API Security Testing With Postman & OWASP Zap - A quick walkthrough

Поделиться
HTML-код
  • Опубликовано: 20 янв 2025

Комментарии • 19

  • @johnfaltermeier4529
    @johnfaltermeier4529 Год назад +6

    Your teaching style is clear and concise. Simply awesome!

  • @dedensetiawanchannel
    @dedensetiawanchannel Год назад +1

    I was just wondering how to use it with Postman and pentest to my apps. Thanks dude

    • @thetesttherapist
      @thetesttherapist  Год назад

      You’re welcome! If you have any more questions or need further assistance, feel free to ask. Happy pentesting!

  • @sampadroutz
    @sampadroutz Год назад

    Just awesome! To the point, clear and concise. Thanks

    • @thetesttherapist
      @thetesttherapist  Год назад +1

      Glad you liked it!

    • @sampadroutz
      @sampadroutz Год назад

      @@thetesttherapist can you please make more videos on how we can automate the zap security test using its scripting feature? It will be great to see that. Thanks a ton in advance.

  • @Hiturion
    @Hiturion 7 месяцев назад +1

    Great video. Thank you Sir!

  • @ajendra5415
    @ajendra5415 2 месяца назад

    Thank you very much for the tutorial. 🙏

  • @PaulChege-sb5yt
    @PaulChege-sb5yt 7 месяцев назад +1

    Thank you sir!

  • @PCB389
    @PCB389 Год назад

    Great, I was just wondering how to use it with Postman.
    Thanks.

  • @sayedmosalam
    @sayedmosalam 7 месяцев назад

    Thanks a lot for you video, but if the api needs generated token to be able to use it is there authentication method like in the web app authenticated scan?

  • @moaidel-moatasembellah1729
    @moaidel-moatasembellah1729 5 месяцев назад

    Thanks for sharing

  • @ManikantaGembali-ot1pu
    @ManikantaGembali-ot1pu Год назад

    Can you tell how to generate a sharable file for the details of alerts of a particular API ?

    • @thetesttherapist
      @thetesttherapist  Год назад

      You can generate detailed report :
      Report -> generate Report -> From Template choose "Traditional HTML Report"
      This should display alerts with all details

  • @nirmaal2255
    @nirmaal2255 9 месяцев назад

    how to find the unpublished api and how to do ai fuzzing

    • @thetesttherapist
      @thetesttherapist  9 месяцев назад +1

      Spider can get you any folder under the domain under test , but for ai fuzzing i don’t know haven’t tried it before 🤷🏻