Hacked UNAIR, then become Event Speaker
About Client
- Name: Direktorat Sistem Informasi Universitas Airlangga
- Services: Cyber Security
- Website: https://dsi.unair.ac.id
- Location: ASEEC Tower, Tarumanegara Room, 8th Floor
how?
One day I was feel honored to get invited as a speaker in an event that held by DSI Unair. I was invited to share my experience when I hacked the UNAIR E-learning website (cybercampus unair). I was feel so happy and honored to get invited as a speaker in that event.
The vulnerabilities that I found in the UNAIR E-learning website was a lot. One of the vulnerability that I found really impacting UNAIR is IDOR (Insecure Direct Object References) in the authentication, where I able to do Broken Access Control attack. I was able to login into someone account, change my grade, change my college payment, and more. In UNAIR I have found a lot of vulnerabilities such as SQL Injection, XSS, CSRF, and many more. I was feel so happy because I can help the UNAIR to fix the vulnerabilities that I found.
After I found those vulnerabilities, suddenly I got called by the CTO of Direktorat Sistem Informasi Mr. Rahman Sinatriya S.Kom, M.Kom. I was really happy since Mr. Rahman is my favorite lecturer. He told me to explain every vulnerabilities I found in cybercampus, not only that I was able to introduce myself as programmer and ethical hacker to Direktorat Sistem Informasi programmers. After I explain, I got reward, money and the best one is a laptop that have 32 Gigabyte of RAM, and core i7 11 gen cpu. And then they told me to become event speaker in DSI Security Awareness Program.
Related Projects