SilverStr

Dana Epp's Blog

Security (de)engineering for fun and profit

  • About
  • Blog
  • Home
  • September 16, 2022

    How to Detect the Programming Language of an API

    How to Detect the Programming Language of an API

    Learn 3 tricks that can help you discover the language an API was written in.

  • September 13, 2022

    Hardcoded cloud creds prove it’s easy for API hackers to win

    Hardcoded cloud creds prove it’s easy for API hackers to win

    Learn how API keys and tokens are being baked into mobile apps, and how you can win on #redteam because of this oversight.

  • September 9, 2022

    How to Make Money Hacking APIs

    How to Make Money Hacking APIs

    Learn about the careers you can get into to make money hacking APIs.

  • September 6, 2022

    Hackers abuse Yandex Taxi app API, causing massive traffic jam in Moscow

    Hackers abuse Yandex Taxi app API, causing massive traffic jam in Moscow

    When APIs are used as binary bullets in cyber warfare, we should all take notice. Read up on the latest hacks in the Anonymous vs Russia saga.

  • September 2, 2022

    Exploit APIs with cURL

    Exploit APIs with cURL

    Learn how to use cURL in your exploits and demonstrate impact to the API vulnerabilities you find.

  • August 30, 2022

    API Security Testing: How to Use OWASP guidance as your blueprint

    API Security Testing: How to Use OWASP guidance as your blueprint

    How to use OWASP guidance as your API security testing blueprint.

  • August 24, 2022

    The Beginner’s Guide to API Hacking

    The Beginner’s Guide to API Hacking

    How to get started with web API security testing.

←Previous Page
1 … 6 7 8
 

Loading Comments...