Back to directory
WRITEUP #1571

IDOR Leads to MASS Account Takeover

IDORAccount takeover
byYaseen Zubair
Program
-
Published
Feb 12, 2023
Added to HackDex
Feb 13, 2023
Read Full Writeuphttps://yaseenzubair.medium.com/idor-leads-to-mass-account-takeover-7548a03f5672
RELATED WRITEUPS
The Butterfly Effect: Turning Overlooked - Misconfigurations into Zero Click Account Takeover
APIGraphQL
Interesting Story of an Account Takeover Vulnerability
Auth BypassAccount takeover
Self-XSS to ATO via Site Features
XSSSelf-XSS
Zomatoooo! IDOR in Saved Payments
IDOR
CSRF Bypass Using Domain Confusion Leads To ATO
CSRFAccount takeover

Built with ❤️ by Shubham Rawat