Harmonizing OWASP API and Application Top 10 Security Risks - Combining Lists for Comprehensive Coverage
Offered By: OWASP Foundation via YouTube
Course Description
Overview
Explore the intersection of API and application security in this 51-minute conference talk by Joe Schottman, a Security Analyst focused on R&D. Gain insights into the OWASP Top Ten Security Risks for APIs and web applications, understanding their commonalities and differences. Learn the fundamentals of APIs, including Web Services and GraphQL, before diving into a comprehensive analysis of various security risks. Discover detection methods and prevention strategies for vulnerabilities such as injection attacks, API weaknesses, and excessive data exposure. Conclude with valuable final thoughts on harmonizing security approaches across both domains to create a more robust defense against potential threats.
Syllabus
Intro
Five Questions
Agenda
Web Services
APIs
GraphQL
Top 10 List
Injection Attacks
API Weaknesses
Defenses
Insecurity
Excessive Debt
Final Thoughts
Taught by
OWASP Foundation
Related Courses
Authentication & Authorization: OAuthUdacity Desarrollo de Aplicaciones Web: Seguridad
University of New Mexico via Coursera Web Application Development: Security
University of New Mexico via Coursera Hacking and Patching
University of Colorado System via Coursera Fundamentals of Computer Network Security
University of Colorado System via Coursera