Security teams lack targeted tools for client-side authorization audits.
Productize the lab's methods into a simplified toolkit for finding CWE-602 vulnerabilities.
Sell to pentesting teams and security consultants.
Start with a Chrome extension that detects common auth flaws.
The complex domain knowledge required poses a barrier to adoption.