
Episode 44: URL Parsing & Auth Bypass Magic
Critical Thinking - Bug Bounty Podcast
00:00
URL parsing, authentication bypass, and the risks of centralization
This chapter discusses the vulnerabilities of URL parsing and authentication bypass in bug bounty programs. It covers topics like exploiting redirect URIs for account code takeovers and the risks of using shared secrets across apps. The speakers also examine the challenges and impact of authentication bugs and discuss rate limiting as a common multi-factor authentication bypass technique.
Play episode from 01:01:24
Transcript


