Two pieces to the puzzle: Critical IDOR in front of you
4
No verification means i'm you
5
New features for revenue generation = bugs ?? :
6
Developers love to verify things.. right?
7
Just keep it simple!
8
API Docs are friends
Description:
Explore a unique approach to ethical hacking through zseano's VirSecCon talk. Discover favorite findings and learn the thought processes behind uncovering critical vulnerabilities. Gain insights into identifying IDORs, exploiting lack of verification, and leveraging new features for bug discovery. Understand the importance of simplicity in hacking and learn how to effectively use API documentation. This 27-minute presentation offers valuable perspectives for both novice and experienced security researchers.
Unique Mindset - Hacking Techniques and Favorite Findings