Asp.Net Core Web API Security Checklist. TOP 3 Vulnerabilities And How To Fix Them

  Рет қаралды 10,548

Codewrinkles

Codewrinkles

Күн бұрын

Пікірлер: 18
@oxioxy
@oxioxy 4 ай бұрын
Clear and to the point, thank you!
@Codewrinkles
@Codewrinkles 4 ай бұрын
I'm happy you found it useful. Thanks for watching
@Codewrinkles
@Codewrinkles 4 ай бұрын
Glad it was helpful!
@Tolmachovtv
@Tolmachovtv 10 ай бұрын
Thank you for such short and clear explanation, especially for practical examples
@uzayrsyed6293
@uzayrsyed6293 Жыл бұрын
Love the fact you actually demonstrated these security concepts with code. Thank you! Also for the Broken Object Level Authorization example could we alternatively embed the shopId into the jwt token or cookie as a claim on login then the subsequent requests to the "revenue" endpoint can use this shopId to fetch revenue?
@Codewrinkles
@Codewrinkles Жыл бұрын
Theoretically yes, but that would become more cumbersome when I have more shops. The important idea is that you need to varify that only the shop owner can view the revenue. How you do it, it's up to you. Be creative.
@asiridissanayaka6849
@asiridissanayaka6849 8 ай бұрын
Very much practical and well explained.
@broadshare
@broadshare 9 ай бұрын
Very practical, thank you.
@zeeshanasghar3751
@zeeshanasghar3751 Жыл бұрын
love it, simple and precise
@Codewrinkles
@Codewrinkles Жыл бұрын
Glad you liked it.
@DeepWorksStudios
@DeepWorksStudios Жыл бұрын
Great content, keep it up!
@Codewrinkles
@Codewrinkles Жыл бұрын
Thank you! I do my best to keep it up :)
@dotnetdevni
@dotnetdevni Жыл бұрын
I have been thinking about this more and more should I be encrypting the payload I always have ssl and all but most of the times im passing jason data.
@Codewrinkles
@Codewrinkles Жыл бұрын
Maybe I'm missing something. The entire request is encrypted. Why also encrypting the payload?
@matt-irby
@matt-irby Жыл бұрын
Awesome video!
@Codewrinkles
@Codewrinkles Жыл бұрын
Glad you enjoyed it. Make sure to share it.
@arunbm123
@arunbm123 16 күн бұрын
@hifirulezzz
@hifirulezzz Жыл бұрын
Security is important, but who is sending id in the header? It is dumb. Token should be created and encrypted during login. Only token contains information for authentication and authorization
The FASTEST Way To Build API Clients in .NET
12:39
Codewrinkles
Рет қаралды 6 М.
Elegant Global Error Handling Using Middleware In ASP.NET Core
13:58
Milan Jovanović
Рет қаралды 92 М.
Hilarious FAKE TONGUE Prank by WEDNESDAY😏🖤
0:39
La La Life Shorts
Рет қаралды 44 МЛН
Ozoda - Alamlar (Official Video 2023)
6:22
Ozoda Official
Рет қаралды 10 МЛН
УЛИЧНЫЕ МУЗЫКАНТЫ В СОЧИ 🤘🏻
0:33
РОК ЗАВОД
Рет қаралды 7 МЛН
Top 12 Tips For API Security
9:47
ByteByteGo
Рет қаралды 139 М.
OWASP API Security Top 10 Course - Secure Your Web Apps
1:27:01
freeCodeCamp.org
Рет қаралды 86 М.
Don't Use AutoMapper in C#! Do THIS Instead!
16:17
Codewrinkles
Рет қаралды 72 М.
OWASP Top 10 Web Application Security Risks
14:58
Telusko
Рет қаралды 73 М.
Architecting a Microservices System In Real Life
20:46
Codewrinkles
Рет қаралды 2,5 М.
Hilarious FAKE TONGUE Prank by WEDNESDAY😏🖤
0:39
La La Life Shorts
Рет қаралды 44 МЛН