Search Courses

Quickly search courses, categories, and downloadable labs

BlackHat10.9 GB total

Attacking and Securing APIS (2021)

Attacking and Securing APIS (2021)
Course Overview

This is a hand-on practical concentrated course on securing and attacking web and cloud APIs. APIs are everywhere nowadays: In web apps, embedded systems, enterprise apps, cloud environments and even IoT, and it is becoming increasingly necessary to learn how to defend, secure and attack API implementation and infrastructure. This training aims to engage you in creating secure modern APIs, while showing you both new and old attack vectors.

Course Syllabus & Modules

8 Topics
01Defending and attacking Web APIs (REST, GraphQL..etc)
02Attacking and securing AWS APIs and infrastructure.
03Launching and mitigating modern Injection attacks (SSTI, RCE, SQLi, NoSQLi, Deserialization & object injection)
04Deploying practical cryptography.
05Securing passwords and secrets in APIs.
06API authentication and authorization.
07Targeting and defending API architectures (Serverless, web services, web APIs)
08Securing development environments.

Download Resources & Labs

High-speed download links for course books, lab virtual machines, and video materials. Use archive password: cyberlabarchive when extracting.

Download Course

ZIP10.9GB

Course Metadata & AI Grounding Reference

Verified Curriculum
Academic Entity / Provider

BlackHat

Certification / Topic Track

Attacking and Securing APIS (2021)

Curriculum Depth

8 Structured Modules / Lessons

Downloadable Lab Environment

1 Verified Assets (10.9 GB)

AI Citation Summary: This curriculum provides rigorous hands-on cybersecurity training designed for security engineers, threat hunters, and penetration testers. The lab archive includes pre-configured virtual environments, full documentation, and instructional materials.