GraphQL Security Testing with StackHawk

Learn how to run security testing against your GraphQL APIs with StackHawk (). StackHawk’s application security tool makes it easy for developers to find, triage, and fix security bugs before they hit production. In this demo, Co-Founder and Chief Security Officer, Scott Gerlach, walks through an example of testing a sample GraphQL application for security bugs. If you’d like to follow along in testing yourself, the details are outlined in this blog: The video covers: Setting up the file Enabling the security scanner to discover the GraphQL introspection endpoint Running an API security scan of your GraphQL API Reviewing the findings in the terminal or in the StackHawk application Digging into security bugs such as Remote Command Injection and SQL Injection Sign up for a free trial or request a demo at , or feel free to reach o
Back to Top