Vai offline con l'app Player FM !
API Security Quick Start: Bas Dijkstra
Serie archiviate ("Feed non attivo" status)
When? This feed was archived on October 30, 2025 15:21 (). Last successful fetch was on October 25, 2024 18:35 ()
Why? Feed non attivo status. I nostri server non sono riusciti a recuperare un feed valido per un periodo prolungato.
What now? You might be able to find a more up-to-date version using the search function. This series will no longer be checked for updates. If you believe this to be in error, please check if the publisher's feed link below is valid and contact support to request the feed be restored or if you have any other concerns about this.
Manage episode 438536266 series 3490860
Do security tests and APIs leave you confused? Expert Bas Dijkstra makes API testing look easy and shares the essentials every dev ops professional needs to know.
You’ll learn how to spot and fix common API vulnerabilities, including sneaky JavaScript injections to the all-too-common broken object-level authorization. With hands-on demos and practical advice, you'll discover how to fortify your APIs against real-world threats. But that's not all—Bas also gives us a sneak peek into his upcoming contract testing course, perfect for anyone looking to master integration testing and ensure seamless API communication.
❓What did you think of the show? Leave your anonymous feedback:
https://forms.gle/Df5sDABiNMQn4YSj7
CONNECT WITH BAS DIJKSTRA
💡 LINKEDIN: https://www.linkedin.com/in/basdijkstra/
✅ WEBSITE: https://www.ontestautomation.com/
✅ ON TEST AUTOMATION TRAINING: https://www.ontestautomation.com/training/
✅ CONTRACT TESTING COURSE: https://www.ontestautomation.com/training/contract-testing/
👨💻 GITHUB: https://github.com/basdijkstra
📧EMAIL: [email protected]
CONNECT WITH NIKOLAY ADVOLODKIN
💡 LINKEDIN (consider leaving a Recommendation): https://www.linkedin.com/in/nikolayadvolodkin/
✨ TIKTOK: https://www.tiktok.com/@nikolay.advolodkin/
📸 INSTAGRAM: https://www.instagram.com/nikolay.advolodkin/
🌎 WEBSITE: https://ultimateqa.com
🐦 X: https://X.com/Nikolay_A00
👨💻 GITHUB: https://github.com/nadvolod
📧 EMAIL: [email protected]
JOIN THE CONVERSATION!
🎥 Subscribe to our YouTube channel now and get access to the latest exclusive shows, before anyone else! https://www.youtube.com/@test-automation-experience
▶ Sauce YouTube channel: https://www.youtube.com/@SauceLabs_Official
🤝 Community page: https://saucelabs.com/community
🏠 Home Page: https://saucelabs.com/
(00:00) Intro
(02:24 ) 60-Second API Security Testing Challenge
(03:06) JavaScript injection and input sanitization
(04:56) The role of AI in API Testing
(05:51) Impactful API Security Bug
(07:56) Starting API Security Testing
(09:26) Ideal API Response to invalid input
(11:58) OWASP API Security Top Ten
(13:33) Broken object-level authorization
(14:58) Unauthorized access testing
(21:41) Rate Limiting
(23:26) API Security University
(25:31) Exploratory testing techniques
(29:07) On Test Automation Courses
60 episodi
Serie archiviate ("Feed non attivo" status)
When? This feed was archived on October 30, 2025 15:21 (). Last successful fetch was on October 25, 2024 18:35 ()
Why? Feed non attivo status. I nostri server non sono riusciti a recuperare un feed valido per un periodo prolungato.
What now? You might be able to find a more up-to-date version using the search function. This series will no longer be checked for updates. If you believe this to be in error, please check if the publisher's feed link below is valid and contact support to request the feed be restored or if you have any other concerns about this.
Manage episode 438536266 series 3490860
Do security tests and APIs leave you confused? Expert Bas Dijkstra makes API testing look easy and shares the essentials every dev ops professional needs to know.
You’ll learn how to spot and fix common API vulnerabilities, including sneaky JavaScript injections to the all-too-common broken object-level authorization. With hands-on demos and practical advice, you'll discover how to fortify your APIs against real-world threats. But that's not all—Bas also gives us a sneak peek into his upcoming contract testing course, perfect for anyone looking to master integration testing and ensure seamless API communication.
❓What did you think of the show? Leave your anonymous feedback:
https://forms.gle/Df5sDABiNMQn4YSj7
CONNECT WITH BAS DIJKSTRA
💡 LINKEDIN: https://www.linkedin.com/in/basdijkstra/
✅ WEBSITE: https://www.ontestautomation.com/
✅ ON TEST AUTOMATION TRAINING: https://www.ontestautomation.com/training/
✅ CONTRACT TESTING COURSE: https://www.ontestautomation.com/training/contract-testing/
👨💻 GITHUB: https://github.com/basdijkstra
📧EMAIL: [email protected]
CONNECT WITH NIKOLAY ADVOLODKIN
💡 LINKEDIN (consider leaving a Recommendation): https://www.linkedin.com/in/nikolayadvolodkin/
✨ TIKTOK: https://www.tiktok.com/@nikolay.advolodkin/
📸 INSTAGRAM: https://www.instagram.com/nikolay.advolodkin/
🌎 WEBSITE: https://ultimateqa.com
🐦 X: https://X.com/Nikolay_A00
👨💻 GITHUB: https://github.com/nadvolod
📧 EMAIL: [email protected]
JOIN THE CONVERSATION!
🎥 Subscribe to our YouTube channel now and get access to the latest exclusive shows, before anyone else! https://www.youtube.com/@test-automation-experience
▶ Sauce YouTube channel: https://www.youtube.com/@SauceLabs_Official
🤝 Community page: https://saucelabs.com/community
🏠 Home Page: https://saucelabs.com/
(00:00) Intro
(02:24 ) 60-Second API Security Testing Challenge
(03:06) JavaScript injection and input sanitization
(04:56) The role of AI in API Testing
(05:51) Impactful API Security Bug
(07:56) Starting API Security Testing
(09:26) Ideal API Response to invalid input
(11:58) OWASP API Security Top Ten
(13:33) Broken object-level authorization
(14:58) Unauthorized access testing
(21:41) Rate Limiting
(23:26) API Security University
(25:31) Exploratory testing techniques
(29:07) On Test Automation Courses
60 episodi
All episodes
×Benvenuto su Player FM!
Player FM ricerca sul web podcast di alta qualità che tu possa goderti adesso. È la migliore app di podcast e funziona su Android, iPhone e web. Registrati per sincronizzare le iscrizioni su tutti i tuoi dispositivi.