Yacine Kheddache · @YadaYac
7 followers · 46 posts · Server hachyderm.io

📢 Have you ever wanted to understand what Inner and Outer loops are for development? Explore it with me by reading this article and see how
@microcksio fits perfectly and helps with your objectives 🚀

linkedin.com/pulse/how-microck

#cloudnative #opensource #apimock #apitesting

Last updated 1 year ago

Marcin Grzejszczak · @toomuchcoding
608 followers · 295 posts · Server fosstodon.org

Hey 👋 ! Have you heard about 🤔 ? Do you know that you can use Contract with non-Spring and non-JVM projects? Check this video from a couple of years ago that explains it all: youtube.com/watch?v=gqkh9fJvSr .

#contracttesting #springcloud #springcloudcontract #apitesting #java

Last updated 1 year ago

Dana Epp :donor: :verified: · @danaepp
290 followers · 296 posts · Server infosec.exchange

Changes are coming to the OWASP API Security Top 10. Check out this article to find out what might affect you and your API security testing.

danaepp.com/owasp-api-security

#owasp #apisecurity #apitesting

Last updated 1 year ago

Dana Epp :donor: :verified: · @danaepp
288 followers · 294 posts · Server infosec.exchange

Let me show you how to build an API security testing checklist that leverages common attack pattern enumeration in a way so you can start thinking about how to approach a target, how to attack it, and how to leave little to no trace.

danaepp.com/an-api-security-te

#apisecurity #apihacking #apitesting

Last updated 1 year ago

Dana Epp :donor: :verified: · @danaepp
286 followers · 295 posts · Server infosec.exchange

Testing APIs? You owe it to yourself to look at it through a security lens. Check out this article to find out why.

danaepp.com/analyzing-your-exi

#apitesting #apihacking #apisecurity

Last updated 1 year ago

Dana Epp :donor: :verified: · @danaepp
286 followers · 295 posts · Server infosec.exchange

Check out this post I wrote on how to hack your hardware to find the firmware and swipe the source code of APIs under security testing.

danaepp.com/exploiting-embedde

#apihacking #apisecurity #apitesting

Last updated 1 year ago

Gil Zilberfeld · @gilz
40 followers · 53 posts · Server sw-development-is.social
Gil Zilberfeld · @gilz
39 followers · 51 posts · Server sw-development-is.social
Dana Epp :donor: :verified: · @danaepp
262 followers · 246 posts · Server infosec.exchange

Check out this article and get a step-by-step guide to writing custom BurpSuite extensions to help you with API pentesting.

danaepp.com/a-step-by-step-gui

#apihacking #apisecurity #apitesting

Last updated 2 years ago

Dana Epp :donor: :verified: · @danaepp
258 followers · 235 posts · Server infosec.exchange

Ask yourself these five simple questions as you prepare for an API penetration testing engagement. It will surely make it more successful.

danaepp.com/5-simple-questions

#apitesting #apihacking #apisecurity

Last updated 2 years ago

Gil Zilberfeld · @gilz
38 followers · 33 posts · Server sw-development-is.social

How much time and effort goes into test automation maintenance? Automation test suites should be helping us. How come we end up working for them?

Check out my blog post.

everydayunittesting.com/2022/1

, , , ,

#testing #automatedtesting #apitesting #testability #rest #api #apis

Last updated 2 years ago

Dana Epp :donor: :verified: · @danaepp
256 followers · 233 posts · Server infosec.exchange

Let me show you a few online training resources that can help you practice and improve your API hacking tradecraft.

danaepp.com/3-training-resourc

#apihacking #apisecurity #apitesting

Last updated 2 years ago

:mastodon: Mike Amundsen · @mamund
1360 followers · 834 posts · Server mastodon.social

Cisco ThousandEyes: Go deep, granular & adaptive on API testing b.mamund.com/3SVAfPK

"adaptive API monitoring – a new approach that offers a dynamic synthetic testing framework that emulates backend application interactions with remote API endpoints."

#api360 #apitesting

Last updated 2 years ago

Dana Epp :donor: :verified: · @danaepp
256 followers · 233 posts · Server infosec.exchange

Let me tell you a story about the time I hacked into a .NET API through a bit of luck and reverse engineering.

danaepp.com/hacking-a-net-api-

#apisecurity #apihacking #apitesting

Last updated 2 years ago

· @spookydonut
4 followers · 18 posts · Server qualityassurance.dev

Does anyone have recommendations for alternatives to postman? Specifically it should have some ability to add MFA and enforce/view the status of MFA (postman doesn't), or can use sso.

#postman #apitesting

Last updated 2 years ago

Dana Epp :donor: :verified: · @danaepp
211 followers · 206 posts · Server infosec.exchange

Check out how I extract API artifacts directly from a docker image and decompile them back to source code for vulnerability research.

danaepp.com/defeating-a-docker

#apihacking #apisecurity #apitesting

Last updated 2 years ago

Gil Zilberfeld · @gilz
27 followers · 9 posts · Server sw-development-is.social
Gil Zilberfeld · @gilz
25 followers · 4 posts · Server sw-development-is.social
Gil Zilberfeld · @gilz
25 followers · 3 posts · Server sw-development-is.social
Gil Zilberfeld · @gilz
24 followers · 2 posts · Server sw-development-is.social