🚀 Join us for 30days of daily API security tests. #30days30tests We've spent last 120days building amazing API security tests for the community. Next 30 days we will post test tutorials here.
-
Updated
May 22, 2023
🚀 Join us for 30days of daily API security tests. #30days30tests We've spent last 120days building amazing API security tests for the community. Next 30 days we will post test tutorials here.
Burp Suite extension for API security testing with 15 attack types, 108+ payloads, intelligent fuzzing, BOLA/IDOR detection, AI integration, and automated reconnaissance. Supports REST/GraphQL/SOAP APIs with Nuclei, Turbo Intruder, and external tool integration. OWASP API Top 10 coverage.
Community generated list of API security tests to find OWASP top10, HackerOne top 10 vulnerabilities
API security assessment of OWASP Juice Shop with report, BOLA/IDOR PoCs, and remediation.
Add a description, image, and links to the bola topic page so that developers can more easily learn about it.
To associate your repository with the bola topic, visit your repo's landing page and select "manage topics."