Ethical Hacking of RESTful and GraphQL APIs Training Course

所在平台: Udemy

课程主页: https://www.udemy.com/course/ethical-hacking-of-restful-and-graphql-apis-training-course/

课程评论:没有评论

第一个写评论        关注课程

课程简介

课程名称:RESTful和GraphQL API的伦理黑客培训课程 课程概述: 欢迎参加RESTful和GraphQL API的伦理黑客培训课程。本课程并不教授Burp Suite的实际使用和功能,而是聚焦于RESTful和GraphQL API的安全漏洞,以实践为主的入门课程。这些API在现代网络和移动应用中非常常见。授课老师马丁·沃尔克(Martin Voelk)是一位拥有25年经验的网络安全专家,持有包括CISSP、OSCP、OSWP等多个顶级认证,他曾在大型科技公司担任顾问,并参与漏洞赏金计划,发现了数千个严重漏洞。 本课程包括API漏洞的理论介绍和常见RESTful API及GraphQL API漏洞的实际利用。部分实验使用Portswigger Web Academy Labs完成,另一些则在独立虚拟机上进行,如crAPI和DVGA。虽然培训不介绍crAPI或DVGA的安装,但可以在Windows或MacOS上通过虚拟盒子(virtual box)轻松安装。这门课程针对希望开始进行API渗透测试或API漏洞赏金猎人的学员,教学视频易于跟随和复现。 课程内容涵盖以下主题: - REST API概述 - REST API的发现与侦查 - 各种REST API漏洞(如对象级授权缺失、身份验证破损、敏感数据曝光等) - GraphQL概述及其关键术语 - GraphQL的攻击面分析 - 多种GraphQL攻击(如信息泄露、注入攻击等) 此外,课程提供在线的RESTful和GraphQL渗透测试练习场所,便于学员在不进行本地安装的情况下进行实践。 注意事项与免责声明: Portswigger Labs是公众免费使用的服务,用于提高技能。所有攻防活动仅限于有权限的目标,课程仅为教育目的,信息不得用于恶意利用。请耐心学习,渗透测试和漏洞猎取是一个漫长的过程。

课程评论(0条)

课程详情

Welcome to the Ethical Hacking of RESTful and GraphQL APIs Training CourseImportant note: This course is NOT teaching the actual usage of Burp Suite and its features. This course is a heavily hands-on introduction to both RESTful as well as GraphQL API vulnerabilities. These APIs are very common in modern web and mobile applications. Your instructor is Martin Voelk. He is a Cyber Security veteran with 25 years of experience. Martin holds some of the highest certification incl. CISSP, OSCP, OSWP, Portswigger BSCP, CCIE, PCI ISA and PCIP. He works as a consultant for a big tech company and engages in Bug Bounty programs where he found thousands of critical and high vulnerabilities.This course features theoretical introductions into API vulnerabilities followed by practical exploitations of common RESTful API and GraphQL API vulnerabilities. Some labs are being performed utilizing the Portswigger Web Academy Labs. Other labs are performed on standalone VMs such as crAPI and DVGA. As people use different platforms, The training will not show the set up of crAPI or DVGA. But you can install these easily on a free virtualization software like virtual box on Windows or MacOSX. Martin will be solving a lot of labs and explains each step on finding the vulnerability and why it can be exploited in a certain way. The videos are easy to follow along and replicate. This training is highly recommended for anyone who wants to start out in API Penetration Testing or API Bug Bounty Hunting.The course features the following topics.REST API IntroductionREST API Discovery and Recon REST API Enumeration REST API Broken Object Level Authorization (BOLA)REST API Broken AuthenticationREST API Broken Object Property Level AuthorizationREST API Excessive Data Exposure REST API Mass AssignmentREST API Unrestricted Resource ConsumptionREST API Broken Function Level Authorization (BLFA)REST API Unrestricted Access to Sensitive Business FlowsREST API Server Side Request Forgery (SSRF)REST API Security Misconfiguration REST API Improper Inventory Management REST API Unsafe Consumption of APIsREST API Server-side parameter pollutionGraphQL IntroductionGraphQL What is it?GraphQL Key terminologiesGraphQL Burp extensionsGraphQL WordlistsGraphQL PayloadsGraphQL ToolsGraphQL API Attack Surface, Recon, EnumerationGraphQL Attack Surface AnalysisGraphQL GET requests and the issuesGraphQL POST requestsGraphQL Information DisclosureGraphQL Introspection GraphQL GET vs. POST Introspection GraphQL Introspection filter bypass exampleGraphQL Non-prod GraphQL endpointsGraphQL Field SuggestionGraphQL Automating Field SuggestionGraphQL Field StuffingGraphQL Abusing Error MessagesGraphQL IDEGraphQL DoSGraphQL Deep Recursion Query AttackGraphQL Circular Fragment VulnerabilitiesGraphQL Batch Query Attacks / Resource Intensive Query AttacksGraphQL Field Duplication AttacksGraphQL Alias based attacks (DoS scenario)GraphQL Directive OverloadingGraphQL Object Limit OverridingGraphQL Array-Based Query BatchingGraphQL Authentication and Authorization attacksGraphQL Login functionsGraphQL Bypassing protections GraphQL Alias based attacks / query batching GraphQL JWT token forgery GraphQL Cookie forgery GraphQL Access control issues and IDORs GraphQL Injection attacksGraphQL OS Command InjectionGraphQL SQL Injection GraphQL HTML Injection GraphQL XSS (Cross-site scripting)GraphQL Request Forgery and HijackingGraphQL Server-side request forgery (SSRF)GraphQL Cross-site request forgery (CSRF)GraphQL GET based CSRFGraphQL POST based CSRFGraphQL Cross-Site WebSocket Hijacking (CSWH)Online RESTful and GraphQL Penetration Testing Playgrounds without local installNotes & DisclaimerPortswigger labs are a public and a free service from Portswigger for anyone to use to sharpen their skills. All you need is to sign up for a free account. crAPI and DVGA are free as well and can be cloned from GitHub. I will to respond to questions in a reasonable time frame. Learning Web / Mobile Application Pen Testing / Bug Bounty Hunting is a lengthy process, so please don't feel frustrated if you don't find a bug right away. Try to use Google, read Hacker One reports and research each feature in-depth. This course is for educational purposes only. This information is not to be used for malicious exploitation and must only be used on targets you have permission to attack.

课程标签

0人关注该课程

主题相关的课程