Free API Hacking course!
I interview Corey Ball who wrote the book "Hacking APIs" and he tells us about his book and the free training he is making available. This is a cool announcement :)
// MENU //
00:00 - Why talk about pentesting at all?
00:21 - Welcome//Corey
00:48 - What is an API and Why Care?
01:52 - Free API Hacking Course!
02:11 - Overview//Course
02:28 - Do I Need the Book to do the Course?
02:39 - Pre-reqs for Course
03:07 - Cert//When?
03:22 - Hacking APIs//Origin Story
05:34 - The Start//USPS Data Leak
07:31 - OWASP Top 10 Explained
07:49 - API1//Broken Object Level Authorization
08:46 - Testing for BO…
Watch on YouTube ↗
(saves to browser)
Chapters (42)
Why talk about pentesting at all?
0:21
Welcome//Corey
0:48
What is an API and Why Care?
1:52
Free API Hacking Course!
2:11
Overview//Course
2:28
Do I Need the Book to do the Course?
2:39
Pre-reqs for Course
3:07
Cert//When?
3:22
Hacking APIs//Origin Story
5:34
The Start//USPS Data Leak
7:31
OWASP Top 10 Explained
7:49
API1//Broken Object Level Authorization
8:46
Testing for BOLA
9:59
API2//Broken User Authentication
10:35
Leaked API Keys on GitHub?
10:59
API3//Excessive Data Exposure
12:05
API9//Improper Asset Management
13:53
The World is Running on APIs
14:53
Who is this Book For?
16:19
Set Up Hacking Lab
17:47
You Just Need a Laptop to Start Hacking!
17:52
Free API Hacking Tools
20:14
What is Kiterunner
20:47
Gobuster vs Kiterunner
21:51
Free Wordlists!
22:05
What is fuzzing and free fuzzing tool
23:17
More Tools?
23:47
How To Find APIs
25:02
Using nmap to find APIs?
26:09
Hacking APIs as your start in hacking
28:09
Difference//REST//GraphQL
29:07
Learn REST or GraphQL?
31:07
Take a University Course?
31:44
Hacking Certifications//Worth It?
33:42
Being Hacked//How Corey Started
36:31
Corey's OSCP Experience
38:09
Hacking APIs As An Alternative Path
38:41
Resources to Start With
39:26
Ten Years of Experience?
39:52
Huge Demand for Hacking APIs
40:25
The Course is Completely Free
41:37
Thank You & Final Words
Playlist
Uploads from David Bombal · David Bombal · 0 of 60
← Previous
Next →
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
RYU SDN Controller Part 3: OpenFlow 1.3: Practical GNS3 SDN and OpenFlow
David Bombal
RYU SDN Controller Part 4: Graphical User Interface (GUI): Practical GNS3 SDN and OpenFlow
David Bombal
GNS3 Talks: IOSvL2 switching appliance import & configuration
David Bombal
HPE Network Protector SDN Application Part 1 - Introduction
David Bombal
HPE Network Protector SDN Application Part 2 : DNS Interception using OpenFlow
David Bombal
HPE Network Protector SDN Application Part 3 - Lab Setup using Physical Switches
David Bombal
HPE Network Protector SDN Application Part 4 - Demo of malicious websites blocked
David Bombal
HPE Network Protector SDN Application Part 5 - Demo OpenFlow table interception flows
David Bombal
HPE Network Protector SDN Application Part 6 - Demo of Physical Switch configuration
David Bombal
GNS3 Talks: IOSv Appliance - get IOS 15.X on GNS3
David Bombal
HPE Network Protector SDN Application Part 7 - Demo Service Insertion Tunnel / GRE Tunnel
David Bombal
HPE Network Protector SDN Application Part 8 - Demo SDN OpenFlow Reporting
David Bombal
HPE Network Protector SDN Application Part 9 - Demo switches interception of DNS traffic
David Bombal
GNS3 Talks: GNS3 version 1.5.X Appliance Tips
David Bombal
CCNA 200-125 Exam: AAA demo: TACACS+ with GNS3
David Bombal
CCNA 200-125 Exam: PPPoE Server Demo with GNS3
David Bombal
CCNA VLOG #001: Troubleshooting OSPF for the CCNA 120-125 exam
David Bombal
CCNA VLOG #002: Q&A: Loopback? What? Why? CCNA 120-125 questions
David Bombal
GNS3 Talks: Install GNS3 1.5.X on a Mac with GNS3 VM
David Bombal
CCNA VLOG #003: What's your name? That won't work! CCNA Troubleshooting
David Bombal
CCNA VLOG #004: IP default gateway versus default route
David Bombal
CCNA VLOG #005: Why is the network broken? CCNA 200-125 Troubleshooting
David Bombal
CCNA VLOG #006: Troubleshoot Telnet issues in preparation for the CCNA 200-125 exam
David Bombal
CCNA VLOG #007: BGP configuration and verification for the CCNA 200-125 exam
David Bombal
CCNA VLOG #008: BGP troubleshooting for the CCNA 200-125 exam
David Bombal
CCNA VLOG #009: BGP troubleshooting 2 - lost BGP route - CCNA 200-125 exam
David Bombal
GNS3 2.0.0 beta 2 install
David Bombal
CCNA VLOG #010: Q&A: Loopbacks? Another good reason to use loopbacks! CCNA 120-125
David Bombal
CCNA VLOG #011: BGP troubleshooting 3 - Neighbor down! CCNA 200-125 exam
David Bombal
CCNA #012: Learn SNMP with GNS3, Wireshark and Solarwinds NPM - CCNA 200-125 exam
David Bombal
CCNA #013: Spanning Tree CCNA Exam Questions: Know the answer? CCNA 200-125 exam
David Bombal
CCNA #014: Routing decisions? OSPF or EIGRP? CCNA 200-125 exam questions
David Bombal
CCNA #015: DHCP Server and client configuration using Cisco IOS: CCNA 200-125 exam
David Bombal
CCNA #016: OSPF, EIGRP, RIP or Static Routes? Routing decisions? CCNA 200-125 exam
David Bombal
GNS3 2.0.0 beta : GNS3 VM integration with GNS3 GUI
David Bombal
CCNA #017: What is a RIB Failure? EBGP versus IBGP? CCNA 200-125 exam questions
David Bombal
CCNA #018: Routing exam questions: Who wins? OSPF, EIGRP or RIP? Sure? CCNA 200-125 exam
David Bombal
CCNA #019: Spanning Tree CCNA Exam Questions: Root Bridge, Root Port and more: CCNA 200-125 exam
David Bombal
CCNA #020: Static NAT Demo: CCNA 200-125 exam
David Bombal
GNS3 Talks: GNS3 and Physical device OSPF route exchange
David Bombal
GNS3 Download, installation and configuration - GNS3 1.5.3 and Windows 10
David Bombal
ESXi Part 1: GNS3, VMware ESXi and the GNS3 VM
David Bombal
CCNA VLOG #021 EIGRP Neighbor Troubleshooting: Debugs show not common Subnet: CCNA 200-125 Exam
David Bombal
ESXi Part 2: GNS3, VMware ESXi and the GNS3 VM
David Bombal
ESXi Part 3: GNS3, VMware ESXi and the GNS3 VM
David Bombal
ESXi Part 4: GNS3, VMware ESXi and the GNS3 VM
David Bombal
CCNA #022 EIGRP Neighbor Troubleshooting for the CCNA 200-125 Exam
David Bombal
GNS3 VM Integration: GNS3 1.5.3, VMware and Windows 10 with GNS3 Talks
David Bombal
GNS3 GUI and VM upgrade on Windows: How to upgrade to 1.5.3 (includes GNS3 VM upgrade process)
David Bombal
CCNA #023 EIGRP Neighbor Troubleshooting (DUAL Issues) for the CCNA 200-125 Exam
David Bombal
CCNA #024 EIGRP Retransmission retry limit exceeded? EIGRP Neighbor Troubleshooting CCNA
David Bombal
GNS3 Talks: Integrate Windows Virtual Machine with GNS3 = GNS3+GNS3 VM + Windows 10 VM + Cisco
David Bombal
GNS3 GUI and VM upgrade on Mac OS X: How to upgrade to 1.5.3 (includes GNS3 VM upgrade process)
David Bombal
CCNA #025 EIGRP Neighbor Troubleshooting for the CCNA 200-125 Exam
David Bombal
CCNA #026 EIGRP Neighbor Troubleshooting (no neighbors) for the CCNA 200-125 Exam
David Bombal
GNS3 2.0 Architecture and schema Part 1: What is the GNS3 Controller?
David Bombal
GNS3 2.0 Architecture and schema Part 2: Emulators and virtualization
David Bombal
CCNA #027 200-125 Exam: MAC OS Simulator - are you ready for exam sims?
David Bombal
GNS3 Talks: Mac OS with Windows 10 Virtual Machine = Mac+GNS3+GNS3 VM+Windows 10 VM+Cisco
David Bombal
GNS3 2.0 New Features: Smart packet capture and capture on any link
David Bombal
DeepCamp AI