OWASP API Security Top 10 and Beyond!
Free OWASP API Top 10 training - 90 min
A free 90-minute course from APIsec University by Corey Ball covering the 2023 OWASP API Security Top 10. Learn about Broken Object Level Authorization (BOLA), Broken Authentication, BOPLA, Unrestricted Resource Consumption, and other critical API vulnerabilities. Includes hands-on examples and real breach case studies.
CybersecurityFreebeginner1.5 hours
Submitted by @yahianaimRoadmap (4 steps)
1
Introduction to OWASP API Top 10
15 min#OWASP Organization#History of API Top 10#2019 vs 2023 Changes#Risk Landscape
2
API1-API3: Authorization & Authentication
25 min#Broken Object Level Authorization#Broken Authentication#Broken Object Property Level Authorization
3
API4: Unrestricted Resource Consumption
15 min#Rate Limiting#Resource Exhaustion#DoS Prevention#Cost Management
4
Beyond the Top 10
35 min#Injections#File Upload Vulnerabilities#Business Logic Flaws#Logging & Monitoring
