· @twitter
1 followers · 38838 posts · Server mstdn.skullb0x.io
Nikahverse · @nikahverse
78 followers · 162 posts · Server infosec.exchange

I wondered due to recently remembering when I was able to pull the PDFs off teacher's section. On the textbook manufacturer's just from fking around the URL.

This is a while ago, but I did mention to the professor but he did the idk what you talking about. (2+ years ago)

So I did email the contact email for the manufacturer. They asked for student ID, school code and classroom name. I told in response You can get the school name and thats it. But the following response was how I need to disciplinary actions against me for attempting to cheat. Thus they need the student ID. I ain't gonna get expelled for absolute dumb shit. So I didn't give it and cut off all communications.

In cases this it's now like a double sided thing. I want to report an issue so someone could fix it. But if I'm going to be punished too, why report the issue at all?

#teaching #security #IDOR #url #exploit

Last updated 3 years ago

JDN5IX · @JDN5IX
138 followers · 896 posts · Server hackers.town

Web Application Security - I have just completed this room! Check it out: tryhackme.com/room/introwebapp application and Authentication Failure Access Control Failures via @realtryhackme

#introwebapplicationsecurity #cryptographic #broken #identification #IDOR #web #security #tryhackme

Last updated 3 years ago

Jim Jones · @GreatBigTable
506 followers · 1328 posts · Server mastodon.social

Day 14 of the covered a basic web application security assessment.

Specifically it tasks you with looking for a couple of insecure direct object references ().

It was pretty simple and not that challenging, though it did get the point across.

Day 15 doesn't appear to be released yet.

#tryhackme #adventofcyber2022 #IDOR #infosec

Last updated 3 years ago

Lucid.H3X · @lucidh3x
229 followers · 188 posts · Server infosec.exchange

Day 14 of adventbof cyber done was super easy πŸ˜‚ it's a good break from the last 2

#tryhackme #offsec #infosec #student #cybersecurity #AdventOfCode2022 #IDOR

Last updated 3 years ago

Lucid.H3X · @lucidh3x
235 followers · 189 posts · Server infosec.exchange

Day 14 of adventbof cyber done was super easy πŸ˜‚ it's a good break from the last 2

#tryhackme #offsec #infosec #student #cybersecurity #AdventOfCode2022 #IDOR

Last updated 3 years ago

Busta · @Busta
9 followers · 43 posts · Server infosec.exchange

was the theme of day 14 of where I learned a new vulnerability. I know most of the typical vulnerabilities, but have never heard of (Insecure Direct Object References). But from what I've read, that's been replaced with Broken Access Control.

#webapplications #adventofcyber2022 #IDOR #tryhackme

Last updated 3 years ago

Web Application Security - I have just completed this room! Check it out: tryhackme.com/room/introwebapp application and Authentication Failure Access Control Failures via @RealTryHackMe

#tryhackme #security #web #IDOR #identification #broken #cryptographic #introwebapplicationsecurity

Last updated 3 years ago

β€œ researcher Kamran discovered a flaw in the Department of Revenue system, which exposed over 700,000 customers, including their Social numbers, physical addresses, and bank account details, among other sensitive .”


cybernews.com/news/taxpayer-so

#security #mohsin #florida #data #securityleak #IDOR #vulnerability #bug #cybernews #tax #exploit #business

Last updated 3 years ago

"Hacking on a plane: Leaking data of millions of users of in-flight and taking over any account" - a blog post by @rez0__@twitter.com :



rez0.blog/hacking/2022/12/02/h

#wifi #airplanewifi #appsec #IDOR

Last updated 3 years ago

magikh0e :unverified: · @magikh0e
130 followers · 132 posts · Server infosec.exchange

Working on a guide for automating the discovery of web vulnerabilities.

Focusing on idor, ssti, ssrf etc for now. Suggestions welcomed!

#webapp #owasp #IDOR #ssti #ssrf #sqlinjection #xss

Last updated 3 years ago

magikh0e :unverified: · @magikh0e
130 followers · 132 posts · Server infosec.exchange
EU Medicines Agency · @EMA_News
71 followers · 753 posts · Server respublicae.eu

RT @myESR: Happy International Day of Radiology! πŸ₯³

Join us on this special day by sharing your IDOR celebrations using the hashtag or by sending your pictures to IDoR@myesr.org πŸ“·

More information on IDOR's website πŸ‘‡
ow.ly/2OVq50L9XWl

πŸ¦πŸ”—: nitter.eu/EMA_News/status/1589

#IDOR22 #IDOR #radiology

Last updated 3 years ago

Vijay · @scanman
127 followers · 40 posts · Server mastodon.social

Continuing our annual tradition of honouring RΓΆntgen on November 8.

#IDOR #idor2022 #radiology

Last updated 3 years ago

Vijay · @scanman
122 followers · 29 posts · Server mastodon.social

International Day of Radiology, November 8, 2022.

#IDOR #idor2022 #radiology

Last updated 3 years ago

null - Open Security Community · @null0x00
105 followers · 124 posts · Server ioc.exchange

RT @NullAhm
πŸ“’ @x30r_ will conduct a session on "IDOR Know Hows".

Bhashit is into hardcore pentesting, he is a founding member of @NullAhm . Let's hear it from the infosec ninja. πŸ₯·

Register here: bit.ly/3SM1cGr

@null0x00

#null #nullahm #infosec #meetup #IDOR #owasp

Last updated 3 years ago