Back to directory
WRITEUP #1853

Hacking on a plane: Leaking data of millions and taking over any account

IDOR
by@rez0__(rez0)
Program
-
Published
Dec 2, 2022
Added to HackDex
Dec 5, 2022
Read Full Writeuphttp://rez0.blog/hacking/2022/12/02/hacking-on-a-plane.html
RELATED WRITEUPS
Zomatoooo! IDOR in Saved Payments
IDOR
How I got my first $13500 bounty through Parameter Polluting (HPP)
IDORXSS
The Butterfly Effect: Turning Overlooked - Misconfigurations into Zero Click Account Takeover
APIGraphQL
A Creative Way To Get Someones YouTube Videos Deleted + A Copyright Strike Against Their YouTube Channel
IDORBroken Access Control
Bypassing ACLs – IDOR exploitation via HPP
IDORHTTP parameter pollution

Built with ❤️ by Shubham Rawat