⤷ Title: (BAC)User ID controlled by request parameter
════════════════════════
𐀪 Author: Abdallh Mohamed
════════════════════════
ⴵ Time: Thu, 30 Jul 2026 23:34:15 GMT
════════════════════════
⌗ Tags: #owasp_top_10 #penetration_testing #web_security #broken_access_control #bug_bounty_writeup
════════════════════════
𐀪 Author: Abdallh Mohamed
════════════════════════
ⴵ Time: Thu, 30 Jul 2026 23:34:15 GMT
════════════════════════
⌗ Tags: #owasp_top_10 #penetration_testing #web_security #broken_access_control #bug_bounty_writeup
Medium
(BAC)User ID controlled by request parameter
firstly we explain what of the User ID controlled by request parameter???
⤷ Title: (BAC)User role controlled by request parameter
════════════════════════
𐀪 Author: Abdallh Mohamed
════════════════════════
ⴵ Time: Thu, 30 Jul 2026 23:32:47 GMT
════════════════════════
⌗ Tags: #owasp_top_10 #penetration_testing #web_security #broken_access_control #bug_bounty_writeup
════════════════════════
𐀪 Author: Abdallh Mohamed
════════════════════════
ⴵ Time: Thu, 30 Jul 2026 23:32:47 GMT
════════════════════════
⌗ Tags: #owasp_top_10 #penetration_testing #web_security #broken_access_control #bug_bounty_writeup
Medium
(BAC)User role controlled by request parameter
firstly we explain what of the User role controlled by request parameter???
⤷ Title: I Built a Bug Bounty Checklist with 9,831 Security Checks
════════════════════════
𐀪 Author: Shivam Shukla
════════════════════════
ⴵ Time: Fri, 31 Jul 2026 04:44:16 GMT
════════════════════════
⌗ Tags: #bug_bounty #owasp #ethical_hacking #information_security #cybersecurity
════════════════════════
𐀪 Author: Shivam Shukla
════════════════════════
ⴵ Time: Fri, 31 Jul 2026 04:44:16 GMT
════════════════════════
⌗ Tags: #bug_bounty #owasp #ethical_hacking #information_security #cybersecurity
Medium
I Built a Bug Bounty Checklist with 9,831 Security Checks
Cybersecurity is a field where missing a single test case can mean missing a critical vulnerability.
⤷ Title: OWASP Top 10 for .NET Developers -Part 10: Preventing Server-Side Request Forgery (SSRF)
════════════════════════
𐀪 Author: Surya Raj Ghimire
════════════════════════
ⴵ Time: Sat, 01 Aug 2026 13:01:21 GMT
════════════════════════
⌗ Tags: #fintech #owasp #cybersecurity #application_security #aspnetcore
════════════════════════
𐀪 Author: Surya Raj Ghimire
════════════════════════
ⴵ Time: Sat, 01 Aug 2026 13:01:21 GMT
════════════════════════
⌗ Tags: #fintech #owasp #cybersecurity #application_security #aspnetcore
Medium
OWASP Top 10 for .NET Developers -Part 10: Preventing Server-Side Request Forgery (SSRF)
Your application isn’t always the target of an attack - it can become the attacker’s tool.
⤷ Title: Server-Side Request Forgery (SSRF)
════════════════════════
𐀪 Author: Yusufbarut
════════════════════════
ⴵ Time: Sat, 01 Aug 2026 15:04:25 GMT
════════════════════════
⌗ Tags: #owasp #ssrf #cybersecurity #appsec #web_security
════════════════════════
𐀪 Author: Yusufbarut
════════════════════════
ⴵ Time: Sat, 01 Aug 2026 15:04:25 GMT
════════════════════════
⌗ Tags: #owasp #ssrf #cybersecurity #appsec #web_security
Medium
Server-Side Request Forgery (SSRF)
Web Güvenliği Serisi — Bölüm 4
⤷ Title: (BAC)User ID controlled by request parameter with password disclosure
════════════════════════
𐀪 Author: Abdallh Mohamed
════════════════════════
ⴵ Time: Sat, 01 Aug 2026 23:57:05 GMT
════════════════════════
⌗ Tags: #penetration_testing #web_security #broken_access_control #owasp_top_10 #bug_bounty_writeup
════════════════════════
𐀪 Author: Abdallh Mohamed
════════════════════════
ⴵ Time: Sat, 01 Aug 2026 23:57:05 GMT
════════════════════════
⌗ Tags: #penetration_testing #web_security #broken_access_control #owasp_top_10 #bug_bounty_writeup
Medium
(BAC)User ID controlled by request parameter with password disclosure
firstly we explain what of the User ID controlled by request parameter with password disclosure???
⤷ Title: (BAC)User ID controlled by request parameter, with unpredictable user IDs
════════════════════════
𐀪 Author: Abdallh Mohamed
════════════════════════
ⴵ Time: Sat, 01 Aug 2026 23:55:47 GMT
════════════════════════
⌗ Tags: #penetration_testing #web_security #broken_access_control #owasp_top_10 #bug_bounty_writeup
════════════════════════
𐀪 Author: Abdallh Mohamed
════════════════════════
ⴵ Time: Sat, 01 Aug 2026 23:55:47 GMT
════════════════════════
⌗ Tags: #penetration_testing #web_security #broken_access_control #owasp_top_10 #bug_bounty_writeup
Medium
(BAC)User ID controlled by request parameter, with unpredictable user IDs
firstly we explain what of the User ID controlled by request parameter, with unpredictable user IDs???
⤷ Title: The API That Returned Every Customer’s Private AI Assistant
════════════════════════
𐀪 Author: Ehtesham Ul Haq
════════════════════════
ⴵ Time: Sun, 02 Aug 2026 11:26:02 GMT
════════════════════════
⌗ Tags: #broken_access_control #bug_bounty_writeup #owasp_top_10 #api #bug_bounty
════════════════════════
𐀪 Author: Ehtesham Ul Haq
════════════════════════
ⴵ Time: Sun, 02 Aug 2026 11:26:02 GMT
════════════════════════
⌗ Tags: #broken_access_control #bug_bounty_writeup #owasp_top_10 #api #bug_bounty
Medium
The API That Returned Every Customer’s Private AI Assistant
Free Article Link: Click for free!
⤷ Title: Why HTTP QUERY Changes API Security Forever
════════════════════════
𐀪 Author: Dhruv
════════════════════════
ⴵ Time: Sun, 02 Aug 2026 18:33:21 GMT
════════════════════════
⌗ Tags: #bug_bounty #owasp_top_10 #api_security #cybersecurity #http_query_method
════════════════════════
𐀪 Author: Dhruv
════════════════════════
ⴵ Time: Sun, 02 Aug 2026 18:33:21 GMT
════════════════════════
⌗ Tags: #bug_bounty #owasp_top_10 #api_security #cybersecurity #http_query_method
Medium
Why HTTP QUERY Changes API Security Forever
The new HTTP QUERY method is one of the biggest protocol changes for APIs in years because it attempts to solve a long-standing design…
⤷ Title: Cookie Theft and Hijacked Web Pages: What I Learned from a TryHackMe XSS Lab
════════════════════════
𐀪 Author: Anjali Thakur
════════════════════════
ⴵ Time: Mon, 03 Aug 2026 13:05:37 GMT
════════════════════════
⌗ Tags: #web_security #owasp #cybersecurity #xs #ethical_hacking
════════════════════════
𐀪 Author: Anjali Thakur
════════════════════════
ⴵ Time: Mon, 03 Aug 2026 13:05:37 GMT
════════════════════════
⌗ Tags: #web_security #owasp #cybersecurity #xs #ethical_hacking
Medium
Cookie Theft and Hijacked Web Pages: What I Learned from a TryHackMe XSS Lab
A hands-on breakdown of Cross-Site Scripting — and why eight words of JavaScript can steal your login session