https://medium.com/bugbountywriteup/bug-bounty-broken-api-authorization-d30c940ccb42
Bug Bounty: Broken API Authorization
Hey everyone, I’d like to share how I found a simple API authorization bug in a private program, which affected thousands of sub-domains…
medium.com
'웹' 카테고리의 다른 글
Insecure Client-Initiated Renegotiation 취약점 (0) | 2020.06.23 |
---|---|
Dom Clobbering (with XSS) (0) | 2020.01.06 |
XML External Entity (XXE) (0) | 2019.11.28 |
OAuth 2.0 대표 취약점과 보안 고려사항 (0) | 2019.11.25 |
인증과 토큰 그리고 JWT (0) | 2019.11.25 |