The document discusses various types of malicious hacking attacks on APIs, including SQL injection, XPath injection, code injection, log injection, XML external entity injection, cross-site scripting (XSS), denial-of-service (DoS) attacks, checking user permissions, malformed XML, XML bombs, malicious attachments, fuzzing scans, and custom scripting. It provides brief descriptions of each attack type and references additional resources on API security best practices.
Related topics: