API Fuzzer

API Fuzzer

Fuzzapi
+
+

Related Products

  • WebCatalog Desktop
    1 Rating
    Visit Website
  • Astra Pentest
    211 Ratings
    Visit Website
  • Aikido Security
    106 Ratings
    Visit Website
  • Criminal IP
    13 Ratings
    Visit Website
  • Wiz
    1,059 Ratings
    Visit Website
  • c/side
    23 Ratings
    Visit Website
  • ManageEngine Endpoint Central
    2,343 Ratings
    Visit Website
  • ZenTreasury
    9 Ratings
    Visit Website
  • Source Defense
    7 Ratings
    Visit Website
  • Zengo Wallet
    414 Ratings
    Visit Website

About

API Fuzzer allows to fuzz-request attributes using common pentesting techniques and lists vulnerabilities. API Fuzzer gem accepts an API request as input and returns vulnerabilities possible in the API. Cross-site scripting vulnerability, SQL injection, blind SQL injection, XML external entity vulnerability, IDOR, API rate limiting, open redirect vulnerabilities, information disclosure flaws, info leakage through headers, and cross-site request forgery vulnerability.

About

Fuzz testing or fuzzing is a software testing technique, that basically consists in finding implementation bugs using malformed/semi-malformed data injection in an automated fashion. Let’s consider an integer in a program, which stores the result of a user’s choice between 3 questions. When the user picks one, the choice will be 0, 1, or 2, which makes three practical cases. Integers are stored as a static size variable. If the default switch case hasn’t been implemented securely, the program may crash and lead to “classical” security issues. Fuzzing is the art of automatic bug finding, and its role is to find software implementation faults and identify them if possible. A fuzzer is a program that automatically injects semi-random data into a program/stack and detects bugs. The data-generation part is made of generators, and vulnerability identification relies on debugging tools. Generators usually use combinations of static fuzzing vectors.

Platforms Supported

Windows
Mac
Linux
Cloud
On-Premises
iPhone
iPad
Android
Chromebook

Platforms Supported

Windows
Mac
Linux
Cloud
On-Premises
iPhone
iPad
Android
Chromebook

Audience

Individuals wanting a tool to find vulnerabilities in their code and test their applications

Audience

Professional users looking for a solution to find bugs automatically

Support

Phone Support
24/7 Live Support
Online

Support

Phone Support
24/7 Live Support
Online

API

Offers API

API

Offers API

Screenshots and Videos

Screenshots and Videos

Pricing

Free
Free Version
Free Trial

Pricing

No information available.
Free Version
Free Trial

Reviews/Ratings

Overall 0.0 / 5
ease 0.0 / 5
features 0.0 / 5
design 0.0 / 5
support 0.0 / 5

This software hasn't been reviewed yet. Be the first to provide a review:

Review this Software

Reviews/Ratings

Overall 0.0 / 5
ease 0.0 / 5
features 0.0 / 5
design 0.0 / 5
support 0.0 / 5

This software hasn't been reviewed yet. Be the first to provide a review:

Review this Software

Training

Documentation
Webinars
Live Online
In Person

Training

Documentation
Webinars
Live Online
In Person

Company Information

Fuzzapi
github.com/Fuzzapi/API-fuzzer

Company Information

OWASP
United States
owasp.org/www-community/Fuzzing

Alternatives

Alternatives

Radamsa

Radamsa

Aki Helin
ClusterFuzz

ClusterFuzz

Google
LibFuzzer

LibFuzzer

LLVM Project
go-fuzz

go-fuzz

dvyukov
Radamsa

Radamsa

Aki Helin
CI Fuzz

CI Fuzz

Code Intelligence

Categories

Categories

Integrations

CI Fuzz
Ruby

Integrations

CI Fuzz
Ruby
Claim API Fuzzer and update features and information
Claim API Fuzzer and update features and information
Claim OWASP WSFuzzer and update features and information
Claim OWASP WSFuzzer and update features and information