Commit Graph

70 Commits

Author SHA1 Message Date
André Rainho
08424df754
new topic for api design, arch and dev 2021-08-04 10:24:36 +01:00
André Rainho
0b732a12ce
fix checklist entry 2021-08-04 10:09:26 +01:00
André Rainho
979601b9c7
rename topic and refactoring 2021-07-27 10:09:36 +01:00
André Rainho
4329be19d9
fix mindmap entry 2021-07-27 09:54:38 +01:00
André Rainho
98aa7c3abb
Update README.md 2021-07-27 09:53:22 +01:00
André Rainho
ba19b4e1be
new topic - Mind maps 2021-07-27 09:50:46 +01:00
André Rainho
be2c7a45e0
new checklist entry
OAuth2: Security checklist
2021-07-27 09:34:47 +01:00
André Rainho
775eb7e310
new topic API Keys validation 2021-07-27 09:20:58 +01:00
André Rainho
fe5d7dc5ca
new entry for other useful resources
- API Key Leaks: Tools and exploits
2021-07-16 10:25:42 +01:00
André Rainho
67e5131313
change author first letter to caps 2021-07-16 10:15:15 +01:00
André Rainho
1ea8efbeec
add author for checklist 2021-07-16 10:14:32 +01:00
André Rainho
8b360f223e
cleanup and new checklist entry
- refactor and cleanup
- new entry for API Audit checklist
2021-07-16 10:13:49 +01:00
André Rainho
f51798121e
other useful resources entry
- new entry "the fault in our stars"
2021-07-14 09:59:42 +01:00
André Rainho
66cc63af65
fix checklists 2021-07-14 09:55:59 +01:00
André Rainho
9f40e60959
new checklist entry
HolyTips: API security cheklist
2021-07-14 09:53:43 +01:00
André Rainho
0e970770b5
new walkthrough entry
- ShipFast: Practical API security walkthrough series
2021-07-09 00:58:41 +01:00
André Rainho
af75876286
new entry for Cheatsheets
- JSON Web Token Security Cheat Sheet
2021-07-08 20:45:41 +01:00
André Rainho
93eae9919e
new entry for other useful resources
- Strengthening Your API Security Posture – Ford Motor Company
2021-07-07 19:44:20 +01:00
André Rainho
828115de0f
rename entry 2021-07-07 19:12:00 +01:00
André Rainho
f95ae39117
new entry for Fuzzing/SecLists
- Word-list for common API endpoints
2021-07-07 19:11:08 +01:00
André Rainho
4c655b1313
new entry enumeration / scanning
- scan REST APIs with w3af
2021-07-07 19:04:31 +01:00
André Rainho
b0525ab676
new tool entry
- ffuf: a fast web fuzzer written in Go
2021-07-07 19:02:13 +01:00
André Rainho
c0dc89c3a3
new entry for Deliberately vulnerable APIs
- Generic-University Vulnerable API
2021-07-07 19:00:12 +01:00
André Rainho
ec9686433a
a new topic called playlists and minor cleanup
- removing single entry "API hacking for the Actually Pretty Inexperienced hacker."
- adding Katie Paxton-Fear Playlist called "Everything API Hacking."
2021-07-07 10:48:40 +01:00
André Rainho
be9d5523a8
new tool entry
- SoapUI testing solution for APIs and web services
2021-07-07 09:26:58 +01:00
André Rainho
3730883ef6
new tool entry
- REST API fuzzing tool called RESTler
2021-07-07 09:23:16 +01:00
André Rainho
832c73a463
new entries for podcasts
- Hack Your API-Security Testing
- The OWASP API Security Project
- Episode 38 API Security Best Practices
2021-07-07 09:20:41 +01:00
André Rainho
6faca4ba13
new tool entry
APICheck toolset entry
2021-07-07 09:04:17 +01:00
André Rainho
87f6efe83f
new entry for fuzzing/seclists
- list of swagger endpoints
2021-06-30 21:58:09 +01:00
André Rainho
9db1ce3906
fix table 2021-06-30 21:40:06 +01:00
André Rainho
4a3efaedd0
new entry for useful resources
- A guide from PortSwigger: What is API and microservice security?
2021-06-30 21:38:20 +01:00
André Rainho
49fa1945de
two entries for useful resources
- SOAP Security: Top Vulnerabilities and How to Prevent Them
- API Security: The Definitive Guide
2021-06-30 21:29:56 +01:00
André Rainho
c873e74e5d
new entry for cheat sheets
REST assessment cheat sheet entry
2021-06-30 21:13:47 +01:00
André Rainho
d47f1ac61d
new entry for cheatsheets
Microservices security cheatsheet entry
2021-06-30 21:07:09 +01:00
André Rainho
a8489cc387
new entries for enumeration or scanning
- general cleanup on table headers plus scanning/enumeration with zap/burp
2021-06-30 20:55:15 +01:00
André Rainho
b5ebcc4bb7
new podcast entry
Hacker Mind podcast entry called Hacking APIs
2021-06-30 20:44:46 +01:00
André Rainho
931196edeb
new gitbook entry
HackTricks - Web API Pentesting entry
2021-06-28 11:31:34 +01:00
André Rainho
b9bea1e6e0
new tool entry
new entry for Imperva's customizable API attack tool
2021-06-26 18:19:55 +01:00
André Rainho
ff9d4dfb16
rest security and graphql cheat sheets
REST security and GraphQL cheat sheets
2021-06-25 15:34:02 +01:00
André Rainho
30d7bad827
deliberately vulnerable api's and cleanup
- new topic for deliberately vulnerable API's
- rename other topics
2021-06-25 10:47:12 +01:00
André Rainho
465745ffd6
new entry for presentations/videos
API hacking for the Actually Pretty Inexperienced hacker
2021-06-22 11:06:55 +01:00
André Rainho
034f150538
rename item 2021-06-19 13:51:01 +01:00
André Rainho
09f1472310
seclists for api's and graphql
danielmiessler SecLists for web-content discovery of API's and GraphQL
2021-06-19 13:49:42 +01:00
André Rainho
a7944e8a9b
new entry called 'other resources'
including a list of API endpoints & objects at 'other resources'
2021-06-19 07:54:11 +01:00
André Rainho
c85059cd37
adding entry for astra
Automated security testing for REST API's
2021-06-19 07:51:23 +01:00
André Rainho
bca4bf6f74
add missing squares to menus 2021-05-14 09:14:20 +01:00
André Rainho
7100b2e413
fix project and newsletter menus 2021-05-14 09:13:04 +01:00
André Rainho
6463601290
pentesting lab and newsletter entries 2021-05-14 09:11:47 +01:00
André Rainho
b0eca97d1d
add owasp api security project and fix other info 2021-05-09 11:23:01 +01:00
André Rainho
e6215d437f
add GraphQL penetration testing entry 2021-05-04 12:28:07 +01:00