Companies Home Search Profile

OWASP API Security Top 10 (2023) - NodeJS Code Examples

Focused View

Ajay Gupta

3:01:23

11 View
  • 1 - Welcome.mp4
    04:20
  • 1 - welcome.pptx
  • 2 - About OWASP.mp4
    03:58
  • 2 - About-OWASP.pptx
  • 3 - Sample handson Application Overview.mp4
    08:18
  • 4 - Intro.mp4
    00:44
  • 4 - Module2-Lectire-1-Intro-to-top-10.pptx
  • 5 - JSON Web Token Authentication Flow.mp4
    14:17
  • 6 - Broken Object Level Authorization.mp4
    01:50
  • 7 - Broken Object Level Authorization Identify Fix handson.mp4
    18:48
  • 8 - Broken Authentication.mp4
    02:48
  • 9 - Broken Authentication Identify Fix handson.mp4
    20:03
  • 10 - Broken Object Property Level Authorization Intro.mp4
    02:05
  • 11 - Broken Object Property Level Authorization Identify Fix handson.mp4
    18:12
  • 12 - Unrestricted Resource Consumption Intro.mp4
    04:11
  • 14 - Broken Function Level Authorization Intro.mp4
    03:49
  • 15 - Broken Function Level Authorization Identify Fix handson.mp4
    14:09
  • 16 - Unrestricted Access to Sensitive Business Flows Intro.mp4
    03:49
  • 17 - Unrestricted Access to Sensitive Business Flows Identify Fix handson.mp4
    07:50
  • 18 - Server Side Request Forgery SSRF Intro.mp4
    04:15
  • 19 - Server Side Request Forgery SSRF Identify Fix hands on.mp4
    07:47
  • 20 - Security Misconfiguration Intro.mp4
    04:26
  • 21 - Security Misconfiguration Identify Fix hands on.mp4
    11:17
  • 22 - Improper Inventory Managment Intro.mp4
    02:18
  • 23 - Improper Inventory Managment Identify Fix hands on.mp4
    06:36
  • 24 - Unsafe Consumption of APIs Intro.mp4
    04:44
  • 25 - Unsafe Consumption of APIs Identify Fix hands on.mp4
    10:49
  • Description


    Mastery of OWASP API Security 2023: Uncover vulnerabilities, adopt countermeasures, and safeguard your APIs.

    What You'll Learn?


    • Introduction to API Security
    • Understanding OWASP API Security Risks: A detailed exploration of the Open Web Application Security Project (OWASP) API Security Top 10 risks for the year 2023.
    • Risk Mitigation Strategies: Students will learn various techniques and best practices for mitigating each of the OWASP API security risks covered in the course.
    • Building Secure APIs: Students will gain practical insights into designing and developing secure APIs from scratch.
    • opics covered include input validation, data encryption, secure error handling, logging and monitoring practices

    Who is this for?


  • developer
  • an architect
  • a security professional
  • someone eager to enhance their understanding of API security
  • What You Need to Know?


  • Basic knowledge of APIs and CRUD operation.
  • Basic Understanding of API Authentication & Authorization using AUTH Tokens
  • More details


    Description

    In this comprehensive course, we dive deep into the OWASP Top Ten - API Security Risks 2023 and explore real-world examples to understand the critical security challenges faced by modern web applications. With the increasing reliance on APIs for data sharing and communication between applications, it is crucial for developers and security professionals to be well-versed in the threats and vulnerabilities associated with API security.


    Throughout the course, we will examine each of the API security risks listed in the OWASP Top Ten 2023, providing in-depth analysis and practical insights. By studying real-world examples, participants will gain a solid understanding of the potential risks and their impact on the security posture of APIs.


    Key Topics Covered:

    1. Broken Object Level Authorization

    2. Broken Authentication

    3. Broken Object Property Level Authorization

    4. Unrestricted Resource Consumption

    5. Broken Function Level Authorization

    6. Unrestricted Access to Sensitive Business Flows

    7. Server Side Request Forgery

    8. Security Misconfiguration

    9. Improper Inventory Management

    10. Unsafe Consumption of APIs


    Course Format and Learning Methods:

    - Interactive lectures with real-world examples and case studies

    - Hands-on exercises and demonstrations to reinforce concepts

    - Group discussions and collaborative problem-solving activities

    - Q&A sessions and open forums for participant engagement

    - Access to additional resources, reference materials, and tools for further exploration


    By the end of this course, participants will have a comprehensive understanding of the OWASP Top Ten - API Security Risks 2023 and the necessary skills to effectively assess, mitigate, and protect APIs from potential vulnerabilities. They will be equipped with practical knowledge and best practices to implement secure API architectures, conduct security assessments, and ensure the overall integrity of their applications.


    Who should attend:

    - Software developers and engineers

    - Security professionals and analysts

    - IT managers and administrators

    - Web application testers and quality assurance specialists


    Join us in this immersive course as we delve into the world of API security risks and empower ourselves with the knowledge and expertise needed to build robust and secure applications.


    Who this course is for:

    • developer
    • an architect
    • a security professional
    • someone eager to enhance their understanding of API security

    User Reviews
    Rating
    0
    0
    0
    0
    0
    average 0
    Total votes0
    Focused display
    I am an innovative, creative thinker who is adept at coming up with real solutions that work for clients. With experience in a wide variety of software, system architectures and programming languages, I am always current with the latest developments in the software development world. I am mostly interested in AWS/Azure cloud infrastructure and services.
    Students take courses primarily to improve job-related skills.Some courses generate credit toward technical certification. Udemy has made a special effort to attract corporate trainers seeking to create coursework for employees of their company.
    • language english
    • Training sessions 24
    • duration 3:01:23
    • Release Date 2023/12/16