PortSwigger Web Academy: NoSQL Operator Injection Auth Bypass
4 min readSep 29, 2023
Hello, World! This blog post will serve as a walkthrough of PortSwigger’s Web Academy new NoSQL Injections lab #2, “Exploiting NoSQL operator injection to bypass authentication.” Let’s go for it!
Glossary
NoSQL Database — refers to a database that does not implement table-based storage mechanisms but instead leverages an…