BigHugger
sk Skill · mukul975

testing-api-authentication-weaknesses

Tests API authentication mechanisms for weaknesses including broken token validation, missing authentication on endpoints, weak password policies, credential stuffing susceptibility, token leakage in URLs or logs, and session management flaws. The tester evaluates JWT implementation, API key handling, OAuth flows, and session token entropy to identify authentication bypasses. Maps to OWASP API2:2023 Broken…

installs 8w
152
30-day movement
starts with the next reading
Related entries
1
Connections
0
pythonPythonsession-managementjwtcredential-securityauthenticationowaspapi-security
Host repository
mukul975/Anthropic-Cybersecurity-Skills
Version
1.0.0
Installs, lifetime
435
Installs, 8 weeks
152
Licence
Apache-2.0
Host stars
33k
Host language
Python