Dashboard
Active monitoring · app.example.com
Active Scanapp.example.com
Running 2h 14m
Discover
Hypothesize
Exploit
Validate
Report
live output
[*] exploiting hypothesis: IDOR on /api/v1/users/{id}
[*] payload: GET /api/v1/users/999 with victim session
[!] response leaked user data for uid 999
[*] building evidence chain...
Attack Surface
47
Endpoints
134
Parameters
3
Subdomains
4
Auth Flows
Findings by severity
3 Critical
7 High
8 Medium
5 Low