Mô tả

This course introduces students to the security concepts associated with REST APIs. This is an entry level course and we encourage you to take this course if you are a beginner in REST API security world. This course uses a custom developed vulnerable REST APIs to demonstrate how REST API vulnerabilities can be identified and exploited. This course teaches you how to identify a variety of REST API vulnerabilities such as SQL Injection, XXE, Sensitive data in GET, Leaky APIs etc.

Bạn sẽ học được gì

Learn what are REST APIs

Learn how to pentest REST APIs

Learn common vulnerabilities in REST APIs

Learn to exploit SQL Injection

Learn to exploit XXE vulnerabilities

Learn automated tools for REST API Security Testing

Yêu cầu

  • The course starts from basics, however it is good to have basic knowledge of web applications and REST APIs

Nội dung khoá học

8 sections

Course Introduction

1 lectures
Introduction
01:16

Lab setup

3 lectures
Custom Vulnerable APIs - Download
00:09
API Documentation - Download
00:04
Exploring the lab
06:41

Basics of REST APIs

3 lectures
What is REST?
01:19
REST Concepts
02:01
REST is Stateless
01:04

Pentesting REST APIs

14 lectures
Introduction
01:52
Traditional Web vulnerabilities in REST
00:44
SQL Injection
11:42
SQL Injection - Vulnerable code
01:21
Sensitive data in GET
01:44
Weak Auth tokens & IDOR
03:42
Leaky APIs and Insecure Data Storage
01:21
Leaky APIs - Real World Example
00:03
API Documentation Walk through
03:15
XML External Entity Injection - XXE
03:47
XXE - Vulnerable code
01:03
Broken Authentication
05:02
Abusing lack of Rate Limiting
06:26
More tips for pentesters
02:22

Automated Assessments

3 lectures
Introduction
00:59
Automated Scanning with FuzzAPI
04:42
Automated Scanning with Astra
04:19

More Challenges

1 lectures
More Challenges
00:14

Conclusion

1 lectures
Conclusion
00:21

bonus section

1 lectures
bonus lecture
00:17

Đánh giá của học viên

Chưa có đánh giá
Course Rating
5
0%
4
0%
3
0%
2
0%
1
0%

Bình luận khách hàng

Viết Bình Luận

Bạn đánh giá khoá học này thế nào?

image

Đăng ký get khoá học Udemy - Unica - Gitiho giá chỉ 50k!

Get khoá học giá rẻ ngay trước khi bị fix.