Secure API Design: Authorization, Validation, and Testing
Learn how to protect API endpoints with resource-level authorization, input and output controls, safe logging, rate limits, and tests for denied access.
Learn how to protect API endpoints with resource-level authorization, input and output controls, safe logging, rate limits, and tests for denied access.
Learn how passwords, sessions, bearer tokens, MFA, passkeys, and federated sign-in work, plus what to check when choosing and testing authentication.
Track down C++ build errors, wrong answers, and crashes with reproducible inputs, compiler warnings, breakpoints, and sanitizer builds.
Learn to test behavior, boundaries, and errors with repeatable unit tests, then use failures and coverage to improve your development workflow.
Learn how directory access, service accounts, ACLs, links, backups, and mount options affect Linux file security, then run a small audit on a system you administer.
Learn what a VPN changes on public Wi-Fi, where it falls short, and how to check a provider’s privacy claims and connection settings.
Learn how to use AES-GCM for Java field encryption, store keys separately, bind ciphertext to its record, and test authentication failures.
Trace where user data travels, keep it out of development workflows and logs, limit access, and test deletion with a synthetic account.
Learn to spot C++ memory bugs involving ownership, dangling pointers, container invalidation, shared ownership, copying, and size calculations.
Check IP addresses, routes, and DNS on Linux, with Windows and macOS equivalents. Learn which tool manages settings and how to troubleshoot a lab connection safely.