Back to directory
WRITEUP #2042

Google VRP — [Insecure Direct Object Reference] $3133.70

IDOR
byCaesar Evan Santoso
Bounty
3,133.70
Program
Google
Published
Oct 20, 2022
Added to HackDex
Oct 21, 2022
Read Full Writeuphttps://caesarevan23.medium.com/google-vrp-insecure-direct-object-reference-3133-70-a0e37023a4c7
RELATED WRITEUPS
Zomatoooo! IDOR in Saved Payments
IDOR
How I got my first $13500 bounty through Parameter Polluting (HPP)
IDORXSS
The Butterfly Effect: Turning Overlooked - Misconfigurations into Zero Click Account Takeover
APIGraphQL
A Creative Way To Get Someones YouTube Videos Deleted + A Copyright Strike Against Their YouTube Channel
IDORBroken Access Control
Bypassing ACLs – IDOR exploitation via HPP
IDORHTTP parameter pollution

Built with ❤️ by Shubham Rawat