BSides Iowa 2017 - Track 2 Title: "Want to break JavaScript and APIs in web apps?" Speaker: Andrew Freeborn Learn how to identify, exploit, and choose remediation options for JavaScript and APIs. As modern web applications are integrating more JavaScript frameworks and adding APIs, the added complexity leaves the web app more prone to security issues. Security testers need to ensure these frameworks and APIs are safe to use and implemented correctly. Using an intentionally broken OWASP project, let’s dive into some tactical skills for improving the security environment.