Introducing Vespasian: API discovery without documentation

Security teams are often asked to test APIs with a login and no specification. Vespasian captures live traffic from a browser session or existing proxy captures, classifies API calls, and produces structured REST specifications.

The result is a map of the API attack surface that Guard can inventory and test.

Please authenticate to join the conversation.

Upvoters
Board

Capability

Date

7 months ago

Subscribe to post

Get notified by email when there are changes.