<rss xmlns:atom="http://www.w3.org/2005/Atom" version="2.0">
  <channel>
    <title>Web - Tag - Symsec</title>
    <link>https://symsec.net/tags/web/</link>
    <description>Web - Tag | Symsec</description>
    <generator>Hugo -- gohugo.io</generator><language>en</language><managingEditor>symeonpdm@gmail.com (Symeon Papadimitriou)</managingEditor>
      <webMaster>symeonpdm@gmail.com (Symeon Papadimitriou)</webMaster><lastBuildDate>Wed, 21 Aug 2024 01:03:19 &#43;0300</lastBuildDate><atom:link href="https://symsec.net/tags/web/" rel="self" type="application/rss+xml" /><item>
  <title>Critical IDOR Flaws in Online Banking Application</title>
  <link>https://symsec.net/posts/stories/10efjd1f/</link>
  <pubDate>Wed, 21 Aug 2024 01:03:19 &#43;0300</pubDate>
  <author>Symeon Papadimitriou</author>
  <guid>https://symsec.net/posts/stories/10efjd1f/</guid>
  <description><![CDATA[Disclaimer: Please be aware that even though some content in screenshots, such as endpoints, parameters, and values, may appear unblurred, it has been altered to comply with my NDA contract and protect client confidentiality while ensuring that the meaning and context remain intact.
Introduction Recently, during a web assessment of an online banking system, I identified a critical vulnerability that could lead to unauthorized access or manipulation of sensitive information.]]></description>
</item>
</channel>
</rss>
