Both HaE and Authz are members of the BurpSuite plug-in ecosystem. The combination of the two can avoid repeated testing of "override of authority" and "unauthorized" vulnerabilities. (Suitable for scenarios with complex business and many system module functions)
Both plug-ins can be installed in the store
After installation, click Filter Settings and check Show only highlighter items
Right click on highlighted item to send to Authz
The cookie can be set to 123 or empty, and then click run.
If Orig Response Size and Response Size are equal, it indicates that there may be an unauthorized access vulnerability.