GraphQL APIs from bug hunter's perspective by Nikita Stupin

Поделиться
HTML-код
  • Опубликовано: 15 ноя 2024

Комментарии • 7

  • @chasejensen88
    @chasejensen88 Год назад

    Great talk, very informative and well structured content. Much thanks man

  • @chasejensen88
    @chasejensen88 Год назад

    Have you enccountered Persisted Queries yet?

  • @HelloWorld-r2c
    @HelloWorld-r2c Год назад

    i think the most common ones are introspection and IDORs/BOLAs

    • @scrategy
      @scrategy 29 дней назад

      Introspection isn’t a vulnerability it’s the equivalent of having swagger docs for an api, that’s it. But yes, BOLAs seem to be very common as well as XSS, cmd injection, and SSRF a little less so.

  • @zer0ql
    @zer0ql 3 года назад

    could you send the wordlist you used as a sample text(or put it in github)
    appreciate it, also good talk;)

  • @DigitalTrendzy2023
    @DigitalTrendzy2023 Год назад

    Israel should be proud to have research scholars like you

  • @dropdcsc
    @dropdcsc 24 дня назад

    nikita is girl's name in india :")