Curriculum
Course:
API Penetration Testing
Login
Curriculum
API Penetration Testing
π Module 1: Introduction to API Security (Week 1)
0/2
Lesson 1: Understanding APIs and Their Architectures
Text lesson
Preview
Lesson 2: Threat Landscape of APIs
Text lesson
Preview
π Module 2: Setting Up the Pen Testing Lab (Week 2)
0/2
Lesson 3: Building Your Testing Environment
Text lesson
Preview
Lesson 4: Reconnaissance for APIs
Text lesson
Preview
π Module 3: Authentication and Authorization Attacks (Week 3β4)
0/2
Lesson 5: Authentication Mechanisms in APIs
Text lesson
Preview
Lesson 6: Authorization Bypass Techniques
Text lesson
Preview
π Module 4: Input Validation & Injection Attacks (Week 5β6)
0/2
Lesson 7: SQL, NoSQL, and Command Injections in APIs
Text lesson
Preview
Lesson 8: Testing for Cross-Site Scripting (XSS) and SSRF
Text lesson
Preview
π Module 5: Exploiting Business Logic and Rate Limiting (Week 7β8)
0/2
Lesson 9: Business Logic Abuse
Text lesson
Preview
Lesson 10: Testing for Rate Limiting and DoS Vulnerabilities
Text lesson
Preview
π Module 6: Advanced API Testing and GraphQL Security (Week 9β10)
0/2
Lesson 11: GraphQL API Hacking Techniques
Text lesson
Preview
Lesson 12: Mass Assignment and IDOR Attacks
Text lesson
Preview
π Module 7: Reporting, Remediation, and Final Project (Week 11β12)
0/2
Lesson 13: Writing Effective API Pentest Reports
Text lesson
Preview
Lesson 14: Final Capstone Project: Full API Penetration Test
Text lesson
Preview
Text lesson
Lesson 9: Business Logic Abuse
Β
Β
How to manipulate API flows for financial or functional gain
Β
Β
Sign In
The password must have a minimum of 8 characters of numbers and letters, contain at least 1 capital letter
I want to sign up as instructor
Remember me
Sign In
Sign Up
Restore password
Send reset link
Password reset link sent
to your email
Close
Your application is sent
We'll send you an email as soon as your application is approved.
Go to Profile
No account?
Sign Up
Sign In
Lost Password?
WhatsApp us