ASTRA: API Security Threat & Risk Atlas

ASTRA is a structured, community-driven threat matrix for API security, modeled after MITRE ATT&CK but built specifically for APIs. It provides a protocol-native knowledge base covering REST, GraphQL, gRPC, WebSocket, and SOAP across five tactic categories: Reconnaissance, Authentication Abuse, Authorization Failure, Exfiltration, and Impact. Version 1.0 includes 14 techniques such as BOLA, BFLA, JWT none algorithm bypass, GraphQL introspection leaks, excessive data exposure, and API DoS. Each technique includes a description, attack scenario, protocol applicability, composite severity score, a ready-to-use Sigma detection rule, a real-world breach mapping (e.g., Twitter 2022, Optus 2022, Peloton 2021), and remediation guidance. The project is open source under CC BY 4.0, accepts community contributions, and is designed for threat modeling, penetration testing, and SIEM integration. 

https://github.com/isha-singhMalik/Astra

Comments

Popular posts from this blog

Prompt Engineering Demands Rigorous Evaluation

KEVIntel: Real-Time Intelligence on Exploited Vulnerabilities

SecObserve: Simplified Vulnerability and License Management for CI/CD Pipelines