Premium Only Content

Access control 7 | User ID controlled by request parameter with data leakage in redirect
Did we help you today? Show us your love here:
https://buymeacoffee.com/TORHAT
Paytm: https://tinyurl.com/TORHAT
Want us to train you for courses and certifications?
https://hmcyberacademy.com/learners.html
Want to hire us or our students for VAPT or SOC?
https://hmcyberacademy.com/companies.html
This video is for Educational purposes only.
https://portswigger.net/web-security/access-control
https://portswigger.net/web-security/access-control/lab-user-id-controlled-by-request-parameter-with-data-leakage-in-redirect
Steps to solve:
1. login as wiener:peter
2. change url from
/my-account?id=wiener
to
/my-account?id=carlos
3. Check burpsuite for /my-account?id=carlos 302. The response contains carlos related information, including APIs.
Socials:
Whatsapp: https://chat.whatsapp.com/JEWGrpUOqXxGYZas9901Ib?mode=wwc
Linkedin: https://www.linkedin.com/company/hmcyberacademy
Twitter: https://twitter.com/hmcyberacademy
Telegram Group: https://t.me/+a9nwT9mdgeJhMDA1
Instagram: https://www.instagram.com/hmcyberacademy/
Discord: https://discord.com/invite/caMKZRBjty
Rumble: https://rumble.com/c/hmcyberacademy
Email: [email protected]
#hmcyberacademy #portswigger #Cybersecurity #EthicalHacking #HackingLab #SecurityChallenge #CTF (Capture The Flag) #Infosec #WebSecurity #CyberChallenge #BugBounty #CaptureTheFlag #HackingChallenge #HackMe #SecurityTraining #password #accesscontrol #DebugPage #bugbounty #bugbountyhunter #bugbountytips #bugbounty #bugbountyhunter #bugbountytips
-
LIVE
Wendy Bell Radio
4 hours agoKing Of The Trolls
6,679 watching -
LIVE
LFA TV
11 hours agoLIVE & BREAKING NEWS! | WEDNESDAY 10/22/25
3,865 watching -
1:00:40
Chad Prather
9 hours agoHow To Live An UNSHAKEABLE Life!
46.4K12 -
LIVE
The Chris Salcedo Show
12 hours agoDems Only Like Violence Directed At Conservatives
852 watching -
LIVE
Welcome to the Rebellion Podcast
13 hours agoHappy Hump Day - Welcome to the Rebellion Podcast Live 10/22
174 watching -
8:29
Freedom Frontline
15 hours agoFox News Analyst EXPOSES Obama and Hillary’s Dirty Secret
20.4K14 -
21:34
Jasmin Laine
18 hours agoReporters STUNNED as Carney’s “No Deal Coming” LEAKS—Billboards EXPLODE Nationwide
15.9K28 -
1:22:28
Crypto Power Hour
12 hours ago $1.69 earnedThe StableCoin Queen, Author, Cybersecurity Expert Alyze Sam
18.1K5 -
18:56
Degenerate Jay
18 hours ago $0.95 earnedIs Silent Hill f Worth Buying?
11.5K2 -
39:24
Uncommon Sense In Current Times
18 hours ago $1.01 earnedThe Curative Culture Model | Healing Workplaces & Leading with Humanity | Doug Shaw
23.5K1