How do you look for Android Broken Authentication and Session Management for $$ or $$$??
Check out this Broken authentication and Session Management on Android Application, most of the time this bug will not consider during web app hunting, but this is a valid bug on android.
Hello Folks, In this article I will explain about Android Broken Authentication and Session Management.
What is Broken Authentication and Session Management ??
All application requires users to log in to access their accounts, make a process, transaction, etc. More often than not, this is done using a username and password. With this info, a site will assign and send each logged-in visitor a unique session ID that serves as a key to the user’s identity on the server.
If not properly secured, a cybercriminal can impersonate a valid user and access that user’s account, resulting in a broken authentication and session management attack.
Let's get Started !! 😉
In my previous writeup, I explained about android HTML Injection, while working on the same application, I found this bug.
I logged in to the application and went to the profile page. Here I suggest you check this bug on either the profile page or if an application has Personal identity Information or sensitive information stored.
I fired up my burp suite and went to the profile section, here it contains the details about the Name Email and password change options.
I tried updating the name field and while doing this I intercepted the request and forward it to the repeater.
Then I logged out from the application as shown.
Then I went back to the repeater tab and I changed the name to something else → when I hit enter.
Hohohohoo…
I got a 200 Ok Success message!
I again logged in to the application to verify whether the modified name is updated after the logged out.
Yessssssssssssss………………………..
It worked…………!!!
Woooooooooowwwwwwww……………That’s great……
Boom !! Profile updated successfully.
Then immediately I started making the report.
Happy Hacking 🥂🥂
Thanks for reading.
Please follow me for more writeups.