Skip to main content
تشغيل أي مهارة في Manus
بنقرة واحدة

bola-idor

Use when hunting Broken Object Level Authorization (BOLA) or Insecure Direct Object Reference (IDOR) vulnerabilities in APIs or web applications. Trigger on: "BOLA", "IDOR", "broken object level", "access other users", "object reference", numeric or UUID IDs in URLs or request bodies, user-scoped resources, horizontal privilege escalation, "change the ID in the request", second-order IDOR, blind IDOR, indirect reference, encoded ID, deprecated API version, JSON globbing.

النجوم٤
التفرعات١
آخر تحديث١٤ مارس ٢٠٢٦ في ١٣:٣٤
SKILL.md
readonly