Web Security Academy Solutions
search
⌘Ctrlk
Web Security Academy Solutions
  • Server-Side Topics
  • Advanced Topics
    • Web LLM attacks
    • GraphQL API Vulnerabilities
      • Lab: Accessing private GraphQL posts
      • Lab: Accidental exposure of private GraphQL fields
      • Lab: Finding a hidden GraphQL endpoint
      • Lab: Bypassing GraphQL brute force protections
      • Lab: Performing CSRF exploits over GraphQL
    • Prototype Pollution
    • HTTP Request Smuggling
gitbookPowered by GitBook
block-quoteOn this pagechevron-down
  1. Advanced Topics

GraphQL API Vulnerabilities

Lab: Accessing private GraphQL postschevron-rightLab: Accidental exposure of private GraphQL fieldschevron-rightLab: Finding a hidden GraphQL endpointchevron-rightLab: Bypassing GraphQL brute force protectionschevron-rightLab: Performing CSRF exploits over GraphQLchevron-right
PreviousLab: Exploiting insecure output handling in LLMschevron-leftNextLab: Accessing private GraphQL postschevron-right