Issue 277 - Prevent API Security Bypass

In issue 277 a report from researchers at Ethiack demonstrated how to bypass security products from a host of different vendors.

With security products failing to do the job, we look at how to engage API developers to help with security, without trying to turn developers in penetration testers, or ask them to decipher vulnerability reports from DAST tools.

In this video I use API Scan in VSCode to find security vulnerabilities.