Similar to Broken Object Level Access (BOLA) but less API focused, for example, iterating a pageID or page directory to view information of other users.
ffuf
- if you have UIDs (can be anything)
-mr
= regex match
API
Post data
proxy through burpSimilar to Broken Object Level Access (BOLA) but less API focused, for example, iterating a pageID or page directory to view information of other users.
ffuf
-mr
= regex match
Post data
proxy through burp