The API Assessment Primer

The API Assessment Primer

OWASP Foundation via YouTube Direct link

Takeaways

29 of 34

29 of 34

Takeaways

Class Central Classrooms beta

YouTube playlists curated by Class Central.

Classroom Contents

The API Assessment Primer

Automatically move to the next video in the Classroom when playback concludes

  1. 1 Introduction
  2. 2 Agenda
  3. 3 Greg Patton Introduction
  4. 4 Why is API security important
  5. 5 Security is often overlooked
  6. 6 Key things to consider
  7. 7 Things to collect
  8. 8 Two key things
  9. 9 HTTP
  10. 10 Common Things
  11. 11 Testing Steps
  12. 12 Developer Tips
  13. 13 Information Leakage
  14. 14 RSA Mobile
  15. 15 Review API Responses
  16. 16 Mobile App Example
  17. 17 Things to Consider
  18. 18 Hidden Functionality
  19. 19 Other Verbs
  20. 20 Protection
  21. 21 Access Control
  22. 22 Transport Security
  23. 23 Injection Concerns
  24. 24 Fuzzing
  25. 25 Validate Parameters
  26. 26 Manage API Keys
  27. 27 Mobile Application Assessment
  28. 28 Key Management
  29. 29 Takeaways
  30. 30 Least Privilege
  31. 31 Resources
  32. 32 Contact Greg
  33. 33 References
  34. 34 Questions

Never Stop Learning.

Get personalized course recommendations, track subjects and courses with reminders, and more.

Someone learning on their laptop while sitting on the floor.