Great vid! One of the weirdest IDORs I found used a UNIX epoch timestamp format as an identifier. I spent a lot of time bruteforcing it, but since I was only changing the time by a matter of milliseconds (I did not know what a UNIX timestamp was) I did not get to exploit it. Reported it anyway and got informed that it was a P1.
According to you how many people in world are there in Penetration testing and ethical hacking in cybersecurity like range or gesture for example 4-5 million, etc.
Welcome to the comment section. If you don't want to miss my future case studies, join BBRE Newsletter for free at bbre.dev/nl
Great vid! One of the weirdest IDORs I found used a UNIX epoch timestamp format as an identifier. I spent a lot of time bruteforcing it, but since I was only changing the time by a matter of milliseconds (I did not know what a UNIX timestamp was) I did not get to exploit it. Reported it anyway and got informed that it was a P1.
Your channel is just absolute gold man!
Veen heavy in idor lately this video was nice and perfect timing
Nice topic! We need more on BAC. Thanks!
Where can I find all the bug reports
I really like the way you explain it, thank you
Much appreciated detailed case study of IDOR bug class can we expect your 20k aws misconfiguration vid next ?
I'm not sure if next but I'll definitely do it😉
Thank you so much for your help and your time.
I really enjoy your content. You have a new active sub
If the identifier is long or uuid it could be found on the Wayback machine it is still a valid report??
rez0 has a great blogpost about the topic: rez0.blog/hacking/cybersecurity/2022/08/18/unpredictable-idors.html
I love these case studies!
which website he is using to view all the writeup
It's on my website as a part of BBRE Premium
@@BugBountyReportsExplained 🥺🥺👍
Just found your channel, very good content I'd say. Keep it up! Subbed.
Welcome aboard!
it's possbile to upload write-ups file ?
It's uploaded in the BBRE Premium archive
can u share all reports coz i just started idk much idors
They are all shared in BBRE Premium archive
According to you how many people in world are there in Penetration testing and ethical hacking in cybersecurity like range or gesture for example 4-5 million, etc.
I have no idea
Great Content ...
Thank you
Yeah its so informative😍
Gret video thanks
😁😁