Owasp Api3

Owasp Api3 taxonomy generated by the site skill importer.

2 skills
M
exploiting-excessive-data-exposure-in-api

by mukul975

exploiting-excessive-data-exposure-in-api helps security audit teams inspect API responses for over-shared fields, including PII, secrets, internal IDs, and debug data. It provides a focused workflow, reference patterns, and analyzer logic for comparing returned data against expected schema and roles.

Security Audit
Favorites 0GitHub 0
M
exploiting-api-injection-vulnerabilities

by mukul975

exploiting-api-injection-vulnerabilities skill for Security Audit teams testing APIs for SQL injection, NoSQL injection, command injection, LDAP injection, and SSRF across parameters, headers, and request bodies. This guide helps you spot risky inputs, compare baseline responses, and validate whether backend interactions are injectable.

Security Audit
Favorites 0GitHub 0