Exploiting (IDOR) Insecure Direct Object Reference | Advent of Cyber – Day 5
Автор: CTF Security
Загружено: 2025-12-09
Просмотров: 39
Описание:
A practical walkthrough of IDOR exploitation in Advent of Cyber 2025 Day 5. Learn how to perform horizontal privilege escalation, enumerate APIs, exploit Base64-encoded object IDs, and brute-force time-based UUIDv1 vouchers using Burp Suite.
🔗 UUIDv1 Generator Script: https://github.com/r007sec/uuidv1-gen...
📖 Chapter Timestamps:
00:00 – Intro
02:00 – IDOR Explained
04:20 – Login
08:10 – Exploiting IDOR
14:45 – Child API Attack
29:05 – UUID Voucher Attack
41:40 – Final Voucher Found
42:44 – Outro
#IDOR #AdventOfCyber2025 #CyberSecurity #API #tryhackme #burpsuite
Повторяем попытку...
Доступные форматы для скачивания:
Скачать видео
-
Информация по загрузке: