API Testing
MAIN TRACK TALK
From Console to Contract: Ethical API Hacking & Debugging That Wins Practical API testing, DevTools tricks and a true endpoint-hacking story that led to a client win.
This talk bridges testing and security in a practical, non-theoretical way. It’s targeted at QA engineers who want to expand beyond UI-only checks, strengthen their API testing skills, and use browser tools as part of daily triage and testing workflows.
Modern QA work requires more than assertions and UI checks – it requires understanding how the application communicates, how APIs can be tested (and misused), and how to use built-in browser tools (Console, Network, DevTools, etc…) to speed up investigation and root-cause analysis. This talk covers pragmatic techniques for validating and hardening APIs, finding insecure endpoints, and using Console/Network to turn observations into reliable tests and bug reports.
What you’ll learn
Session details

Cedomir Zivkovic
Cedomir had the opportunity to work with several companies, including Vast, Hyperoptic, Zepter, Tatatu, and Strabag. In his current role as a Senior QA Engineer (Mentor & Lead), he’s passionate about software testing and quality improvement. Cedomir focus is on gaining a deep understanding of user needs and ensuring quality across all layers of an application – from API, Frontend, and Database, to Automation, Gateway, ESP, and ERP systems. He also has strong expertise in analysing application communication and traffic between endpoints to ensure reliability and performance.