REST API - Bypasses and Privilege Escalations
REST API security testing
Methodology
Bypassing API filter and ACL by rewriting HTTP methods an URLs
Access Admin Interface
JWT Access Token Tampering
JWT Editor : Burp plugin
JWT Tool
Mass Assignment
API Tester
Vulnerable API Project to practice with
Last updated