HomeTechnologyWhat is IDOR, the cyber security threat that has CERT-In worried

What is IDOR, the cyber security threat that has CERT-In worried

Insecure Direct Object Reference (IDOR) vulnerabilities are a hidden flaw in web applications that can expose sensitive data to unauthorised users with just a small tweak in a URL.

November 04, 2024 / 12:44 IST
Story continues below Advertisement
IDOR vulnerabilities are a silent threat to web applications, allowing unauthorized data access with minimal effort if left unchecked.
IDOR vulnerabilities are a silent threat to web applications, allowing unauthorized data access with minimal effort if left unchecked.

The Indian Computer Emergency Response Team (CERT-In), recently, said that it has observed an increase in exploitation of insecure direct object reference (IDOR) vulnerability in the Indian cyberspace.

The exploitation of this vulnerability can lead to unauthorised access to data, resulting in potential data breach.

Story continues below Advertisement

"IDORs can have serious consequences for cyber security and be very hard to find, though exploiting them can be as simple as manually changing a URL parameter," CERT-In said.

But what is IDOR, and why is India's nodal agency for cybersecurity worried about that? Let us take a look!