Back to directory
WRITEUP #1037

GraphQL API Hacking!

APIGraphQLIDOR
byMahmuduzzaman Kamol
Program
-
Published
Jun 23, 2023
Added to HackDex
Jun 27, 2023
Read Full Writeuphttps://medium.com/@mahmud0x/graphql-api-hacking-7cf6cd46ce4f
RELATED WRITEUPS
The Butterfly Effect: Turning Overlooked - Misconfigurations into Zero Click Account Takeover
APIGraphQL
Authorization bypass due to cache misconfiguration
APIAuthorization bypass
Zomatoooo! IDOR in Saved Payments
IDOR
How I got my first $13500 bounty through Parameter Polluting (HPP)
IDORXSS
A Creative Way To Get Someones YouTube Videos Deleted + A Copyright Strike Against Their YouTube Channel
IDORBroken Access Control

Built with ❤️ by Shubham Rawat