paint-brush
9 Vital API Security Threats Every Team Should Watch Forby@moesif
484 reads
484 reads

9 Vital API Security Threats Every Team Should Watch For

by moesif12mSeptember 4th, 2020
Read on Terminal Reader
Read this story w/o Javascript
tldt arrow

Too Long; Didn't Read

The hard part about APIs is that it provides direct access to large amounts of data while bypassing browser precautions. Instead of worrying about SQL injection and XSS issues, you should be concerned about the bad actor who was able to paginate through all your customer records and their data. Typical prevention mechanisms like Captchas and browser fingerprinting won’t work since APIs by design need to handle a very large number of API accesses even by a single customer. Some of these are on the OWASP Security API list, but not all.

Companies Mentioned

Mention Thumbnail
Mention Thumbnail
featured image - 9 Vital API Security Threats Every Team Should Watch For
moesif HackerNoon profile picture
moesif

moesif

@moesif

User-Centric API Analytics

L O A D I N G
. . . comments & more!

About Author

moesif HackerNoon profile picture
moesif@moesif
User-Centric API Analytics

TOPICS

THIS ARTICLE WAS FEATURED IN...

Permanent on Arweave
Read on Terminal Reader
Read this story in a terminal
 Terminal
Read this story w/o Javascript
Read this story w/o Javascript
 Lite
Also published here