article thumbnail

The Mayhem for API Difference - A ZAP - API Scan Comparison

ForAllSecure

When scanning an API, you will be able to uncover more issues if you can successfully authenticate with it. -- ignore-endpoint "^GET /createdb$". Header Authentication. -z Header-based authentication is a first-class concept in Mayhem for API. Medium / Warning. Description. Mayhem for API. z "-config replacer.full_list(0).description=auth1

article thumbnail

The Mayhem for API Difference - A ZAP - Mayhem for API Scan Comparison

ForAllSecure

When scanning an API, you will be able to uncover more issues if you can successfully authenticate with it. -- ignore-endpoint "^GET /createdb$". Header Authentication. -z Header-based authentication is a first-class concept in Mayhem for API. Medium / Warning. Description. Mayhem for API. z "-config replacer.full_list(0).description=auth1

article thumbnail

Technology Short Take 102

Scott Lowe

Bernd Malmqvist talks about Avi Networks’ software-defined load balancing solution, including providing an overview of how to use Vagrant to test it yourself. Chris Hein shows how to use the Heptio Authenticator with kops to link Kubernetes cluster authentication to AWS IAM. Cloud Computing/Cloud Management.