🐼
Hacking APIs
search
⌘Ctrlk
🐼
Hacking APIs
  • How web application works?
  • The Anatomy of Web API
  • API Insecurities
  • Setting up an API hacking system
  • API Targets
  • Discovering APIs
  • Endpoint analysis
  • Vulnerabilities
  • Attacking API auth
  • Fuzzing
  • Exploiting API Auth
    • BOLA (Broken Object Level Authorization)
    • BFLA (Broken Function Level Authorization)
  • Exploting Mass Assignment
  • API Injection
  • AWS
  • Writeups
  • Misc
  • Tools
  • Resources
  • Wordpress API
  • Prevention
gitbookPowered by GitBook
block-quoteOn this pagechevron-down

Exploiting API Auth

BOLA (Broken Object Level Authorization)chevron-rightBFLA (Broken Function Level Authorization)chevron-right
PreviousFuzzing Wide and Deepchevron-leftNextBOLA (Broken Object Level Authorization)chevron-right