Gift Lab
Daily · 2 writeupsA recurring daily challenge — each entry covers a different vulnerability. Listed oldest to newest.
BugForge - Daily - Gift Lab (Feb 19, 2026)
The Gift Lab application contains an Insecure Direct Object Reference (IDOR) vulnerability in its list sharing functionality. The application generates…
Broken Access Control IDOR
Posted on 2026-02-19 19:00 4 min read
BugForge - Daily - Gift Lab (Mar 13, 2026)
The Gift Lab application contains a Broken Authentication flaw where the adminAccessToken cookie issued at login has a predictable structure - only the…
Broken Authentication Brute Force
Posted on 2026-03-13 19:00 3 min read