My Favorite API Hacking Vulnerabilities & Tips

7,474
15
Published 2024-06-24
LIKE and SUBSCRIBE with NOTIFICATIONS ON if you enjoyed the video! 👍

📚 If you want to learn bug bounty hunting from me: app.hackinghub.io/hubs/nahamsec-bug-bounty-course

💵 FREE $200 DigitalOcean Credit:
m.do.co/c/3236319b9d0b

🔗 LINKS:
📖 MY FAVORITE BOOKS:
Bug Bounty Bootcamp: The Guide to Finding and Reporting Web Vulnerabilities -amzn.to/3Re8Pa2
Hacking APIs: Breaking Web Application Programming Interfaces - amzn.to/45g4bOr
Black Hat GraphQL: Attacking Next Generation APIs - amzn.to/455F9l3

🍿 WATCH NEXT:
If I Started Bug Bounty Hunting in 2024, I'd Do this -    • If I Started Bug Bounty Hunting in 20...  
2023 How to Bug Bounty -    • How to Bug Bounty in 2023  
Bug Bounty Hunting Full Time - youtu.be/watch?v=ukb79vAgRiY
Hacking An Online Casino - youtu.be/watch?v=2eIDxVrk4a8
WebApp Pentesting/Hacking Roadmap - youtu.be/watch?v=doFo0I_KU0o


MY OTHER SOCIALS:
🌍 My website - www.nahamsec.com/
👨‍💻 My free labs - app.hackinghub.io/
🐦 Twitter - twitter.com/NahamSec
📸 Instagram - instagram.com/NahamSec
👨‍💻 Linkedin - www.linkedin.com/in/nahamsec/

WHO AM I?
If we haven't met before, hey 👋! I'm Ben, most people online know me online as NahamSec. I'm a hacker turned content creator. Through my videos on this channel, I share my experience as a top hacker and bug bounty hunter to help you become a better and more efficient hacker.

FYI: Some of the links I have in the description are affiliate links that I get a a pe

All Comments (21)
  • @xerox0x1
    Of course, We would like to see an episode about graphql and path traversal ❤
  • @6060fishy
    Awesome video, a nice summary, just what I need to upskill on at the moment. Would love to see Path Traversal next please bro!
  • @agustinothadeus
    Informative video as always Ben, I would really like to hear about how you approach GraphQL APIs, being used to REST, GraphQL seems a whole lot of a different game. I have experimented with using clairvoyance on a couple of APIs but can't bring myself to be comfortable with it as I am with REST.
  • @Z0nd4
    Gracias por el video! Sí, queremos los videos de Path Traversal y GraphQL. Gracias y Saludos!
  • @gk_eth
    need both path traversal and graphql based vulns ben🙂
  • @zbording80
    A Path Traversal video it would be super nice
  • SIR PLEASE REPLY ME I have found a API key hard-coded in a javascript file but I have a confussion that should I report it as a information disclosure vulnerability or look forward to saw impact but I don't know what to do next . please assist me sir