writeups.xyz writeups.xyz / IDOR

Title Vulnerabilities Programs Authors
IDOR on Unsubscribe emails to $200 bounty.
$1,000+ P1: PII Disclosure W/ IDOR
Google VRP — [Insecure Direct Object Reference] $3133.70
Fall account takeover via Amazon Cognito misconfiguration
Critical IDOR Vulnerability on Medium?
In GUID We Trust
Insecure Comments
How I found an IDOR Worth $1500
7,500$ – IDOR on Apple [consultants.apple.com]
Tag Myself in Your Favorite TikTok Artist Video [IDOR]
Details about future collaboration profiles and pages have been revealed
Group expert's pending expertise request leaking on Facebook
IDOR leads to removing members from any Google Chat Space.
IDOR “Insecure direct object references”, my first P1 in Bugbounty
How I found my first SSRF to RCE!
Viewing Instagram live streams anonymously without notifying the host
IDOR at Login function leads to leak user’s PII data
Unsubscribe any user’s e-mail notifications via IDOR
The Million Dollar IDOR
Break the Logic: 5 Different Perspectives in Single Page (€1500)
Oracle SBC: Multiple Security Vulnerabilities Leading to Unauthorized Access and Denial of Service
Business Logic Vulnerability via IDOR
Bypassing unexpected IDOR
Multiple bugs in one program leads to 1500€
Publicly Accessible Android Crash Reports Containing Sensitive Information