webProeasy

Lab 115 — PulseChat — IDOR in Attachment Download

hackadvisor

Task: messaging platform with file attachments using Unix timestamps as IDs. Solution: enumerate attachment IDs via timestamp range to access files from other users' private conversations due to missing authorization check.

$ ls tags/ techniques/
idor_exploitationbroken_access_controltimestamp_enumerationattachment_enumeration

🔒

Permission denied (requires tier.pro)

Sign in to access full writeups

Sign in with GitHub to continue. No email required.

$sign in

$ grep --similar

Similar writeups