!FOLLOW INSTALLATION INSTRUCTIONS BELOW!
CIDOR is a script written in BASH (Shell Script) to take advantage of Insecure direct object references in Canvas to get documents, files from colleges who have items that remain open. Written by n3on (@n3onhacks) in an attempt to get fun reading material.
https://www.youtube.com/watch?v=TxAPvd5FLmE
./cidor.sh
Note: !MUST RUN CIDOR AS $ROOT!
Follow prompts for input.
-After the cycle is completed, files will be in '/opt/cidor/downloads' folder
>>cd /opt (*must be in /opt folder to work)>>git clone https://github.com/n3onhacks/cidor.git
>>cd cidor
>>mkdir downloads
>>mkdir temp
>>cd ..
>>chmod 777 -R cidor
>>cd cidor
>>./cidor.sh
https://www.youtube.com/watch?v=D1CSBlTEuYc
-Made more robust for renaming files, autodeleting-Autodelete files made
-Added multiple files / no longer single file.
-Added automated advanced output reporting features.
-Narrowed down to one initial file to download.
-Updated README.md
-Initial release of fuzzing/clean downloading tool using reoccuring directory structure with Canvas users
-Taking advantage of IDOR in Canvas ...it's CIDOR!