idor
Base Steps:
Account Setup: Create two accounts or enumerate users first.
Endpoint Check: Determine if the endpoint is private or public and if it contains any ID parameter.
Parameter Manipulation: Change the parameter value to another user's ID and observe any changes to their account.
Done!
Additional Tests:
Last updated