Exploiting API Injection Vulnerabilities

Use when tests APIs for injection vulnerabilities including SQL injection, NoSQL injection, OS command injection, LDAP injection, and Server-Side Request Forgery (SSRF) through API parameters, headers, and request bodies. The tester crafts malicious payloads targeting different backend technologies and injection contexts to extract data, execute commands, or access internal services. Maps to OWASP API8:2023 Security Misconfiguration and API7:2023 SSRF.

oyi77 3e64fc9 4.5 KB Updated 10 repo stars

File contents

oyi77/1ai-skills/tree/main/cybersecurity/exploiting-api-injection-vulnerabilities commit 3e64fc9684

Frequently asked questions

npx skillmds add oyi77/exploiting-api-injection-vulnerabilities