
Learn OWASP's API security top 10, including broken object level authorization, broken authentication, excessive data exposure, rate limiting issues, and other risks, with real-world examples and official resources.
Explore how mass assignment, insecure parameter handling, and injection flaws enable privilege escalation in APIs (A6 to A10), while misconfiguration, weak encryption, exposed headers, and insufficient logging enable attacks.
Please download the OWASP Top 10 for API cheatsheet, print it out and put it on your desk!
In this course I will present you an overview of the new OWASP Top 10 for APIs project.
You will learn the 10 application security risks that can impact APIs. Learn about broken access control, security misconfiguration, broken authentication, ... with clear examples of security breaches that have been published in the last year.