#Awesome#A collection of awesome API Security tools and resources. The focus goes to open-source tools and resources that benefit all the community.
翻译 - 一组很棒的 API 安全工具和资源。
The OWASP OFFAT tool autonomously assesses your API for prevalent vulnerabilities, though full compatibility with OAS v3 is pending. The project remains a work in progress, continuously evolving towar...
GraphQL automated security testing toolkit
API Pentesting Tools are specialized security tools used to test and analyze the security of Application Programming Interfaces (APIs).
Tests your API automatically for common API vulnerabilities. Project is still Work In Progress. PRs are appreciated.
#博客#API Penetration Testing Notes
A Burp Suite extension written in Kotlin that enables persistent sticky session handling in web application testing. Built with the Montoya API and modern Kotlin tooling.
A Swiss knife for API security testing including a docker image, some labs and resources.
Feature request system.
BOLA_Excessive_Data_Exposure_API_Pentest (Based on crAPI, my learning)