Media Summary: This talk was presented at the OWASP London Chapter [ONLINE] Meeting on 04 March 2021 Get access to the full case study: ✉️ Sign up In this video, I cover the techniques I use to approach

Finding Your Next Bug Graphql - Detailed Analysis & Overview

This talk was presented at the OWASP London Chapter [ONLINE] Meeting on 04 March 2021 Get access to the full case study: ✉️ Sign up In this video, I cover the techniques I use to approach In this inspiring talk from APISECCON 2026, Abraham Gonzalez (known as pop0sec in the Subscribe to BBRE Premium: ✉️ Sign up In this week's video I deliver on a promise! Last time I went over a ton of

LIKE and SUBSCRIBE with NOTIFICATIONS ON if you enjoyed the video! In the talk " In this video, I'll show you how hackers and A talk given by Dr. Katie Paxton-Fear from Semgrep at the 2025 Platform Summit in Stockholm, Sweden. Heard about

Photo Gallery

Finding Your Next Bug: GraphQL
Finding Your Next Bug: GraphQL Hacking - Katie Paxton-Fear (@InsiderPhd)
What bugs you should look for in a GraphQL API? Bug Bounty Case Study
Learn to Approach GraphQL Endpoints | Bug Bounty Explained
My First API Bug Bounty Bugs: GraphQL & Broken Access Control | Abraham Gonzalez
How Hackers Analyze GraphQL Responses for High-Impact Bugs?
GraphQL for Bug Bounty Hunters
$20,000 Hackerone data leakage via GraphQL
Hunting for bugs in GraphQL APIs (Demo)
#NahamCon2024: GraphQL is the New PHP | @0xlupin
How Bug Hunters Map GraphQL APIs? | PART 1
Live GraphQL Q&A Session
View Detailed Profile
Finding Your Next Bug: GraphQL

Finding Your Next Bug: GraphQL

GraphQL

Finding Your Next Bug: GraphQL Hacking - Katie Paxton-Fear (@InsiderPhd)

Finding Your Next Bug: GraphQL Hacking - Katie Paxton-Fear (@InsiderPhd)

This talk was presented at the OWASP London Chapter [ONLINE] Meeting on 04 March 2021

What bugs you should look for in a GraphQL API? Bug Bounty Case Study

What bugs you should look for in a GraphQL API? Bug Bounty Case Study

Get access to the full case study: https://bbre.dev/gql ✉️ Sign up

Learn to Approach GraphQL Endpoints | Bug Bounty Explained

Learn to Approach GraphQL Endpoints | Bug Bounty Explained

In this video, I cover the techniques I use to approach

My First API Bug Bounty Bugs: GraphQL & Broken Access Control | Abraham Gonzalez

My First API Bug Bounty Bugs: GraphQL & Broken Access Control | Abraham Gonzalez

In this inspiring talk from APISECCON 2026, Abraham Gonzalez (known as pop0sec in the

How Hackers Analyze GraphQL Responses for High-Impact Bugs?

How Hackers Analyze GraphQL Responses for High-Impact Bugs?

Portfolio: https://portfolio.medusa0xf.com/ ✍️

GraphQL for Bug Bounty Hunters

GraphQL for Bug Bounty Hunters

In this episode, we're breaking down

$20,000 Hackerone data leakage via GraphQL

$20,000 Hackerone data leakage via GraphQL

Subscribe to BBRE Premium: https://bbre.dev/premium ✉️ Sign up

Hunting for bugs in GraphQL APIs (Demo)

Hunting for bugs in GraphQL APIs (Demo)

In this week's video I deliver on a promise! Last time I went over a ton of

#NahamCon2024: GraphQL is the New PHP | @0xlupin

#NahamCon2024: GraphQL is the New PHP | @0xlupin

LIKE and SUBSCRIBE with NOTIFICATIONS ON if you enjoyed the video! In the talk "

How Bug Hunters Map GraphQL APIs? | PART 1

How Bug Hunters Map GraphQL APIs? | PART 1

In this video, I'll show you how hackers and

Live GraphQL Q&A Session

Live GraphQL Q&A Session

This week I demo'd

Everything You Wanted to Know About Hacking GraphQL (But Didn’t Know How To Query)

Everything You Wanted to Know About Hacking GraphQL (But Didn’t Know How To Query)

A talk given by Dr. Katie Paxton-Fear from Semgrep at the 2025 Platform Summit in Stockholm, Sweden. Heard about