Owasp global appsec usa 2024
GraphQL Exploitation: Secondary Context Attacks and Business Logic
Learn how GraphQL ID and String scalars enable path traversal-based secondary context attacks in BFF architectures. Two real-world critical exploits and defensive strategies.
Willis Vandevanter
11 February 2026