API Security Testing

Use when testing REST, GraphQL, gRPC, or WebSocket APIs against the OWASP API Security Top 10 — object- and function-level authorization (BOLA/BFLA), excessive data exposure, mass assignment, unrestricted resource consumption, and GraphQL-specific abuse. For apps you own or are authorized to test.

mn-youssef 54b7e8d 2 files · 7.5 KB Updated

File contents

mn-youssef/security-skills/tree/main/skills/api-security-testing commit 54b7e8df9b

Frequently asked questions

npx skillmds@latest add mn-youssef/api-security-testing