Explore Academic Resources

API Red-Teaming: The Complete Guide to Finding and Exploiting API Vulnerabilities

TLDR What Is API Red-Teaming? API red-teaming is an offensive security exercise where testers act as

API Discovery

All You Need to Know About API Discovery

TL;DR What is API Discovery? API discovery identifies every API that an organization runs, whether a

Broken Function Level Authorization (BFLA): How Attackers Turn Innocent API Endpoints into Admin Consoles

Every api endpoint your application exposes is a potential door. Broken function level authorization is what

Featured Posts

Filter by Tags

Zero-day Attack

A Zero-day Attack is a cyberattack that exploits a previously unknown vulnerability – a “zero-day vulnerability”

WebSockets

WebSockets is a communication protocol that provides full-duplex, persistent, two-way communication channels between a client (such

Web Scraping

Web Scraping is the automated extraction of data from websites and web applications, typically using bots