本文へ移動
cccskills

「authorization-bypass」の検索結果

2 件 ・ 関連度順

概要と使いどころ

Detect privilege escalation and unauthorized access via dialogue. Use when the agent has roles, admin functions, or multi-user data.

日本語の概要は準備中です。原文の説明を表示しています。

Tencent/AI-Infra-Guard6,8252026年10月9日 更新

Identify and exploit Broken Object Level Authorization (BOLA), historically known as Insecure Direct Object Reference (IDOR), in API architectures. Extremely common and critical flaw where an API fails to validate whether the currently authenticated user actually owns or retains permissions over the specifically requested database resource (ID).

日本語の概要は準備中です。原文の説明を表示しています。

ShulkwiSEC/bb-huge242026年7月11日 更新