Mongo IDOR

Bookmarked!

This challenge covers how to exploit an IDOR when Mongo IDs are used

PRO Medium < 1 Hr. 1154 API Badge
Course

In this challenge, you'll identify and exploit an IDOR vulnerability. Your task is to retrieve the secret key stored in the admin's account by uncovering how the application leaks user identifiers.

Included with PRO
Full course content 1 video

Ready to practice?

Get access to this lab and 600+ hands-on exercises with a PRO subscription.