1. Introduction
  2. 1. Getting Started
    1. 1.1. Installation
    2. 1.2. Hello, Fuzz!
    3. 1.3. Fuzz Your Own API
      1. 1.3.1. HTTP Archive (HAR)
      2. 1.3.2. Postman Collections
      3. 1.3.3. Authentication
      4. 1.3.4. Successful Coverage
      5. 1.3.5. How Long to Run
      6. 1.3.6. Detailed Issues
        1. 1.3.6.1. Spring Boot (Java)
        2. 1.3.6.2. Flask (Python)
  3. 2. Identifying Buggy Endpoints
    1. 2.1. Issue Rules (Checkers)
    2. 2.2. Suppressing Issues
    3. 2.3. Selective Route Testing
    4. 2.4. Zed Attack Proxy (ZAP) Integration
  4. 3. Organizations
  5. 4. CI/CD Integration
    1. 4.1. git Configuration
    2. 4.2. Azure DevOps Pipeline
    3. 4.3. Circle CI
    4. 4.4. GitHub
    5. 4.5. Jenkins Pipeline
  6. 5. Best Practices & Troubleshooting
    1. 5.1. HTTP Proxy Configuration
  7. 6. The Mayhem for API API
  8. 7. gRPC Fuzzing
  9. 8. Request Rewrite Plugins
  10. 9. Response Classify Plugins
  11. 10. Third Party Licenses
  12. 11. Release Notes
  13. 12. FAQ
  14. 13. Current Terms and Policies

Mayhem for API

Current Terms and Policies

  • Privacy Policy
  • Terms of use
  • License Agreement for Free Services (download)