⤷ Title: PCI DSS & API Security
════════════════════════
𐀪 Author: Usama Hanif
════════════════════════
ⴵ Time: Thu, 23 Oct 2025 19:29:55 GMT
════════════════════════
⌗ Tags: #pci_dss #api_pentesting #api_compliance #api_security #rest_api
════════════════════════
𐀪 Author: Usama Hanif
════════════════════════
ⴵ Time: Thu, 23 Oct 2025 19:29:55 GMT
════════════════════════
⌗ Tags: #pci_dss #api_pentesting #api_compliance #api_security #rest_api
Medium
PCI DSS & API Security
APISEC University
⤷ Title: How to solve the DVAPI’s Broken Authentication Lab
════════════════════════
𐀪 Author: R1punjay_Singh
════════════════════════
ⴵ Time: Fri, 14 Nov 2025 14:26:44 GMT
════════════════════════
⌗ Tags: #ethical_hacking #api_pentesting #cybersecurity #api
════════════════════════
𐀪 Author: R1punjay_Singh
════════════════════════
ⴵ Time: Fri, 14 Nov 2025 14:26:44 GMT
════════════════════════
⌗ Tags: #ethical_hacking #api_pentesting #cybersecurity #api
Medium
How to solve the DVAPI’s Broken Authentication Lab
What is Broken Authentication in API?
⤷ Title: Improper Assets Management & Mass Assignment: Two API Bugs That Quietly Destroy Systems
════════════════════════
𐀪 Author: Mahmoudelshorpagy
════════════════════════
ⴵ Time: Tue, 09 Dec 2025 22:42:10 GMT
════════════════════════
⌗ Tags: #api_pentesting #api_penetration_testing #cybersecurity #pentesting #penetration_testing
════════════════════════
𐀪 Author: Mahmoudelshorpagy
════════════════════════
ⴵ Time: Tue, 09 Dec 2025 22:42:10 GMT
════════════════════════
⌗ Tags: #api_pentesting #api_penetration_testing #cybersecurity #pentesting #penetration_testing
Medium
Improper Assets Management & Mass Assignment: Two API Bugs That Quietly Destroy Systems
APIs evolve fast. New versions, new features, new fixes. But what many teams forget is that old versions never truly disappear.
⤷ Title: How I Performed Basic API Security Tests Using
Postman (Beginner Edition)
════════════════════════
𐀪 Author: Stella Obatoye
════════════════════════
ⴵ Time: Wed, 17 Dec 2025 20:37:05 GMT
════════════════════════
⌗ Tags: #api_security_testing #postman #authentication #api_pentesting #api_security
Postman (Beginner Edition)
════════════════════════
𐀪 Author: Stella Obatoye
════════════════════════
ⴵ Time: Wed, 17 Dec 2025 20:37:05 GMT
════════════════════════
⌗ Tags: #api_security_testing #postman #authentication #api_pentesting #api_security
Medium
How I Performed Basic API Security Tests Using
Postman (Beginner Edition)
Postman (Beginner Edition)
In this article, I’ll be trying some security checks on the Vulnerable Application in Postman.
⤷ Title: OWASP API Top 10 — Mass Assignment Explained Through a Practical Flask Lab
════════════════════════
𐀪 Author: 0xMiawChan
════════════════════════
ⴵ Time: Thu, 08 Jan 2026 03:53:13 GMT
════════════════════════
⌗ Tags: #api_pentesting #cybersecurity #owasp_api_security_top_10 #ethical_hacking #pentesting
════════════════════════
𐀪 Author: 0xMiawChan
════════════════════════
ⴵ Time: Thu, 08 Jan 2026 03:53:13 GMT
════════════════════════
⌗ Tags: #api_pentesting #cybersecurity #owasp_api_security_top_10 #ethical_hacking #pentesting
Medium
OWASP API Top 10 — Mass Assignment Explained Through a Practical Flask Lab
A practical lab aligned with OWASP API Top 10 to understand Mass Assignment risks
⤷ Title: IDOR Vulnerability in Dictionary Endpoint — Arbitrary Deletion of User Items (€€€)
════════════════════════
𐀪 Author: Hasan Khan
════════════════════════
ⴵ Time: Sat, 31 Jan 2026 12:56:51 GMT
════════════════════════
⌗ Tags: #ethical_hacking #bug_hunting #bug_bounty_writeup #api_pentesting #bugbounty_tips
════════════════════════
𐀪 Author: Hasan Khan
════════════════════════
ⴵ Time: Sat, 31 Jan 2026 12:56:51 GMT
════════════════════════
⌗ Tags: #ethical_hacking #bug_hunting #bug_bounty_writeup #api_pentesting #bugbounty_tips
Medium
IDOR Vulnerability in Dictionary Endpoint — Arbitrary Deletion of User Items (€€€)
IDOR Vulnerability in Dictionary Endpoint — Arbitrary Deletion of User Items (€€€) Author: Hasan_Khan0x Reward: €€€ Program: Responsible Disclosure Bug Bounty Checklist Used …
⤷ Title: How API Pen-Testers Approach Systems: Tools, Mindset, and Methodology.
════════════════════════
𐀪 Author: Kipc-Sharon
════════════════════════
ⴵ Time: Fri, 20 Feb 2026 01:04:18 GMT
════════════════════════
⌗ Tags: #api_security #api_pentesting #api_pen_testers_approach
════════════════════════
𐀪 Author: Kipc-Sharon
════════════════════════
ⴵ Time: Fri, 20 Feb 2026 01:04:18 GMT
════════════════════════
⌗ Tags: #api_security #api_pentesting #api_pen_testers_approach
Medium
How API Pen-Testers Approach Systems: Tools, Mindset, and Methodology.
Why API Pen-Testing Is Different From Web App Testing
⤷ Title: Hacking JSON Web Tokens: How Attackers Exploit API Authentication
════════════════════════
𐀪 Author: Sana Jalil
════════════════════════
ⴵ Time: Thu, 28 May 2026 17:53:25 GMT
════════════════════════
⌗ Tags: #bug_bounty #web_penetration_testing #api_attack #api_pentesting #json_web_token
════════════════════════
𐀪 Author: Sana Jalil
════════════════════════
ⴵ Time: Thu, 28 May 2026 17:53:25 GMT
════════════════════════
⌗ Tags: #bug_bounty #web_penetration_testing #api_attack #api_pentesting #json_web_token
Medium
Hacking JSON Web Tokens: How Attackers Exploit API Authentication
JWTs are trusted by millions of APIs worldwide: yet one small misconfiguration can turn a security feature into an attacker’s gateway
⤷ Title: Hacking JSON Web Tokens: How Attackers Exploit API Authentication
════════════════════════
𐀪 Author: Sana Jalil
════════════════════════
ⴵ Time: Fri, 29 May 2026 09:15:40 GMT
════════════════════════
⌗ Tags: #bug_bounty #web_penetration_testing #api_attack #api_pentesting #json_web_token
════════════════════════
𐀪 Author: Sana Jalil
════════════════════════
ⴵ Time: Fri, 29 May 2026 09:15:40 GMT
════════════════════════
⌗ Tags: #bug_bounty #web_penetration_testing #api_attack #api_pentesting #json_web_token
Medium
Hacking JSON Web Tokens: How Attackers Exploit API Authentication
JWTs are trusted by millions of APIs worldwide: yet one small misconfiguration can turn a security feature into an attacker’s gateway
⤷ Title: The Quiet Killer in Grey Box Testing — Internal IP Leak → Path Traversal →DB Takeover → Outlook Pwn
════════════════════════
𐀪 Author: Mr_Curiosity
════════════════════════
ⴵ Time: Wed, 03 Jun 2026 19:16:30 GMT
════════════════════════
⌗ Tags: #api_pentesting #web_hacking #pentest #hacking
════════════════════════
𐀪 Author: Mr_Curiosity
════════════════════════
ⴵ Time: Wed, 03 Jun 2026 19:16:30 GMT
════════════════════════
⌗ Tags: #api_pentesting #web_hacking #pentest #hacking
Medium
The Quiet Killer in Grey Box Testing — Internal IP Leak → Path Traversal →DB Takeover → Outlook Pwn
Hy aLL !! Mr_Curi0sity here !!