API Authentication Attacks - using Zap Proxy, BurpSuite and Wfuzz
To run the tests in a self-hosted environment, we can use vAPI, which is a vulnerable, adversely programmed interface that is a self-hostable API.
Running vAPI using a Docker container is fairly straightforward. Download the vAPI GitHub repo into a f...
nebulablogs.com3 min read