
API Security Risks with OWASP - .NET 151
Adventures in .NET
00:00
Broken Access Control: The Number One Entry in the 2023 API Security Top 10
The number one entry in the 2023 API security top 10 is broken object level authorization, right? That's magical. So we can get access to objects essentially to data without proper authorization. And I mean, that sounds dumb, right? Maybe it is dumb, to be honest. But it kind of categorizes that risk really well. If you get data as well and that's not your voice, that's basically in that bucket, right?
Transcript
Play full episode