Testing in Postman: Security Testing
Postman 10
| Beginner
- 15 videos | 2h 13m 20s
- Includes Assessment
- Earns a Badge
Application programming interface (API) security testing is the practice of identifying and addressing vulnerabilities in the API server. Authentication and authorization play a pivotal role in securing APIs, but vulnerabilities may still emerge due to complex systems, rapid development, and third-party components. In this course, you will learn the basic building blocks of implementing application security. You will examine the Open Web Application Security Project (OWASP) Top 10 lists of application and API security vulnerabilities, which research and document the most common security vulnerabilities for applications and provide guidance on how these issues can be mitigated. Then you will set up an API server with basic authentication for security and set up success-flow and failure-flow tests. Next, you will explore defense strategies against structured query language (SQL) injection errors and write tests to inject malignant SQL queries to run against the back-end database. Finally, you will discover how SQL best practices can help mitigate SQL injection attacks.
WHAT YOU WILL LEARN
-
Discover the key concepts covered in this courseRecall aspects of secure appsOutline causes of security vulnerabilitiesProvide an overview of api securityOutline a01 -a04 of the open web application security project (owasp) top 10 application vulnerabilitiesOutline a05 - a10 of the owasp top 10 application vulnerabilitiesOutline the owasp top 10 api security issuesSet up a local server with basic authentication
-
Perform security tests for basic authenticationCreate security tests for different types of requestsCatch authentication failures with security testsDescribe how structured query language (sql) injection worksView how sql injection attacks are executedView the requests in the postman security collectionSummarize the key concepts covered in this course
IN THIS COURSE
-
2m 6sIn this video, we will discover the key concepts covered in this course. FREE ACCESS
-
11m 42sAfter completing this video, you will be able to recall aspects of secure apps. FREE ACCESS
-
6m 41sUpon completion of this video, you will be able to outline causes of security vulnerabilities. FREE ACCESS
-
10m 24sAfter completing this video, you will be able to provide an overview of API security. FREE ACCESS
-
11m 48sUpon completion of this video, you will be able to outline A01 -A04 of the Open Web Application Security Project (OWASP) Top 10 application vulnerabilities. FREE ACCESS
-
12m 50sAfter completing this video, you will be able to outline A05 - A10 of the OWASP Top 10 application vulnerabilities. FREE ACCESS
-
9m 22sUpon completion of this video, you will be able to outline the OWASP Top 10 API security issues. FREE ACCESS
-
7m 5sIn this video, find out how to set up a local server with basic authentication. FREE ACCESS
-
10m 27sDuring this video, you will learn how to perform security tests for basic authentication. FREE ACCESS
-
7m 11sDiscover how to create security tests for different types of requests. FREE ACCESS
-
8m 32sIn this video, you will learn how to catch authentication failures with security tests. FREE ACCESS
-
12m 43sAfter completing this video, you will be able to describe how structured query language (SQL) injection works. FREE ACCESS
-
10m 9sDuring this video, discover how to view how SQL injection attacks are executed. FREE ACCESS
-
9m 19sIn this video, you will learn how to view the requests in the Postman security collection. FREE ACCESS
-
3mIn this video, we will summarize the key concepts covered in this course. FREE ACCESS
EARN A DIGITAL BADGE WHEN YOU COMPLETE THIS COURSE
Skillsoft is providing you the opportunity to earn a digital badge upon successful completion on some of our courses, which can be shared on any social network or business platform.
Digital badges are yours to keep, forever.