Performing API Rate Limiting Bypass

Use when tests API rate limiting implementations for bypass vulnerabilities by manipulating request headers, IP addresses, HTTP methods, API versions, and encoding schemes to circumvent request throttling controls. The tester identifies rate limit headers, determines enforcement mechanisms, and attempts bypasses including X-Forwarded-For spoofing, parameter pollution, case variation, and endpoint path manipulation. Maps to OWASP API4:2023 Unrestricted Resource Consumption.

oyi77 97f2bb5 4.1 KB Updated 10 repo stars

File contents

oyi77/1ai-skills/tree/main/cybersecurity/performing-api-rate-limiting-bypass commit 97f2bb5334

Frequently asked questions

npx skillmds add oyi77/performing-api-rate-limiting-bypass