syselement's Blog
🏠 Home BlogXGitHub📚 Buy Me a Book📧 Contact
  • Home
  • Operating Systems
    • Linux
      • Everything Linux
      • Linux Distros
        • Kali Linux - VM
        • ParrotOS - VM
        • Rocky Linux
        • Ubuntu Desktop - VM
        • Ubuntu Server - VM
      • Linux Tools
        • BookStack
        • Nessus Essentials
        • SysReptor
        • Terminator
        • UniFi
        • Zsh & Oh-My-Zsh
    • Windows
      • 📃Everything Windows
      • Windows Tools
        • Hashcat
        • Vagrant
      • Windows Virtual Machines
        • Windows 11 - VM
        • Windows Server 2025 - VM
  • Courses Notes
    • eLearnSecurity / INE
      • eJPT - PTSv2
      • eMAPT
      • ICCA
    • Practical Networking
      • Practical TLS
        • TLS/SSL Overview
        • Cryptography
        • x509 Certificates and Keys
        • Security through Certificates
        • Cipher Suites
        • TLS/SSL Handshake
        • TLS Defenses
        • TLS Attacks & Vulnerabilities
        • What's new in TLS 1.3?
        • TLS 1.3 Under the Hood
        • TLS 1.3 Extensions
        • Practical TLS References
    • TCM Security
      • Linux101
      • MAPT
      • PEH
  • Cyber Everything
    • Generic Resources
      • Cryptography
      • CVSS 3.1
      • Cyber Threat Intelligence (CTI)
    • Mobile
      • Apps Lab
        • Android Rooting Guide
        • iOS Jailbreak Guide
        • Intercepting Android App Traffic
      • OWASP MAS
        • MASTG Techniques
        • MASTG Tests
        • MASTG Theory
        • MASVS Notes
      • Tools
        • MobSF
    • Network
      • Commands
        • Linux Privesc Commands
        • Networking Commands
    • Web
      • API
        • API Sec Fundamentals
        • API Penetration Testing
      • PortSwigger Academy
        • Server-Side Topics
        • Client-Side Topics
        • Advanced topics
        • Vulnerability Labs
    • Writeups & Walkthroughs
      • TryHackMe
        • Learn
          • Cyber Threat Intelligence
          • Intro to Defensive Security
          • Juice Shop
          • Upload Vulnerabilities
        • Practice
          • Easy
            • Blaster
            • Blue
            • Bolt
            • Chill Hack
            • Ice
            • Ignite
            • Retro
            • Startup
          • Medium
            • Blog
      • HackTheBox
        • Easy
          • Spectra
      • Capture The Flag
  • DevOps Everything
    • DevOps Resources
      • Introduction to DevOps
      • Ansible
      • Docker
      • Git
      • Kubernetes
      • Terraform
      • Vim
  • Home Lab
    • Hypervisors
      • Hyper-V
        • Windows WSL
      • Proxmox
        • Proxmox VE
        • Proxmox Upgrade 7 to 8
      • VMware
        • VMware Workstation Pro
    • Offensive Labs
      • Hashcat Password Cracking
      • Metasploitable3
    • Defensive Labs
      • Detection Lab
    • Misc Labs
      • Bitwarden On-Premise
      • OpenWrt & WiFi Exploitation
      • Passbolt CE - Ubuntu Server
Powered by GitBook
On this page

Was this helpful?

Edit on GitHub
  1. Cyber Everything
  2. Web
  3. API

API Penetration Testing

apisecuniversity.com - © APIsec.ai

🔗 API Penetration Testing - APIsec University

  • Instructor - Corey Ball

  • Course Duration - 12h


🌐 Resources 🔗

  • OWASP API Security Top 10

  • OWASP API Security Top 10 Vulnerabilities - APIsecurity.io

  • API Security Empire (Recon & Attack Mindmaps)

  • HackTricks - Web API Pentesting

  • awesome-api-security-essentials

Vulnerable API Labs

  • https://github.com/InsiderPhD/Generic-University

  • https://github.com/roottusk/vapi

  • https://github.com/erev0s/VAmPI


PreviousAPI Sec FundamentalsNextPortSwigger Academy

Last updated 8 months ago

Was this helpful?