API_04: Exploitation

Access to videos for this exercise is only available with PentesterLab PRO
GOPRO
API_04: Exploitation
In this video, we explore API 04 from the API badge using a simple Angular web app named Approval. We identify unexposed functionality in the JavaScript and exploit it to retrieve secret keys.