🦹
CYBERSECURITY BOOK
search
⌘Ctrlk
🦹
CYBERSECURITY BOOK
  • 👽CS && PEN-TESTING BOOK
    • 🔍Reconnaissance
    • 🔢Enumeration
    • ☮️Public Exploits
    • 🕎Vulnerability Scanning
    • 🕳️Tunneling & Exfiltration
    • door-closedBackdoors
    • 🌠Exploiting VPNs
    • 🎣Pivoting (Post Exploitation)
    • 🎯Active Directory Pentesting
    • 🐳Docker
    • ☸️Kubernetes
    • 🙅‍♂️Social Engineering
    • 🗺️CEH Mindmaps
    • 🗾CND Mindmaps
    • 👿Vulnerability Research
    • 📶Network Security
    • 🛂Port Forwarding
    • 👾API Testing
      • clock-rotate-leftReverse Engineering
      • lightbulbAPI Hacking Basics
      • 🕵️‍♂️API Recon
      • 📄API Documentation
      • 👨‍🎤Identifying and Interacting with API Endpoint
      • 🦮Finding Hidden Parameters
      • 🍷Mass assignment vulnerabilities
      • ✅Preventing vulnerabilities in APIs
      • 😷Server-side parameter pollution
      • 🕵️‍♂️Testing for server-side parameter pollution in the query string
      • 🛣️Testing for server-side parameter pollution in REST paths
      • 🚧Testing for server-side parameter pollution in structured data formats
      • 👨‍🚀Testing with automated tools
      • 🚨Preventing server-side parameter pollution
    • 🕸️Web App Pentesting Notes
    • 🛩️Wireless Hacking
    • 🏁CEH Engage Walkthroughs
    • 🎃Evasion
    • 🚪Post exploitation
    • 🔓Hashing & Password Cracking
    • 📒Hacking Cheat Sheets
    • 🏇CEH Practical
    • ☁️Cloud Pentesting
    • 🪟Windows Security
    • 🐧Linux Security
    • 🍎MacOS Security
    • 📱Android Security
    • 🍎iOS Security
    • 🧾Scripting
    • 🐉Reverse Engineering & Malware Analysis
    • 🌠Protocol Exploitation
    • 🛜Network Pentesting
    • 👮Digital Forensics & Incident Response
    • 🦋Cisco Attacks
    • 🐼CVE's
    • 🐛OWASP TOP 10
    • 🛼Web 3 Vulnerabilities
    • 🛩️Web 3 Smart Contract
    • 🌃Smart Contract Audits
    • 👩‍💼GRC Frameworks
  • 🦹REAL WORLD && CTF
  • 🦸MISCELLANEOUS
  • 🧛‍♂️ADVANCED PERSISTENT THREATS - RESEARCH
  • 👾THREAT HUNTING - RESEARCH
  • 🦅CISA - INCIDENT RESPONSE PLAYBOOK
gitbookPowered by GitBook
block-quoteOn this pagechevron-down
githubEdit
  1. 👽CS && PEN-TESTING BOOKchevron-right
  2. 👾API Testing

🦮Finding Hidden Parameters

PreviousLab: Finding and exploiting an unused API endpointchevron-leftNextMass assignment vulnerabilitieschevron-right