Back to directory
WRITEUP #1059

The Unexpected “0” Master ID for Account Data Manipulation

IDORBroken Access Control
by@YokoAcc(YoKo Kho)
Bounty
2,500
Program
-
Published
Jun 19, 2023
Added to HackDex
Jun 21, 2023
Read Full Writeuphttp://www.firstsight.me/2023/06/the-unexpected-0-master-id-for-account-data-manipulation/
RELATED WRITEUPS
A Creative Way To Get Someones YouTube Videos Deleted + A Copyright Strike Against Their YouTube Channel
IDORBroken Access Control
Zomatoooo! IDOR in Saved Payments
IDOR
How I got my first $13500 bounty through Parameter Polluting (HPP)
IDORXSS
The Butterfly Effect: Turning Overlooked - Misconfigurations into Zero Click Account Takeover
APIGraphQL
Vestaboard: Exploring Broken Access Controls and Privilege Escalation
Privilege EscalationBroken Access Control

Built with ❤️ by Shubham Rawat