Finding and Exploiting an Unused API Endpoint

preview_player
Показать описание
👩‍🎓👨‍🎓 Learn about API testing! To solve this lab, we'll need to exploit a hidden API endpoint to buy a Lightweight l33t Leather Jacket.

Overview:
0:00 Intro
0:10 Identifying API endpoints
1:00 Interacting with API endpoints
1:25 Identifying supported HTTP methods
2:25 Identifying supported content types
3:02 Fuzzing to find hidden endpoints
3:38 Lab: Finding and exploiting an unused API endpoint
3:54 Check for API documentation
4:21 Interact with API endpoints
5:40 Modify content-type to alter product price
6:43 Conclusion
Рекомендации по теме
Комментарии
Автор

Is this Cryptocat? This guy is worth his absolute weight in gold to intigriti. I can't tell you how much he's helped me with random questions and fine tuning reports. Whatever he's being paid ..double it.

camelotenglishtuition
Автор

If we analysed the steps taken to solve the lab, you would realize at no point did you "uncover an endpoint"

Official_Baba_yaga