Ball Corey J. - Hacking APIs. Breaking Web Application Programming Interfaces.pdf
(
24165 KB
)
Pobierz
PRAISE FOR
HACKING APIS
“Corey Ball’s
Hacking APIs
delivers exactly what it promises. From basic defini-
tions, through the theory behind common API weaknesses and hacking best
practices, the reader is encouraged to take a truly adversarial mindset. This
highly effective, hands-on journey starts with tool introduction and recon-
naissance, then covers everything from API fuzzing to complex access-control
exploitation. With detailed labs, tips and tricks, and real-life examples,
Hacking
APIs
is a complete workshop rolled into one book.”
—Erez Yalon, VP of security research
at Checkmarx and OWASP API
security project leader
“Author Corey Ball takes you on a lively guided tour through the life cycle of
APIs in such a manner that you’re wanting to not only know more, but also
anticipating trying out your newfound knowledge on the next legitimate
target. From concepts to examples, through to identifying tools and demon-
strating them in fine detail, this book has it all. It is the mother lode for API
hacking, and should be found next to the desk of ANYONE wanting to take
this level of adversarial research, assessment, or DevSecOps seriously.”
— Chris Roberts, strategic adviser at
Ethopass, international vCISO
“Hacking
APIs
is extremely helpful for anyone who wants to get into penetration
testing. In particular, this book gives you the tools to start testing the security
of APIs, which have become a weak point for many modern web applications.
Experienced security folks can get something out of the book, too, as it fea-
tures lots of helpful automation tips and protection-bypass techniques that
will surely up any pentester’s game.”
—Vickie Li, author of
B
ug
B
ounty
B
ootcamp
“This book opens the doors to the field of API hacking, a subject not very well
understood. Using real-world examples that emphasize vital access-control
issues, this hands-on tutorial will help you understand the ins and outs of
securing APIs, how to hunt great bounties, and will help organizations of all
sizes improve their overall API security.”
—Inon Shkedy, security researcher at
Traceable AI and OWASP API security
project leader
“Even though the internet is filled with information on any topic possible in
cybersecurity, it is still hard to find solid insight into successfully performing
penetration tests on APIs.
Hacking APIs
fully satisfies this demand—not only
for the beginner cybersecurity practitioner, but also for the seasoned expert.”
— Cristi Vlad, cybersecurity analyst
and penetration tester
HACKING APIS
B r e a k i n g We b A p p l i c a t i o n
Programming Interfaces
by Corey J. Ba ll
San Francisco
Plik z chomika:
george.mouflon
Inne pliki z tego folderu:
Ali Atif, Bhatti Baber Majid - Spies In The Bits And Bytes. The Art Of Cyber Threat Intelligence.pdf
(53311 KB)
Adamatzky Andrew (ed.) - Actin Computation. Unlocking The Potential Of Actin Filaments For Revolutionary Computing Systems.pdf
(21268 KB)
Barolli Leonard, Petrakis Euripides G. M., Hussain Farookh (ed.) - Advances In Internet, Data & Web Technologies. The 14th International Conference On Emerging Internet, Data And Web Technologies (EID.pdf
(41071 KB)
Caldwell Craig - Story Structure And Development. A Guide For Animators, VFX Artistis, Game Designers, And XR Creators (Second Edition).epub
(90699 KB)
Agrawal Neha, Kumar Rohit, Tapaswi Shashikala - Cloud Computing Security. Strategies And Best Practices.pdf
(18062 KB)
Inne foldery tego chomika:
Android
Art
Artificial Intelligence
Biology
C(++)
Zgłoś jeśli
naruszono regulamin