2 Videos for Authorization 03

Access to videos for this exercise is only available with PentesterLab PRO
GOPRO
Exploitation of Authorisation 03
This video covers the exploitation of the Authorization 03 challenge in the Essential Badge. It demonstrates how to access hidden keys in a web application by changing the format of the request from .js to .json and bypassing restrictions using headers.

Access to videos for this exercise is only available with PentesterLab PRO
GOPRO
Authorization 03: Code Review
In this video, we conduct a source code review of the Authorization 03 challenge, part of the essential badge. We explore a Ruby on Rails application to identify and exploit an authorization vulnerability.