How to test API security: 30 tutorials! 😱
Including:
👩🏫 Broken user authentication
👩🏫 Security misconfiguration
👩🏫 SSRF
And much more! What are you waiting for! 👇
#apisecurity #api#securitygithub.com/akto-api-secur…
If you want to master API security, open this thread!
APIs are used EVERYWHERE for applications to communicate, but let's see how you can HACK them! 👩💻
A Thread 🧵👇
API-Security-Tips v3 💢
➡ Got stuck during an API pentest? Expand the attack surface! Use http://archive. com, find old versions of the web-app and explore new API endpoints. Can't use client? scan .js files for URLs. Some of them are API endpoints.
API TIP🧵(1/10) :👇
Here's 23 free ways to learn about API security testing:
1. Video: Traceable AI, API Hacking 101.
2. Video: Katie Paxton-Fear, API Hacking.
3. Video: Bugcrowd, Bad API, hAPI Hackers.
4. Video: OWASP API Security Top 10 Webinar.
5. Blog: Detectify, How To Hack API's in 2021.
Here's 23 free ways to learn about API security testing:
1. Video: Traceable AI, API Hacking 101.
2. Video: Katie Paxton-Fear, API Hacking.
3. Video: Bugcrowd, Bad API, hAPI Hackers.
4. Video: OWASP API Security Top 10 Webinar.
5. Blog: Detectify, How To Hack API's in 2021.
15K Followers 862 FollowingTop Prop Funding companies were reviewed in detail based on financials, mgmt experience, customer support, payouts timeframes & more - https://t.co/lcHSM2r5oy
4 Followers 177 FollowingRecruitin g webshell engineers to penetrate websites, with a monthly salary of up to $100,000. If interested, please contact https://t.co/YmhFD8kiBH
1 Followers 92 FollowingWant to get insider tips on the Indian stock market?Follow us to start your stock journey!Join for free 👉https://t.co/0CFd6vze6E
22 Followers 560 FollowingMEXC focuses on financial management, stocks, cryptocurrencies, digital assets and investments. Currently, new users can get free dollars when they sign up.
7K Followers 606 Followingमनातल्या विचारांना डिजिटल रूप देण्याचा प्रयत्न। ऐसी अक्षरे रसिके। मेळवीन।।
तंत्रज्ञान, आयुष्य आणि शब्दांचे चित्र – CyberSecurity + Life + Everything in Between!
345 Followers 968 FollowingHelping organizations in securing digital assets by providing professional penetration testing services | Director | Penetration Testing Consultant
942K Followers 935K FollowingVeteran startup mentor, executive, blogger, author, tech professional, professor, and investor. Published on Forbes, Entrepreneur, Inc, Huffington Post, etc.
133 Followers 1K FollowingEmpowering individuals to take control of their health and well-being through a directory of services on one platform. #SocialPrescribing
83 Followers 0 FollowingYour data is your power, and it needs to be protected.
Awareness about cyber security lapses,data theft, privacy violations.
Advice on how to be safe online.
333K Followers 2K FollowingIndependent investigative journalist. Author of 'Spam Nation,' a NYT bestseller. Former Washington Post reporter. Mastodon: https://t.co/fTKNavlMwp
54K Followers 3K FollowingEvery day I write about #osint (Open Source Intelligence) tools and techniques. Also little bit about forensics and cybersecurity in general. Work in @netlas_io
67K Followers 472 FollowingResources for Open Source Intelligence Investigations. Follow the Digital Bread Crumbs. #OSINT
Co-Founder, Forensic OSINT
[email protected]
89K Followers 910 FollowingProgrammer, #malware analyst. Author of #PEbear, #PEsieve, #TinyTracer. Private account. All opinions expressed here are mine only (not of my employer etc)
56K Followers 3 FollowingOfficial account maintained by the CVE™ Program to notify the community of new CVE IDs. Posts contain abbreviated details. Full CVE Records on https://t.co/ALn4YvUtom
30K Followers 1K Following24/7/365 threat detection and response across your cloud, identity, endpoints and everything in-between. We got you: https://t.co/pFNwBJN3d5
191K Followers 417 FollowingSANS is the most trusted and by far the largest source for information & cyber security training, certification and research in the world.
284K Followers 71 FollowingPart of @CISAgov, we respond to major incidents, analyze threats, and exchange critical cybersecurity information with partners around the world.
4K Followers 220 FollowingBusiness of emerging technology, cybersecurity, mobility, quantum, and AI. Goal is to deliver compelling, safe, and secure products.
28K Followers 1K FollowingBuilding products with AI as my cofounder: https://t.co/WV35Iqgyzf, https://t.co/0E3Nmvi3B5. Ex VP of Eng, cybersecurity. Ex BMW self-driving.
3K Followers 41 FollowingCyber Midnight is a company that produces digital content related to cybersecurity, cybercrime, hacking, and AI with solutions based on the web 3.0.
5K Followers 4 FollowingWe are the Cyber Threat Intelligence division of NSHC Threat Research Lab. We track Threat Actor Groups activities worldwide and aim to release our findings.
1.5M Followers 1K FollowingOpen Source Intelligence Monitor focused on Europe and Conflicts across the World. RT ≠ Endorsement. Want to Support my Work? https://t.co/PcUbewvWPr
1.1M Followers 865 FollowingPAI enjoyer, OSINT guy @hntrbrkmedia, my views/freezing cold takes are my own. For full disclosures, visit https://t.co/JOtQx4pI3e.
205 Followers 26 Following🦑 World first platform which Collect & Analyzes every New hacking method.
+ Free AI Practice.
(bugs bounty Tactics | Tools & Ai Updates)
108 Followers 6 FollowingFresh tech news and in-depth coverage of the Apple and Google universe. Get the scoop on new product releases, software update and much more...
4K Followers 1K FollowingI lead @mitreattack. Ask me about deception, but don't believe the answers. Non ATT&CK tweets only speak for me. @[email protected]
112K Followers 3K FollowingRSA provides identity-first solutions for security-first leaders to thrive in a digital world.
For support: @RSASupportDesk | Blog: https://t.co/Bm84LoonRm
63K Followers 82 FollowingThe latest research and news from Unit 42, the Palo Alto Networks (@paloaltontwks) Threat Intelligence and Security Consulting Team covering incident response.
16K Followers 29 FollowingTechnical Twitter of QiAnXin Technology, leading Chinese security vendor. It is operated by RedDrip Team which focuses on malware, APT and threat intelligence.
2K Followers 918 FollowingThreatQuotient improves security operations by fusing together disparate data sources, tools and teams to accelerate threat detection, investigation & response.
41K Followers 187 FollowingWe provide digital business risk platforms and community services. Since 2005, our reputation has remained unchallenged
Check out our research @teamcymru_S2!
No recent Favorites. New Favorites will appear here.