Artwork

Content provided by Nikolay Advolodkin. All podcast content including episodes, graphics, and podcast descriptions are uploaded and provided directly by Nikolay Advolodkin or their podcast platform partner. If you believe someone is using your copyrighted work without your permission, you can follow the process outlined here https://ro.player.fm/legal.
Player FM - Aplicație Podcast
Treceți offline cu aplicația Player FM !

API Security Quick Start: Bas Dijkstra

33:51
 
Distribuie
 

Manage episode 438536266 series 3490860
Content provided by Nikolay Advolodkin. All podcast content including episodes, graphics, and podcast descriptions are uploaded and provided directly by Nikolay Advolodkin or their podcast platform partner. If you believe someone is using your copyrighted work without your permission, you can follow the process outlined here https://ro.player.fm/legal.

Do security tests and APIs leave you confused? Expert Bas Dijkstra makes API testing look easy and shares the essentials every dev ops professional needs to know.

You’ll learn how to spot and fix common API vulnerabilities, including sneaky JavaScript injections to the all-too-common broken object-level authorization. With hands-on demos and practical advice, you'll discover how to fortify your APIs against real-world threats. But that's not all—Bas also gives us a sneak peek into his upcoming contract testing course, perfect for anyone looking to master integration testing and ensure seamless API communication.
❓What did you think of the show? Leave your anonymous feedback:

https://forms.gle/Df5sDABiNMQn4YSj7

CONNECT WITH BAS DIJKSTRA

💡 LINKEDIN: https://www.linkedin.com/in/basdijkstra/

✅ WEBSITE: https://www.ontestautomation.com/

✅ ON TEST AUTOMATION TRAINING: https://www.ontestautomation.com/training/

✅ CONTRACT TESTING COURSE: https://www.ontestautomation.com/training/contract-testing/

👨‍💻 GITHUB: https://github.com/basdijkstra

📧EMAIL: bas@ontestautomation.com

CONNECT WITH NIKOLAY ADVOLODKIN

💡 LINKEDIN (consider leaving a Recommendation): https://www.linkedin.com/in/nikolayadvolodkin/

✨ TIKTOK: https://www.tiktok.com/@nikolay.advolodkin/

📸 INSTAGRAM: https://www.instagram.com/nikolay.advolodkin/

🌎 WEBSITE: https://ultimateqa.com

🐦 X: https://X.com/Nikolay_A00

👨‍💻 GITHUB: https://github.com/nadvolod

📧 EMAIL: nikolay@saucelabs.com

JOIN THE CONVERSATION!

🎥 Subscribe to our YouTube channel now and get access to the latest exclusive shows, before anyone else! https://www.youtube.com/@test-automation-experience

▶ Sauce YouTube channel: https://www.youtube.com/@SauceLabs_Official

‍🤝‍ Community page: https://saucelabs.com/community

🏠 Home Page: https://saucelabs.com/

(00:00) Intro

(02:24 ) 60-Second API Security Testing Challenge

(03:06) JavaScript injection and input sanitization

(04:56) The role of AI in API Testing

(05:51) Impactful API Security Bug

(07:56) Starting API Security Testing

(09:26) Ideal API Response to invalid input

(11:58) OWASP API Security Top Ten

(13:33) Broken object-level authorization

(14:58) Unauthorized access testing

(21:41) Rate Limiting

(23:26) API Security University

(25:31) Exploratory testing techniques

(29:07) On Test Automation Courses

  continue reading

60 episoade

Artwork
iconDistribuie
 
Manage episode 438536266 series 3490860
Content provided by Nikolay Advolodkin. All podcast content including episodes, graphics, and podcast descriptions are uploaded and provided directly by Nikolay Advolodkin or their podcast platform partner. If you believe someone is using your copyrighted work without your permission, you can follow the process outlined here https://ro.player.fm/legal.

Do security tests and APIs leave you confused? Expert Bas Dijkstra makes API testing look easy and shares the essentials every dev ops professional needs to know.

You’ll learn how to spot and fix common API vulnerabilities, including sneaky JavaScript injections to the all-too-common broken object-level authorization. With hands-on demos and practical advice, you'll discover how to fortify your APIs against real-world threats. But that's not all—Bas also gives us a sneak peek into his upcoming contract testing course, perfect for anyone looking to master integration testing and ensure seamless API communication.
❓What did you think of the show? Leave your anonymous feedback:

https://forms.gle/Df5sDABiNMQn4YSj7

CONNECT WITH BAS DIJKSTRA

💡 LINKEDIN: https://www.linkedin.com/in/basdijkstra/

✅ WEBSITE: https://www.ontestautomation.com/

✅ ON TEST AUTOMATION TRAINING: https://www.ontestautomation.com/training/

✅ CONTRACT TESTING COURSE: https://www.ontestautomation.com/training/contract-testing/

👨‍💻 GITHUB: https://github.com/basdijkstra

📧EMAIL: bas@ontestautomation.com

CONNECT WITH NIKOLAY ADVOLODKIN

💡 LINKEDIN (consider leaving a Recommendation): https://www.linkedin.com/in/nikolayadvolodkin/

✨ TIKTOK: https://www.tiktok.com/@nikolay.advolodkin/

📸 INSTAGRAM: https://www.instagram.com/nikolay.advolodkin/

🌎 WEBSITE: https://ultimateqa.com

🐦 X: https://X.com/Nikolay_A00

👨‍💻 GITHUB: https://github.com/nadvolod

📧 EMAIL: nikolay@saucelabs.com

JOIN THE CONVERSATION!

🎥 Subscribe to our YouTube channel now and get access to the latest exclusive shows, before anyone else! https://www.youtube.com/@test-automation-experience

▶ Sauce YouTube channel: https://www.youtube.com/@SauceLabs_Official

‍🤝‍ Community page: https://saucelabs.com/community

🏠 Home Page: https://saucelabs.com/

(00:00) Intro

(02:24 ) 60-Second API Security Testing Challenge

(03:06) JavaScript injection and input sanitization

(04:56) The role of AI in API Testing

(05:51) Impactful API Security Bug

(07:56) Starting API Security Testing

(09:26) Ideal API Response to invalid input

(11:58) OWASP API Security Top Ten

(13:33) Broken object-level authorization

(14:58) Unauthorized access testing

(21:41) Rate Limiting

(23:26) API Security University

(25:31) Exploratory testing techniques

(29:07) On Test Automation Courses

  continue reading

60 episoade

Toate episoadele

×
 
Loading …

Bun venit la Player FM!

Player FM scanează web-ul pentru podcast-uri de înaltă calitate pentru a vă putea bucura acum. Este cea mai bună aplicație pentru podcast și funcționează pe Android, iPhone și pe web. Înscrieți-vă pentru a sincroniza abonamentele pe toate dispozitivele.

 

Ghid rapid de referință