LD-Possible IDOR Attack DetectedApril 2, 2026SOC SIEM EDR Log Analysis Web Attack IDOR Broken Access Control DigitalOcean Escalation to L2 True PositiveExternal IP enumerated the /get_user_info/ endpoint via sequential IDOR requests, all returning HTTP 200 - confirming successful data exfiltration across five user accounts.