Built with and by Teycir Ben Soltane•
How to Use•FAQ•GitHub•arXiv.org•
Share:
ArXivCSExplorer
☆☆Bookmarks🏆RSSHow to UseFAQ
Home/Authors/Bandana Kaur

Bandana Kaur

1 indexed paper

Recent (6 mo)
1
With code
0
Influential cites
0
Benchmarked
0

Publications per year

1
26

Top categories

Crypto×1

Research Timeline

2026
Broken Object Level Authorization in the Wild: An Empirical Taxonomy from 100+ Bug Bounty Disclosures

This paper provides a large-scale empirical taxonomy of Broken Object Level Authorization (BOLA) by analyzing over 100 real-world bug bounty disclosures, revealing that unauthorized state-changing actions are a dominant and often overlooked vulnerability type.

Highlighted terms show continued research focus across papers

Papers

cs.CRRecentMay 25, 2026

Broken Object Level Authorization in the Wild: An Empirical Taxonomy from 100+ Bug Bounty Disclosures

Bandana Kaur

This paper provides a large-scale empirical taxonomy of Broken Object Level Authorization (BOLA) by analyzing over 100 real-world bug bounty disclosures, revealing that unauthorized state-changing act…

View →