Back to directory
WRITEUP #189

Bypassing ACLs – IDOR exploitation via HPP

IDORHTTP parameter pollution
by@Adrian__T(Adrian Tiron)
Program
-
Published
Jul 9, 2024
Added to HackDex
Jul 30, 2024
Read Full Writeuphttps://fortbridge.co.uk/research/idor-exploitation-via-hpp-api-hacking-case-study/
RELATED WRITEUPS
Zomatoooo! IDOR in Saved Payments
IDOR
How I got my first $13500 bounty through Parameter Polluting (HPP)
IDORXSS
The Butterfly Effect: Turning Overlooked - Misconfigurations into Zero Click Account Takeover
APIGraphQL
A Creative Way To Get Someones YouTube Videos Deleted + A Copyright Strike Against Their YouTube Channel
IDORBroken Access Control

Built with ❤️ by Shubham Rawat