Test modern APIs for the risks scanners miss — auth, objects, and business logic — then fix them.
Vector focuses on the OWASP API Security Top 10: broken object/function authorization, mass assignment, and rate-limit abuse, on CyberForge’s vulnerable API sandbox.
BOLA, BFLA, and authentication.
Mass assignment, rate limits, and logic.