Back to directory
WRITEUP #4976

Airbnb : Steal Earning of Airbnb hosts by Adding Bank Account/Payment Method (IDOR)

IDOR
by@IndoAppSec(Vijay Kumar)
Bounty
3,000
Program
Airbnb
Published
Dec 24, 2019
Added to HackDex
Sep 15, 2022
Read Full Writeuphttps://www.indoappsec.in/2019/12/airbnb-steal-earning-of-airbnb-hosts-by.html
RELATED WRITEUPS
Zomatoooo! IDOR in Saved Payments
IDOR
How I got my first $13500 bounty through Parameter Polluting (HPP)
IDORXSS
The Butterfly Effect: Turning Overlooked - Misconfigurations into Zero Click Account Takeover
APIGraphQL
A Creative Way To Get Someones YouTube Videos Deleted + A Copyright Strike Against Their YouTube Channel
IDORBroken Access Control
Bypassing ACLs – IDOR exploitation via HPP
IDORHTTP parameter pollution

Built with ❤️ by Shubham Rawat