363933>_

  • Python 2 Can't Compile Bytecode Past 2038 <https://bugs.python.org/issue34990>_ (The Year 2038 Problem <https://en.wikipedia.org/wiki/Year_2038_problem>_)

  • IRS Site Only Delivers Stimulus Status When COERCED <https://www.latimes.com/business/story/2020-04-27/irs-website-hack-coronavirus-stimulus-checks-all-caps>_

  • Reboot Your Boeing 787 Every 248 Days <https://ioactive.com/reverse-engineers-perspective-on-the-boeing-787-51-days-airworthiness-directive/>_ (and maybe reboot your Windows 98 <https://web.archive.org/web/20060623143454/http://support.microsoft.com/default.aspx?scid=KB;EN-US;Q216641&>_ too).

  • Tay, The Racist AI Bot <https://en.wikipedia.org/wiki/Tay_(bot)>_

  • Nuclear Gandhi <https://medium.com/4thought-studios/gandhi-and-the-nuclear-option-32c8fa251280>_

  • pytest Hangs Forever Every 50th or 150th or ...th Run <http://skybert.net/python/python-pytest-hangs-forever/>_

  • How I Cut GTA Online Loading Times by 70% <https://nee.lv/2021/02/28/How-I-cut-GTA-Online-loading-times-by-70/>_

  • The Racist Soap Dispenser <https://twitter.com/nke_ise/status/897756900753891328?ref_src=twsrc%5Etfw>_

  • The Zune Bug on 2008-12-31 <http://bit-player.org/2009/the-zune-bug>_

  • The Commodore 64 locked up if the cursor was red but not if it was purple, so make sure you use the right color before starting to program <https://retrocomputing.stackexchange.com/questions/20438/how-did-the-c64-lockup-bug-and-its-workarounds-work>_

  • A Haskell Compiler, Albeit a Dev Version, Really Really Wants Your Code to Type Check <https://gitlab.haskell.org/ghc/ghc/-/issues/163>_

  • Dwarf Fortress kills cats <https://www.youtube.com/watch?v=6yWf6BHqiWM>_ (creator interview here <https://www.youtube.com/watch?v=VAhHkJQ3KgY>_)

  • A strangely long second on 1927-12-31 in Shanghai <https://stackoverflow.com/questions/6841333/why-is-subtracting-these-two-times-in-1927-giving-a-strange-result/>_

  • Using OCR to Fix a Hilarious Bug <https://artsy.github.io/blog/2015/11/05/Using-OCR-To-Fix-A-Hilarious-Bug/>_

  • Seattle Mazda drivers can't change the radio dial <https://www.kuow.org/stories/we-didn-t-mean-to-ruin-your-mazda-s-stereo>_

  • All you need for Russell's paradox is a big enough universe <https://github.com/agda/agda/issues/5706>_

  • Janet Jackson had the power to crash laptop computers <https://devblogs.microsoft.com/oldnewthing/20220816-00/?p=106994>_ (with a CVE <https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-38392>, an Adam Neely video <https://www.youtube.com/watch?v=-y3RGeaxksY> and a follow-up by 99% Invisible <https://99percentinvisible.org/episode/mini-stories-volume-15/3/>_)

  • One pixel to make a bus look like a bear? <https://arxiv.org/abs/1710.08864>_

  • Pentium FDIV Bug <https://en.wikipedia.org/wiki/Pentium_FDIV_bug>_

  • Debugging an evil Go runtime bug with an heat gun <https://marcan.st/2017/12/debugging-an-evil-go-runtime-bug/>_

  • print(“lol”) doubled the speed of my Go function <https://medium.com/@ludirehak/printing-lol-doubled-the-speed-of-my-go-code-e32e02fc3f92>_

  • Reptar in your CPU <https://lock.cmpxchg8b.com/reptar.html>_

  • Gusto's Weirdest Bug <https://engineering.gusto.com/the-weirdest-bug-ive-seen-yet/>_

  • I broke IKEA <https://cohost.org/sirocyl/post/2891449-i-broke-ikea>_

  • Why does man print "gimme gimme gimme" at 00:30? <https://unix.stackexchange.com/questions/405783/why-does-man-print-gimme-gimme-gimme-at-0030>_

Other Kind-of-Similar Lists

  • Dan Luu's Debugging Stories <https://github.com/danluu/debugging-stories>_

  • umutphp's Famous Bugs <https://github.com/umutphp/famous-bugs>_

  • Wikipedia's List of Software Bugs <https://en.wikipedia.org/wiki/List_of_software_bugs>_

  • Russell Davidson's Specification Gaming Examples in AI <https://docs.google.com/spreadsheets/u/2/d/e/2PACX-1vRPiprOaC3HsCf5Tuum8bRfzYUiKLRqJmbOoC-32JorNdfyTiRRsR7Ea5eWtvsWzuxo8bjOxCG84dAg/pubhtml>_

  • Adversarial Machine Learning <https://en.wikipedia.org/wiki/Adversarial_machine_learning>_

Contributing

If you know of a bug that should be on this list, please do send a pull request!

My bias in the list is towards bugs that are more "how is that even possible" kinds of bugs than pure "face-palming" bugs, though sometimes the line between the two is blurry. But e.g., the Gemini 5 spacecraft crashed because it had the wrong value for an important constant used to fly it -- a terrible and critical bug, but not one for the list above.

The bias is also towards technical detail, so bug reports over storytelling. If there are both available for a particular bug, definitely include the bug report and diagnosis.

But any bug so interesting it's questionable for inclusion is worth considering!

PreviousCVE Exploits and PoC CollectionNextAwesome One-liner Bug Bounty

Last updated 4 months ago