Modern web applications and software systems have shifted to relying on RESTful APIs, which are more susceptible to security threats such as injection attacks, authentication attacks, and data breaches. This article discusses the difficulties of performing security testing on RESTful APIs, such as input validation, authentication, and authorisation. It has been identified that vulnerabilities that affect security configuration include insufficient logging, faulty object-level authorisation, asset management, faulty function-level authorisation, and mass assignment. It concludes by summarising the findings and offering suggestions for maintaining the security of RESTful APIs using previous research studies
Application programming interfaces (API) are components that facilitate communication between other ...
RESTful APIs (or REST APIs for short) represent a mainstream approach to design and develop Web APIs...
Due to the increasing complexity of web systems, security testing has become indispensable and criti...
Web Application Programming Interfaces (APIs) consist of one or many endpoints defining request-resp...
Web security has been a concern given how often people access web applications be it for work or lei...
In the modern Internet era, web applications are typically driven by web services (WS). Web services...
Security assurance is the confidence that a system meets its security requirements, based on specifi...
<p>Mass assignment is one of the most prominent vulnerabilities in RESTful APIs that originate...
A security API is an Application Program Interface that allows untrusted code to access sensitive re...
The aim of our project is to gather empirical evidence on the security impacts of language and Appli...
This thesis introduces the newly-born field of Security API research, and lays the foundations for f...
Application Programming Interfaces (APIs) are a vital link between software components as well as be...
Nowadays, there are more sources of cyber-threats and more cyber-attacks that target all kind of vic...
We report novel API attacks on a Captcha web service, and discuss lessons that we have learned. In s...
Service-oriented architecture has evolved to be the backbone for large-scale integration between dif...
Application programming interfaces (API) are components that facilitate communication between other ...
RESTful APIs (or REST APIs for short) represent a mainstream approach to design and develop Web APIs...
Due to the increasing complexity of web systems, security testing has become indispensable and criti...
Web Application Programming Interfaces (APIs) consist of one or many endpoints defining request-resp...
Web security has been a concern given how often people access web applications be it for work or lei...
In the modern Internet era, web applications are typically driven by web services (WS). Web services...
Security assurance is the confidence that a system meets its security requirements, based on specifi...
<p>Mass assignment is one of the most prominent vulnerabilities in RESTful APIs that originate...
A security API is an Application Program Interface that allows untrusted code to access sensitive re...
The aim of our project is to gather empirical evidence on the security impacts of language and Appli...
This thesis introduces the newly-born field of Security API research, and lays the foundations for f...
Application Programming Interfaces (APIs) are a vital link between software components as well as be...
Nowadays, there are more sources of cyber-threats and more cyber-attacks that target all kind of vic...
We report novel API attacks on a Captcha web service, and discuss lessons that we have learned. In s...
Service-oriented architecture has evolved to be the backbone for large-scale integration between dif...
Application programming interfaces (API) are components that facilitate communication between other ...
RESTful APIs (or REST APIs for short) represent a mainstream approach to design and develop Web APIs...
Due to the increasing complexity of web systems, security testing has become indispensable and criti...