Collected research
tRPC Security Research: Hunting for Vulnerabilities in Modern APIs
A testing methodology for tRPC APIs: fingerprint the style from its GET-query and POST-mutation procedure paths, batch parameter and error shapes; locate exposed trpc-panel documentation by dorking and fuzzing to read every procedure; then, where no documentation exists, map logged calls and guess sibling procedure names to reach hidden endpoints and broken function-level authorization.
Record
- Researcher
- Borna Nematzadeh
- Published by
- Medium
- Date
- Topic
- Other
In the archive
Related sources
Tags
This page is the archive's own catalogue record. The research is the work of Borna Nematzadeh, first published at the original source. Preserved copies are kept so the citation survives its host; this one was last captured on .