Running With Kites
Hacking APIs Through Fuzzing and Content Discovery

This paper provides a step-by-step workflow for performing fuzzing and content discovery of APIs using Kiterunner. Along the journey of teaching Kiterunner, it also presents empirical data resulting from the use of Kiterunner in my vulnerability research campaign into hacking FHIR APIs.
Summary
Alissa Knight
Jun 30, 2021