OWASP Top Ten
5
min read
The Matrix Chronicles: API Security and the battle for sufficient Logging and Monitoring
Unplugged from Reality: API-log-alypse
Ofer Hakimi
May 23, 2023
5
min read
OWASP Top Ten
4
min read
The Game of (Improper) Asset Management: Protecting Your APIs from the Seven Kingdoms of Vulnerabilities
The perils of improper asset Management
Ofer Hakimi
May 16, 2023
4
min read
OWASP Top Ten
5
min read
Recall the Risks: Protecting Against Injection Attacks in Your APIs
Don't get your memory erased
Ofer Hakimi
May 9, 2023
5
min read
OWASP Top Ten
5
min read
Mr. Bean's Guide to Avoiding Security Misconfigurations in APIs
API related misconfigurations pitfalls
Ofer Hakimi
May 1, 2023
5
min read
OWASP Top Ten
5
min read
Mass Assignment: The Iceberg that Sinks Your API's Security
The Danger in Blind Objectification
Ofer Hakimi
April 25, 2023
5
min read
OWASP Top Ten
4
min read
Saving the API World from Broken Function-Level Authorization - An Action-Packed Adventure
BFLA - Not the Sweetest Deal
Ofer Hakimi
April 17, 2023
4
min read
OWASP Top Ten
6
min read
API Wars: The Battle Against Lack of Resources and Rate Limiting
Managing the API Galaxy: A Must-Have
Ofer Hakimi
April 10, 2023
6
min read
OWASP Top Ten
5
min read
Broken Authentication: A Guide to Keeping Your APIs Safe
Western guide to broken authentication
Ofer Hakimi
March 27, 2023
5
min read
OWASP Top Ten
5
min read
A Desi-Inspired Journey Through Broken Object-Level Authorization (BOLA)
The Bollywood Guide to BOLA
Ofer Hakimi
March 23, 2023
5
min read