InfoSec Write-ups - Medium-- Insecure Direct Object Reference falls under the category for Broken Access Controls as per OWASP TOP 10 (2017 Edition). This issue usually occurs due to weak implementation of the application’s access control logics which links an identifier or an object to a particular asset say user_id parameter defines which user’s data … Continue reading Accidental Observation to Critical IDOR
Category: Articles
Latest Google Chrome Update Addressed Actively Exploited Zero-Day
Latest Hacking News-- With the latest Chrome release, Google has addressed a serious zero-day vulnerability alongside other bugs. Update your browser at the Latest Google Chrome Update Addressed Actively Exploited Zero-Day on Latest Hacking News. View original article on Latest Hacking News
Accidental Observation to Critical IDOR
InfoSec Write-ups - Medium-- Insecure Direct Object Reference falls under the category for Broken Access Controls as per OWASP TOP 10 (2017 Edition). This issue usually occurs due to weak implementation of the application’s access control logics which links an identifier or an object to a particular asset say user_id parameter defines which user’s data … Continue reading Accidental Observation to Critical IDOR
Bypassing WAF to do Error-Based SQL Injection
InfoSec Write-ups - Medium-- Bypassing WAF to do advanced Error-Based SQL InjectionDuring penetration testing, I faced with a website which on this article I will name it as http://domain.comWhile browsing the website, I didn’t see any single Parameter, even though the website was built with PHP. I quit browsing and started to Google Dorking.Google Dorking to … Continue reading Bypassing WAF to do Error-Based SQL Injection
Waze App Vulnerability Could Allow Tracking Users’ Location
Latest Hacking News-- A serious vulnerability has been discovered in the Waze app that could allow tracking other users’ locations in real-time. The Waze App Vulnerability Could Allow Tracking Users’ Location on Latest Hacking News. View original article on Latest Hacking News
Hasta la vista, baby
InfoSec Write-ups - Medium-- TryHackMe Skynet machine walkthroughContinue reading on InfoSec Write-ups » View original article on InfoSec Write-ups - Medium
My first bug on Google: Observation wins!
InfoSec Write-ups - Medium-- My first bug on GoogleThe clearer you see, the better you win!So, I was trying Google this time to see if I get something interseting in it. I spent like 20 days on an acquisition and finally I found some interesting stuffs over there. This is the tell about one of them:)While I was … Continue reading My first bug on Google: Observation wins!
Multiple Mobile Browsers Suffer Address Bar Spoofing Vulnerabilities
Latest Hacking News-- Mobile users are exposed to a serious security problem due to vulnerable browsers on their devices. Security researchers have disclosed Multiple Mobile Browsers Suffer Address Bar Spoofing Vulnerabilities on Latest Hacking News. View original article on Latest Hacking News
7 Best Voice Chat Apps For Gamers
Dark Hacker World-- Are you a gamer? Looking for gaming chat apps, If right, then, You are at the best place to find the best and free voice chat apps for gamers.A gamer like to socialize with his/her teammates while playing a game. Good communication can lead you to win the game.Most of the game … Continue reading 7 Best Voice Chat Apps For Gamers
TryHackMe- Ignite CTF Writeup (Detailed)
InfoSec Write-ups - Medium-- Welcome folks!! We are going to do Ignite CTF on TryHackMe.Continue reading on InfoSec Write-ups » View original article on InfoSec Write-ups - Medium






