41554 blogs · [ { "id": "01a0c563-e61a-731a-b6ce-56da3497a109", "title": "3 reasons why QA people should get into API hacking", "url": "https://danaepp.com/3-reasons-why-qa-people-should-get-into-api-hacking", "published_at": "2022-11-29T17:00:00+00:00" }, { "id": "01a0c563-e61a-731a-b6ce-56da35693dcf", "title": "Tracing API exploitability through code review and taint analysis", "url": "https://danaepp.com/tracing-api-exploitability-through-code-review-and-taint-analysis", "published_at": "2022-11-22T17:00:00+00:00" }, { "id": "01a0c563-e61a-731a-b6ce-56da35b9204e", "title": "3 Cyber Warfare Books Every API Hacker Should Read Over The Holidays", "url": "https://danaepp.com/3-cyber-warfare-books-every-api-hacker-should-read-over-the-holidays", "published_at": "2022-11-15T17:00:00+00:00" }, { "id": "01a0c563-e61a-731a-b6ce-56da35bca0f0", "title": "Attacking predictable GUIDs when hacking APIs", "url": "https://danaepp.com/attacking-predictable-guids-when-hacking-apis", "published_at": "2022-11-08T17:00:00+00:00" }, { "id": "01a0c563-e61a-731a-b6ce-56da3615631f", "title": "API Pentesting 101: The Rules of Engagement", "url": "https://danaepp.com/api-pentesting-101-the-rules-of-engagement", "published_at": "2022-11-01T16:00:00+00:00" }, { "id": "01a0c563-e61a-731a-b6ce-56da36fde861", "title": "7 Essential Burp Extensions for Hacking APIs", "url": "https://danaepp.com/7-essential-burp-extensions-for-hacking-apis", "published_at": "2022-10-28T17:25:00+00:00" }, { "id": "01a0c563-e61a-731a-b6ce-56da37eba91b", "title": "5 big mistakes beginners make hacking APIs", "url": "https://danaepp.com/5-big-mistakes-beginners-make-hacking-apis", "published_at": "2022-10-25T16:00:00+00:00" }, { "id": "01a0c563-e61a-731a-b6ce-56da380436e7", "title": "Can SBOM help you attack APIs?", "url": "https://danaepp.com/can-sbom-help-you-attack-apis", "published_at": "2022-10-21T16:00:00+00:00" }, { "id": "01a0c563-e61a-731a-b6ce-56da381c4b72", "title": "Attacking Microsoft Graph with Postman", "url": "https://danaepp.com/attacking-microsoft-graph-with-postman", "published_at": "2022-10-18T16:00:00+00:00" }, { "id": "01a0c563-e61a-731a-b6ce-56da38f0a4cc", "title": "Automate your API hacking with Autorize", "url": "https://danaepp.com/automate-your-api-hacking-with-autorize", "published_at": "2022-10-14T16:00:00+00:00" }, { "id": "01a0c56b-2dc0-70a7-bc6a-163e503f5f10", "title": "How to use Azure to crack API auth tokens", "url": "https://danaepp.com/how-to-use-azure-to-crack-api-auth-tokens", "published_at": "2022-10-11T16:00:00+00:00" }, { "id": "01a0c56b-2dc0-70a7-bc6a-163e51052743", "title": "Why API hacking is NOT a crime", "url": "https://danaepp.com/why-api-hacking-is-not-a-crime", "published_at": "2022-10-07T16:00:00+00:00" }, { "id": "01a0c56b-2dc0-70a7-bc6a-163e518bdfa5", "title": "The API Hacker’s Guide to Payload Injection with Postman", "url": "https://danaepp.com/the-api-hackers-guide-to-payload-injection-with-postman", "published_at": "2022-10-04T16:00:00+00:00" }, { "id": "01a0c56b-2dc0-70a7-bc6a-163e5284efb2", "title": "How to find access control issues in APIs", "url": "https://danaepp.com/how-to-find-access-control-issues-in-apis", "published_at": "2022-09-30T16:00:00+00:00" }, { "id": "01a0c56b-2dc0-70a7-bc6a-163e52cdebae", "title": "5 Books Every API Hacker Should Read", "url": "https://danaepp.com/5-books-every-api-hacker-should-read", "published_at": "2022-09-27T16:00:00+00:00" }, { "id": "01a0c56b-2dc0-70a7-bc6a-163e5361cd76", "title": "The Bug Bounty Dilemma: When to give up on an API target", "url": "https://danaepp.com/the-bug-bounty-dilemma-when-to-give-up-on-an-api-target", "published_at": "2022-09-23T16:00:00+00:00" }, { "id": "01a0c56b-2dc0-70a7-bc6a-163e53cbcd1b", "title": "How to craft rogue API docs for a target when they don’t exist", "url": "https://danaepp.com/how-to-craft-rogue-api-docs-for-a-target-when-they-dont-exist", "published_at": "2022-09-20T16:00:00+00:00" }, { "id": "01a0c56b-2dc0-70a7-bc6a-163e54b0c1e1", "title": "How to Detect the Programming Language of an API", "url": "https://danaepp.com/how-to-detect-the-programming-language-of-an-api", "published_at": "2022-09-16T16:00:00+00:00" }, { "id": "01a0c56b-2dc0-70a7-bc6a-163e5594ef45", "title": "Hardcoded cloud creds prove it’s easy for API hackers to win", "url": "https://danaepp.com/hardcoded-cloud-creds-prove-its-easy-for-api-hackers-to-win", "published_at": "2022-09-13T16:00:00+00:00" }, { "id": "01a0c56b-2dc0-70a7-bc6a-163e55e8dcd6", "title": "How to Make Money Hacking APIs", "url": "https://danaepp.com/how-to-make-money-hacking-apis", "published_at": "2022-09-09T16:00:00+00:00" }, { "id": "01a0c574-773e-7200-9e43-38a62ac3dca9", "title": "Hackers abuse Yandex Taxi app API, causing massive traffic jam in Moscow", "url": "https://danaepp.com/hackers-abuse-yandex-taxi-app-api-causing-massive-traffic-jam-in-moscow", "published_at": "2022-09-06T16:00:00+00:00" }, { "id": "01a0c574-773e-7200-9e43-38a62b6515bc", "title": "Exploit APIs with cURL", "url": "https://danaepp.com/exploit-apis-with-curl", "published_at": "2022-09-02T16:00:00+00:00" }, { "id": "01a0c574-773e-7200-9e43-38a62c131c5e", "title": "API Security Testing: How to Use OWASP guidance as your blueprint", "url": "https://danaepp.com/api-security-testing-how-to-use-owasp-guidance-as-your-blueprint", "published_at": "2022-08-30T16:00:00+00:00" }, { "id": "01a0c574-773e-7200-9e43-38a62ccc5579", "title": "The Beginner’s Guide to API Hacking", "url": "https://danaepp.com/beginners-guide-to-api-hacking", "published_at": "2022-08-24T22:49:50+00:00" } ] posts Claim your blog
Back to danaepp.com
Blog · corpus.blog/blogs/danaepp.com/posts

danaepp.com

danaepp.com

2022