Skip to content
← LibraryTechnique entry
W-MASS-ASSIGNPrivilege Escalation

Mass Assignment / Property Smuggling

Send `role=admin` / `is_admin=true` / `verified=true` in the request body — framework binds it directly to the model.

§ Where this technique fits

W-MASS-ASSIGN is catalogued under the Privilege Escalation tactic of the offensive-security kill-chain. It appears in 0 approved dossiers in the registry, typically.