Intruder has launched Autoswagger, a free tool designed to identify authorization vulnerabilities in APIs. These common weaknesses, such as broken function and object level authorization, pose significant risks and were highlighted through examples found during bug bounty tests. The article emphasizes the importance of continuous API monitoring and the dangers of exposing API documentation publicly.
+ autoswagger
api-security ✓
vulnerabilities ✓
documentation ✓
testing ✓