Tag: API security testing

Security verification of REST, GraphQL, SOAP APIs, and other exposed endpoints through analysis of authentication, authorization, input validation, rate limiting, error handling, and configurations. Includes tests for injection, broken authentication, excessive data exposure, lack of resources & rate limiting, mass assignment, security misconfiguration, and other vulnerabilities specific to the API layer according to OWASP API Security Top 10.