Back to directory
WRITEUP #3877

I felt like there were no more bugs left after winning € 2000 … But an email worth €750 changed my mind

IDORBroken Access Control
by@theXSSrat(Thexssrat)
Bounty
2,750
Program
-
Published
Mar 31, 2021
Added to HackDex
Sep 15, 2022
Read Full Writeuphttps://thexssrat.medium.com/i-felt-like-there-were-no-more-bugs-left-after-winning-2000-but-an-email-worth-750-changed-my-c7a507649060
RELATED WRITEUPS
A Creative Way To Get Someones YouTube Videos Deleted + A Copyright Strike Against Their YouTube Channel
IDORBroken Access Control
Zomatoooo! IDOR in Saved Payments
IDOR
How I got my first $13500 bounty through Parameter Polluting (HPP)
IDORXSS
The Butterfly Effect: Turning Overlooked - Misconfigurations into Zero Click Account Takeover
APIGraphQL
Vestaboard: Exploring Broken Access Controls and Privilege Escalation
Privilege EscalationBroken Access Control

Built with ❤️ by Shubham Rawat