Udemy
    •  
    •  
    •  
    •  
    •  
    •  
    •  
    •  
Turn what you know into an opportunity and reach millions around the world.
Learn More
Your cart is empty.
Keep shopping
Web Security: OWASP Top 10 for APIs
Rating: 3.6 out of 5(40 ratings)
137 students

Web Security: OWASP Top 10 for APIs

How to protect your APIs against attacks
Created byErwin Geirnaert
Last updated 1/2020
English
English [Auto],

What you'll learn

  • The security risks and vulnerabilities when developing or using APIs for web/mobile/IoT/...

Course content

1 section5 lectures1h 12m total length
  • Introduction14:41
  • About OWASP4:23

    Learn OWASP's API security top 10, including broken object level authorization, broken authentication, excessive data exposure, rate limiting issues, and other risks, with real-world examples and official resources.

  • OWASP Top 10 for APIs - A1 to A528:27
  • OWASP Top 10 for APIs: A6 to A1022:48

    Explore how mass assignment, insecure parameter handling, and injection flaws enable privilege escalation in APIs (A6 to A10), while misconfiguration, weak encryption, exposed headers, and insufficient logging enable attacks.

  • Wrap-up1:51

    Please download the OWASP Top 10 for API cheatsheet, print it out and put it on your desk!

  • Test your API Security skills

Requirements

  • Basic security and development knowledge

Description

In this course I will present you an overview of the new OWASP Top 10 for APIs project.

You will learn the 10 application security risks that can impact APIs. Learn about broken access control, security misconfiguration, broken authentication, ... with clear examples of security breaches that have been published in the last year.

Who this course is for:

  • Developers that want to learn more about API Security and API Hacking