Security testing your APIs - Unrestricted Access to Sensitive Business Flows

from blog On Test Automation, | ↗ original
In this blog post series, I am going to explore the vulnerabilities in the OWASP API Security Top 10. For each entry, I’ll show you how to perform experiments on APIs to test for the vulnerability, and I’ll discuss my observations.