Back to directory
WRITEUP #5811

IDOR User Account Takeover By Connecting My Facebook Account with victims Account

IDOR
by@khizer_javed47(Muhammad Khizer Javed)
Bounty
1,200
Program
Meta / Facebook
Published
Sep 16, 2018
Added to HackDex
Sep 15, 2022
Read Full Writeuphttps://blog.securitybreached.org/2018/09/16/idor-account-takeover-using-facebook/
RELATED WRITEUPS
Zomatoooo! IDOR in Saved Payments
IDOR
How I got my first $13500 bounty through Parameter Polluting (HPP)
IDORXSS
The Butterfly Effect: Turning Overlooked - Misconfigurations into Zero Click Account Takeover
APIGraphQL
A Creative Way To Get Someones YouTube Videos Deleted + A Copyright Strike Against Their YouTube Channel
IDORBroken Access Control
Bypassing ACLs – IDOR exploitation via HPP
IDORHTTP parameter pollution

Built with ❤️ by Shubham Rawat