#1. Checking for "state" parameter for CSRF

#2. Open Redirects can be used to:

<aside> 💡 Google Dork → ”allinurl:%3Dhttp*” to find redirects in any website.

</aside>