Day 1⃣2⃣/2⃣0⃣ -- [Broken Access Control Vulnerabilities & Broken Authentication and Session Management]
➡️ Detecting & Exploiting IDOR, Privilege Escalation e.t.c
➡️ Below some of the best Tips & References (Feel Free To Share)🧵🧵👇👇
🧵🧵👇👇
#BugBounty
#bugbountytips
➡️ Detecting & Exploiting IDOR, Privilege Escalation e.t.c
➡️ Below some of the best Tips & References (Feel Free To Share)🧵🧵👇👇
🧵🧵👇👇
#BugBounty
#bugbountytips
0/n
Insecure Direct Object References (IDOR)
@Steiner254/insecure-direct-object-references-idor-16bf0b981b90" target="_blank" rel="noopener" onclick="event.stopPropagation()">medium.com
Insecure Direct Object References (IDOR)
@Steiner254/insecure-direct-object-references-idor-16bf0b981b90" target="_blank" rel="noopener" onclick="event.stopPropagation()">medium.com
7/n
Burp Suite tutorial: IDOR vulnerability automation using Autorize and AutoRepeater (bug bounty)
by @stokfredrik
youtube.com
Burp Suite tutorial: IDOR vulnerability automation using Autorize and AutoRepeater (bug bounty)
by @stokfredrik
youtube.com
8/n
TIP:
TIP:
9/n
TIP:
TIP:
10/n
TIP:
TIP:
11/n
TIP:
TIP:
12/n
TIP:
TIP:
18/n
Failure to invalidate session on logout leads to Account TakeOver
Failure to invalidate session on logout leads to Account TakeOver
n/n
Practice Makes Perfect!
Stay Ethical & Happy Hacking :)
See you here same time tomorrow!
Practice Makes Perfect!
Stay Ethical & Happy Hacking :)
See you here same time tomorrow!
Loading suggestions...