webProeasy

Lab 300 — PlanForge — Broken Authentication via Hidden Trial Activation

hackadvisor

Task: Project planning SaaS with free/premium tiers, flag accessible only to premium users. Solution: Analyzed JavaScript source to find commented-out trial activation endpoint, called hidden API to upgrade to premium, accessed analytics page containing the flag.

$ ls tags/ techniques/
javascript_source_analysissubscription_tier_bypasscommented_endpoint_discoveryhidden_api_exploitation

🔒

Permission denied (requires tier.pro)

Sign in to access full writeups

Sign in with GitHub to continue. No email required.

$sign in

$ grep --similar

Similar writeups