API Authentication Attacks - using Zap Proxy, BurpSuite and Wfuzz
To run the tests in a self-hosted environment, we can use vAPI, which is a vulnerable, adversely programmed interface that is a self-hostable API. Running vAPI using a Docker container is fairly straightforward. Download the vAPI GitHub repo into a f...
Feb 1, 20233 min read556
