Write-ups

Check The Published Writeups

WDBTitleTagsProgramsAuthorsTypePublicationAdded
4216Edmodo — IDOR to view private files of any class IDOR Edmodo Rohan Pagey (@rohan_x3) Bug Bounty2019-04-062023-06-13
4203How I gained access to revenue and traffic data of thousands of Shopify stores IDOR Shopify Ayoub Fathi (@_ayoubfathi_) Bug Bounty2019-04-152023-06-13
4197A $5000 IDOR… IDOR NA Mr.Hacker (@mr_hacker0007) Bug Bounty2019-04-162023-06-13
4116IDOR Leads To Project Takeover IDOR NA Hariharan.s (@DJHARIZ1) Bug Bounty2019-06-092023-06-13
4115Account takeover using IDOR and the misleading case of error 403. IDOR NA Plenum (@plenumlab) Bug Bounty2019-06-112023-06-13
4110How spending our Saturday hacking earned us 20k IDOR NA Matti Bijnens (@MattiBijnens) Bug Bounty2019-06-142023-06-13
4109IDOR — Account Takeover IDOR NA Saad Ahmed (@XSaadAhmedX) Bug Bounty2019-06-142023-06-13
4086IDOR: Payment Fraud IDOR Payment tampering NA Vibhurushi Chotaliya (@_Vibhurushi_) Bug Bounty2019-06-202023-06-13
4080Password Reset Vulnerability — Full Account takeover (Insecure Direct Object Reference) Password reset IDOR Account takeover NA Muhammad Asim Shahzad (@protector47) Bug Bounty2019-06-222023-06-13
4066Accidental IDOR IDOR NA Saad Ahmed (@XSaadAhmedX) Bug Bounty2019-07-012023-06-13
4051Tale of account takeover — Sensitive info Disclosure + Broken Access Control IDOR Account takeover NA Md Saqib (@sakyb7) Bug Bounty2019-07-102023-06-13
4046Account takeover on Airbnb acquisition | An Unusual Bug Part-2 🐛 IDOR Account takeover Airbnb PRince CHaddha (@princechaddha) Bug Bounty2019-07-132023-06-13
4039The Bugs Are Out There, Hiding in Plain Sight IDOR SSRF Information disclosure CORS misconfiguration NA A Bug’z Life (@abugzlife1) Bug Bounty2019-07-152023-06-13
4014Full Account Takeover via Changing Email And Password of any User through API Parameters IDOR Password reset Account takeover NA Adesh Nandkishor kolte (@AdeshKolte) Bug Bounty2019-07-262023-06-13
4008Story of an IDOR via Email IDOR NA Shuaib Oladigbolu (@_sawzeeyy) Bug Bounty2019-07-292023-06-13
40071st Bounty Story | Rewarded 300$ (IDOR) IDOR NA Md Hridoy Bug Bounty2019-07-292023-06-13
4005Paypal bug $10K - All Secondary users account takeover leads to unauthorized money transfer from paypal business accounts IDOR Paypal Mohd haji (@mohdhaji24) Bug Bounty2019-07-302023-06-13
3982Read other user support tickets in https://support..com (Write Up) IDOR NA Evan Ricafort (@evanricafort) Bug Bounty2019-08-092023-06-13
3933Accessing 2 million Verizon Pay Monthly contracts Information disclosure Authentication bypass IDOR Yahoo! / Verizon Media Daley Bee (@daley) Bug Bounty2019-09-092023-06-13
3908A Simple bypass of Registration Activation that Lead to many Bug - Information disclosure IDOR CSRF NA YoKo Kho (@YokoAcc) Bug Bounty2019-09-212023-06-13
3898Stories Of IDOR IDOR NA Shivbihari Pandey (@ninja_pandit_) Bug Bounty2019-09-282023-06-13
3895One Way to Find Hidden IDOR Vulnerability IDOR NA Vulkey_Chen (@Vulkey_Chen) Bug Bounty2019-10-012023-06-13
3888From Multiple IDORs leading to Code Execution on a different Host Container IDOR RCE NA Rahul (@Rahul_R95) Bug Bounty2019-10-042023-06-13
3835Chains on Chains!! Chaining several IDOR’s into Account Takeover(PART ONE) IDOR NA Daniel Marte (@DanielM59720745) Bug Bounty2019-11-152023-06-13
3833[Writeup][Bug Bounty][Tokopedia] Manipulation of Likes in Product Reviews [EN] IDOR Tokopedia Muhammad Thomas Fadhila Yahya (@fadhilthomas) Bug Bounty2019-11-152023-06-13