|
via Udemy |
Go to Course: https://www.udemy.com/course/ethical-hacking-of-restful-and-graphql-apis-training-course/
The Ethical Hacking of RESTful and GraphQL APIs Training Course on Coursera is a highly practical and comprehensive program designed for those interested in API security and penetration testing. Led by Martin Voelk, a cybersecurity veteran with over 25 years of experience and a stellar certification portfolio, this course offers valuable insights into the common vulnerabilities found in modern web and mobile applications. Course Overview This training emphasizes hands-on learning rather than theoretical lectures. It covers the identification and exploitation of vulnerabilities in RESTful and GraphQL APIs, two of the most prevalent API architectures today. While it does not teach the usage of specific tools like Burp Suite in detail, it provides practical labs and demonstrations, including working with platforms such as Portswigger Web Academy, crAPI, and DVGA. Key Highlights - Focus on Real-World Attacks: The course guides students through discovering, enumerating, and exploiting vulnerabilities such as broken authentication, authorization issues, SSRF, API misconfigurations, and various forms of injection and information disclosures in APIs. - In-Depth GraphQL Coverage: Extensive modules on GraphQL include attack surface analysis, enumeration, injection, server-side request forgery, CSRF, XSS, and token forgery attacks, making it an excellent resource for those seeking to understand this API query language. - Practical Labs: Detailed walkthroughs with step-by-step explanations, suitable for beginners and intermediate learners aiming to start in API penetration testing and bug bounty hunting. - Flexibility and Resources: Free access to Portswigger labs and standalone virtual machines for practice, with instructions to set up your own testing environments. - Expert Instruction: Martin Voelkâs experience and certifications ensure high-quality training, emphasizing both theory and application. Who Should Enroll This course is ideal for aspiring security researchers, penetration testers, bug bounty hunters, and cybersecurity enthusiasts keen on developing specialized skills in API security testing. Final Verdict and Recommendation I highly recommend this course to anyone interested in web security, especially those wanting to specialize in API vulnerabilities. It offers a well-balanced mix of theory and practical skills, guided by a seasoned expert. The emphasis on hands-on labs prepares learners to confidently identify and exploit real-world API vulnerabilities, making it a valuable investment for future security professionals. Whether you're just starting out or looking to deepen your skills, this course provides the foundational knowledge and practical experience necessary to excel in API security testing.
Welcome to the Ethical Hacking of RESTful and GraphQL APIs Training CourseImportant note: This course is NOT teaching the actual usage of Burp Suite and its features. This course is a heavily hands-on introduction to both RESTful as well as GraphQL API vulnerabilities. These APIs are very common in modern web and mobile applications. Your instructor is Martin Voelk. He is a Cyber Security veteran with 25 years of experience. Martin holds some of the highest certification incl. CISSP, OSCP, OSWP, Portswigger BSCP, CCIE, PCI ISA and PCIP. He works as a consultant for a big tech company and engages in Bug Bounty programs where he found thousands of critical and high vulnerabilities.This course features theoretical introductions into API vulnerabilities followed by practical exploitations of common RESTful API and GraphQL API vulnerabilities. Some labs are being performed utilizing the Portswigger Web Academy Labs. Other labs are performed on standalone VMs such as crAPI and DVGA. As people use different platforms, The training will not show the set up of crAPI or DVGA. But you can install these easily on a free virtualization software like virtual box on Windows or MacOSX. Martin will be solving a lot of labs and explains each step on finding the vulnerability and why it can be exploited in a certain way. The videos are easy to follow along and replicate. This training is highly recommended for anyone who wants to start out in API Penetration Testing or API Bug Bounty Hunting.The course features the following topics.REST API IntroductionREST API Discovery and Recon REST API Enumeration REST API Broken Object Level Authorization (BOLA)REST API Broken AuthenticationREST API Broken Object Property Level AuthorizationREST API Excessive Data Exposure REST API Mass AssignmentREST API Unrestricted Resource ConsumptionREST API Broken Function Level Authorization (BLFA)REST API Unrestricted Access to Sensitive Business FlowsREST API Server Side Request Forgery (SSRF)REST API Security Misconfiguration REST API Improper Inventory Management REST API Unsafe Consumption of APIsREST API Server-side parameter pollutionGraphQL IntroductionGraphQL What is it?GraphQL Key terminologiesGraphQL Burp extensionsGraphQL WordlistsGraphQL PayloadsGraphQL ToolsGraphQL API Attack Surface, Recon, EnumerationGraphQL Attack Surface AnalysisGraphQL GET requests and the issuesGraphQL POST requestsGraphQL Information DisclosureGraphQL Introspection GraphQL GET vs. POST Introspection GraphQL Introspection filter bypass exampleGraphQL Non-prod GraphQL endpointsGraphQL Field SuggestionGraphQL Automating Field SuggestionGraphQL Field StuffingGraphQL Abusing Error MessagesGraphQL IDEGraphQL DoSGraphQL Deep Recursion Query AttackGraphQL Circular Fragment VulnerabilitiesGraphQL Batch Query Attacks / Resource Intensive Query AttacksGraphQL Field Duplication AttacksGraphQL Alias based attacks (DoS scenario)GraphQL Directive OverloadingGraphQL Object Limit OverridingGraphQL Array-Based Query BatchingGraphQL Authentication and Authorization attacksGraphQL Login functionsGraphQL Bypassing protections GraphQL Alias based attacks / query batching GraphQL JWT token forgery GraphQL Cookie forgery GraphQL Access control issues and IDORs GraphQL Injection attacksGraphQL OS Command InjectionGraphQL SQL Injection GraphQL HTML Injection GraphQL XSS (Cross-site scripting)GraphQL Request Forgery and HijackingGraphQL Server-side request forgery (SSRF)GraphQL Cross-site request forgery (CSRF)GraphQL GET based CSRFGraphQL POST based CSRFGraphQL Cross-Site WebSocket Hijacking (CSWH)Online RESTful and GraphQL Penetration Testing Playgrounds without local installNotes & DisclaimerPortswigger labs are a public and a free service from Portswigger for anyone to use to sharpen their skills. All you need is to sign up for a free account. crAPI and DVGA are free as well and can be cloned from GitHub. I will to respond to questions in a reasonable time frame. Learning Web / Mobile Application Pen Testing / Bug Bounty Hunting is a lengthy process, so please don't feel frustrated if you don't find a bug right away. Try to use Google, read Hacker One reports and research each feature in-depth. This course is for educational purposes only. This information is not to be used for malicious exploitation and must only be used on targets you have permission to attack.