Treceți offline cu aplicația Player FM !
API Security Quick Start: Bas Dijkstra
Manage episode 438536266 series 3490860
Do security tests and APIs leave you confused? Expert Bas Dijkstra makes API testing look easy and shares the essentials every dev ops professional needs to know.
You’ll learn how to spot and fix common API vulnerabilities, including sneaky JavaScript injections to the all-too-common broken object-level authorization. With hands-on demos and practical advice, you'll discover how to fortify your APIs against real-world threats. But that's not all—Bas also gives us a sneak peek into his upcoming contract testing course, perfect for anyone looking to master integration testing and ensure seamless API communication.
❓What did you think of the show? Leave your anonymous feedback:
https://forms.gle/Df5sDABiNMQn4YSj7
CONNECT WITH BAS DIJKSTRA
💡 LINKEDIN: https://www.linkedin.com/in/basdijkstra/
✅ WEBSITE: https://www.ontestautomation.com/
✅ ON TEST AUTOMATION TRAINING: https://www.ontestautomation.com/training/
✅ CONTRACT TESTING COURSE: https://www.ontestautomation.com/training/contract-testing/
👨💻 GITHUB: https://github.com/basdijkstra
📧EMAIL: bas@ontestautomation.com
CONNECT WITH NIKOLAY ADVOLODKIN
💡 LINKEDIN (consider leaving a Recommendation): https://www.linkedin.com/in/nikolayadvolodkin/
✨ TIKTOK: https://www.tiktok.com/@nikolay.advolodkin/
📸 INSTAGRAM: https://www.instagram.com/nikolay.advolodkin/
🌎 WEBSITE: https://ultimateqa.com
🐦 X: https://X.com/Nikolay_A00
👨💻 GITHUB: https://github.com/nadvolod
📧 EMAIL: nikolay@saucelabs.com
JOIN THE CONVERSATION!
🎥 Subscribe to our YouTube channel now and get access to the latest exclusive shows, before anyone else! https://www.youtube.com/@test-automation-experience
▶ Sauce YouTube channel: https://www.youtube.com/@SauceLabs_Official
🤝 Community page: https://saucelabs.com/community
🏠 Home Page: https://saucelabs.com/
(00:00) Intro
(02:24 ) 60-Second API Security Testing Challenge
(03:06) JavaScript injection and input sanitization
(04:56) The role of AI in API Testing
(05:51) Impactful API Security Bug
(07:56) Starting API Security Testing
(09:26) Ideal API Response to invalid input
(11:58) OWASP API Security Top Ten
(13:33) Broken object-level authorization
(14:58) Unauthorized access testing
(21:41) Rate Limiting
(23:26) API Security University
(25:31) Exploratory testing techniques
(29:07) On Test Automation Courses
60 episoade
Manage episode 438536266 series 3490860
Do security tests and APIs leave you confused? Expert Bas Dijkstra makes API testing look easy and shares the essentials every dev ops professional needs to know.
You’ll learn how to spot and fix common API vulnerabilities, including sneaky JavaScript injections to the all-too-common broken object-level authorization. With hands-on demos and practical advice, you'll discover how to fortify your APIs against real-world threats. But that's not all—Bas also gives us a sneak peek into his upcoming contract testing course, perfect for anyone looking to master integration testing and ensure seamless API communication.
❓What did you think of the show? Leave your anonymous feedback:
https://forms.gle/Df5sDABiNMQn4YSj7
CONNECT WITH BAS DIJKSTRA
💡 LINKEDIN: https://www.linkedin.com/in/basdijkstra/
✅ WEBSITE: https://www.ontestautomation.com/
✅ ON TEST AUTOMATION TRAINING: https://www.ontestautomation.com/training/
✅ CONTRACT TESTING COURSE: https://www.ontestautomation.com/training/contract-testing/
👨💻 GITHUB: https://github.com/basdijkstra
📧EMAIL: bas@ontestautomation.com
CONNECT WITH NIKOLAY ADVOLODKIN
💡 LINKEDIN (consider leaving a Recommendation): https://www.linkedin.com/in/nikolayadvolodkin/
✨ TIKTOK: https://www.tiktok.com/@nikolay.advolodkin/
📸 INSTAGRAM: https://www.instagram.com/nikolay.advolodkin/
🌎 WEBSITE: https://ultimateqa.com
🐦 X: https://X.com/Nikolay_A00
👨💻 GITHUB: https://github.com/nadvolod
📧 EMAIL: nikolay@saucelabs.com
JOIN THE CONVERSATION!
🎥 Subscribe to our YouTube channel now and get access to the latest exclusive shows, before anyone else! https://www.youtube.com/@test-automation-experience
▶ Sauce YouTube channel: https://www.youtube.com/@SauceLabs_Official
🤝 Community page: https://saucelabs.com/community
🏠 Home Page: https://saucelabs.com/
(00:00) Intro
(02:24 ) 60-Second API Security Testing Challenge
(03:06) JavaScript injection and input sanitization
(04:56) The role of AI in API Testing
(05:51) Impactful API Security Bug
(07:56) Starting API Security Testing
(09:26) Ideal API Response to invalid input
(11:58) OWASP API Security Top Ten
(13:33) Broken object-level authorization
(14:58) Unauthorized access testing
(21:41) Rate Limiting
(23:26) API Security University
(25:31) Exploratory testing techniques
(29:07) On Test Automation Courses
60 episoade
Toate episoadele
×Bun venit la Player FM!
Player FM scanează web-ul pentru podcast-uri de înaltă calitate pentru a vă putea bucura acum. Este cea mai bună aplicație pentru podcast și funcționează pe Android, iPhone și pe web. Înscrieți-vă pentru a sincroniza abonamentele pe toate dispozitivele.