Artwork

Contenuto fornito da Nikolay Advolodkin. Tutti i contenuti dei podcast, inclusi episodi, grafica e descrizioni dei podcast, vengono caricati e forniti direttamente da Nikolay Advolodkin o dal partner della piattaforma podcast. Se ritieni che qualcuno stia utilizzando la tua opera protetta da copyright senza la tua autorizzazione, puoi seguire la procedura descritta qui https://it.player.fm/legal.
Player FM - App Podcast
Vai offline con l'app Player FM !

API Security Quick Start: Bas Dijkstra

33:51
 
Condividi
 

Serie archiviate ("Feed non attivo" status)

When? This feed was archived on October 30, 2025 15:21 (2M ago). Last successful fetch was on October 25, 2024 18:35 (1y ago)

Why? Feed non attivo status. I nostri server non sono riusciti a recuperare un feed valido per un periodo prolungato.

What now? You might be able to find a more up-to-date version using the search function. This series will no longer be checked for updates. If you believe this to be in error, please check if the publisher's feed link below is valid and contact support to request the feed be restored or if you have any other concerns about this.

Manage episode 438536266 series 3490860
Contenuto fornito da Nikolay Advolodkin. Tutti i contenuti dei podcast, inclusi episodi, grafica e descrizioni dei podcast, vengono caricati e forniti direttamente da Nikolay Advolodkin o dal partner della piattaforma podcast. Se ritieni che qualcuno stia utilizzando la tua opera protetta da copyright senza la tua autorizzazione, puoi seguire la procedura descritta qui https://it.player.fm/legal.

Do security tests and APIs leave you confused? Expert Bas Dijkstra makes API testing look easy and shares the essentials every dev ops professional needs to know.

You’ll learn how to spot and fix common API vulnerabilities, including sneaky JavaScript injections to the all-too-common broken object-level authorization. With hands-on demos and practical advice, you'll discover how to fortify your APIs against real-world threats. But that's not all—Bas also gives us a sneak peek into his upcoming contract testing course, perfect for anyone looking to master integration testing and ensure seamless API communication.
❓What did you think of the show? Leave your anonymous feedback:

https://forms.gle/Df5sDABiNMQn4YSj7

CONNECT WITH BAS DIJKSTRA

💡 LINKEDIN: https://www.linkedin.com/in/basdijkstra/

✅ WEBSITE: https://www.ontestautomation.com/

✅ ON TEST AUTOMATION TRAINING: https://www.ontestautomation.com/training/

✅ CONTRACT TESTING COURSE: https://www.ontestautomation.com/training/contract-testing/

👨‍💻 GITHUB: https://github.com/basdijkstra

📧EMAIL: [email protected]

CONNECT WITH NIKOLAY ADVOLODKIN

💡 LINKEDIN (consider leaving a Recommendation): https://www.linkedin.com/in/nikolayadvolodkin/

✨ TIKTOK: https://www.tiktok.com/@nikolay.advolodkin/

📸 INSTAGRAM: https://www.instagram.com/nikolay.advolodkin/

🌎 WEBSITE: https://ultimateqa.com

🐦 X: https://X.com/Nikolay_A00

👨‍💻 GITHUB: https://github.com/nadvolod

📧 EMAIL: [email protected]

JOIN THE CONVERSATION!

🎥 Subscribe to our YouTube channel now and get access to the latest exclusive shows, before anyone else! https://www.youtube.com/@test-automation-experience

▶ Sauce YouTube channel: https://www.youtube.com/@SauceLabs_Official

‍🤝‍ Community page: https://saucelabs.com/community

🏠 Home Page: https://saucelabs.com/

(00:00) Intro

(02:24 ) 60-Second API Security Testing Challenge

(03:06) JavaScript injection and input sanitization

(04:56) The role of AI in API Testing

(05:51) Impactful API Security Bug

(07:56) Starting API Security Testing

(09:26) Ideal API Response to invalid input

(11:58) OWASP API Security Top Ten

(13:33) Broken object-level authorization

(14:58) Unauthorized access testing

(21:41) Rate Limiting

(23:26) API Security University

(25:31) Exploratory testing techniques

(29:07) On Test Automation Courses

  continue reading

60 episodi

Artwork
iconCondividi
 

Serie archiviate ("Feed non attivo" status)

When? This feed was archived on October 30, 2025 15:21 (2M ago). Last successful fetch was on October 25, 2024 18:35 (1y ago)

Why? Feed non attivo status. I nostri server non sono riusciti a recuperare un feed valido per un periodo prolungato.

What now? You might be able to find a more up-to-date version using the search function. This series will no longer be checked for updates. If you believe this to be in error, please check if the publisher's feed link below is valid and contact support to request the feed be restored or if you have any other concerns about this.

Manage episode 438536266 series 3490860
Contenuto fornito da Nikolay Advolodkin. Tutti i contenuti dei podcast, inclusi episodi, grafica e descrizioni dei podcast, vengono caricati e forniti direttamente da Nikolay Advolodkin o dal partner della piattaforma podcast. Se ritieni che qualcuno stia utilizzando la tua opera protetta da copyright senza la tua autorizzazione, puoi seguire la procedura descritta qui https://it.player.fm/legal.

Do security tests and APIs leave you confused? Expert Bas Dijkstra makes API testing look easy and shares the essentials every dev ops professional needs to know.

You’ll learn how to spot and fix common API vulnerabilities, including sneaky JavaScript injections to the all-too-common broken object-level authorization. With hands-on demos and practical advice, you'll discover how to fortify your APIs against real-world threats. But that's not all—Bas also gives us a sneak peek into his upcoming contract testing course, perfect for anyone looking to master integration testing and ensure seamless API communication.
❓What did you think of the show? Leave your anonymous feedback:

https://forms.gle/Df5sDABiNMQn4YSj7

CONNECT WITH BAS DIJKSTRA

💡 LINKEDIN: https://www.linkedin.com/in/basdijkstra/

✅ WEBSITE: https://www.ontestautomation.com/

✅ ON TEST AUTOMATION TRAINING: https://www.ontestautomation.com/training/

✅ CONTRACT TESTING COURSE: https://www.ontestautomation.com/training/contract-testing/

👨‍💻 GITHUB: https://github.com/basdijkstra

📧EMAIL: [email protected]

CONNECT WITH NIKOLAY ADVOLODKIN

💡 LINKEDIN (consider leaving a Recommendation): https://www.linkedin.com/in/nikolayadvolodkin/

✨ TIKTOK: https://www.tiktok.com/@nikolay.advolodkin/

📸 INSTAGRAM: https://www.instagram.com/nikolay.advolodkin/

🌎 WEBSITE: https://ultimateqa.com

🐦 X: https://X.com/Nikolay_A00

👨‍💻 GITHUB: https://github.com/nadvolod

📧 EMAIL: [email protected]

JOIN THE CONVERSATION!

🎥 Subscribe to our YouTube channel now and get access to the latest exclusive shows, before anyone else! https://www.youtube.com/@test-automation-experience

▶ Sauce YouTube channel: https://www.youtube.com/@SauceLabs_Official

‍🤝‍ Community page: https://saucelabs.com/community

🏠 Home Page: https://saucelabs.com/

(00:00) Intro

(02:24 ) 60-Second API Security Testing Challenge

(03:06) JavaScript injection and input sanitization

(04:56) The role of AI in API Testing

(05:51) Impactful API Security Bug

(07:56) Starting API Security Testing

(09:26) Ideal API Response to invalid input

(11:58) OWASP API Security Top Ten

(13:33) Broken object-level authorization

(14:58) Unauthorized access testing

(21:41) Rate Limiting

(23:26) API Security University

(25:31) Exploratory testing techniques

(29:07) On Test Automation Courses

  continue reading

60 episodi

All episodes

×
 
Loading …

Benvenuto su Player FM!

Player FM ricerca sul web podcast di alta qualità che tu possa goderti adesso. È la migliore app di podcast e funziona su Android, iPhone e web. Registrati per sincronizzare le iscrizioni su tutti i tuoi dispositivi.

 

Guida rapida

Ascolta questo spettacolo mentre esplori
Riproduci