Our methodology is based upon our extensive experience within security testing of API and is further supported by the OWASP framework and NIST guidelines for security testing. The methodology is specifically made for API testing and covers areas such as:
The test is performed as a combination of creative manual test actions and automated scans.