Filter:
1 writeup found
More writeups are being drafted — SSRF, auth bypass, and subdomain takeover findings coming soon.
New IDOR High Severity Featured

High-severity discovery · 2025

Unauthorized Access to

USA Court Records

An Insecure Direct Object Reference in a United States court system portal exposed confidential case records, filing documents, and party details to any unauthenticated user. A full breakdown of the recon, exploit chain, responsible disclosure, and remediation.

AD
Aashutosh Devkota
2025 ~8 min read
Read Writeup
userId=1337
200 OK · disclosed
CVSS: 7.5
Severity
High
Let's Connect

Open to Opportunities

Cybersecurity researcher & developer based in Nepal. Available for bug bounty collaboration, penetration testing engagements, and developer roles.

</> {} [] 0x