Web Security Academy Solutions
Ctrlk
  • Server-Side Topics
  • Advanced Topics
    • Web LLM attacks
    • GraphQL API Vulnerabilities
      • Lab: Accessing private GraphQL posts
      • Lab: Accidental exposure of private GraphQL fields
      • Lab: Finding a hidden GraphQL endpoint
      • Lab: Bypassing GraphQL brute force protections
      • Lab: Performing CSRF exploits over GraphQL
    • Prototype Pollution
Powered by GitBook
On this page
  1. Advanced Topics

GraphQL API Vulnerabilities

Lab: Accessing private GraphQL postsLab: Accidental exposure of private GraphQL fieldsLab: Finding a hidden GraphQL endpointLab: Bypassing GraphQL brute force protectionsLab: Performing CSRF exploits over GraphQL
PreviousLab: Exploiting insecure output handling in LLMsNextLab: Accessing private GraphQL posts