0x02 - Broken Auth in 30 Seconds
0x02 - Broken Auth in 30 Seconds
Pentest Tips & Tricks
A01 - Broken Access Control
A01 - Broken Access Control
A02 - Cryptographic Failures
A02 - Cryptographic Failures
A03 - Injection Attacks
A03 - Injection Attacks
A04 – Insecure Design
A04 – Insecure Design
A05 – Security Misconfiguration
A05 – Security Misconfiguration
A06 – Vulnerable Components
A06 – Vulnerable Components
A07 – Identification and Authentication Failures
A07 – Identification and Authentication Failures
Recon & Attack Surface
Recon & Attack Surface
Tooling & Automation
Tooling & Automation
Creative, Strategic, and Mindset
Creative, Strategic, and Mindset
Bug Bounty $$$
Bug Bounty $$$
AI/ML/LLM/MCP
AI/ML/LLM/MCP
Latest Tips & Tricks
Latest Tips & Tricks
Did you know broken authentication exploits are some of the the highest impact vulnerabilities you can find?
Applications that fail to check the validity of the user's session are vulnerable to broken authentication.
This allows attackers to access the app's resources without providing a username/password.
Most of the time this is possible by sending a direct HTTP request to the affected API endpoint.
Fortunately, there is a Burp extension to automate the process and repeat every request without any cookies to detect authentication vulnerabilities: Authorize
How to do it
Proxy traffic through Burp
Browse the application
Select requests ->
Extensions->Authorize->Send to AuthorizeCheck the
Unauthenticatedcolumn for theBypassedwarningNavigate to the
Unauthenticated Responsetab and confirm if the request was successful without providing an authentication token