The OWASP API Risk List is a great starting point for assessing the security of an API.

However, it could be improved by adding more granular controls and expanding its scope to include other attack vectors such as mobile apps.

The Open Web Application Security Project (OWASP) has been around since 2001 and has become one of the leading organizations in helping enterprises secure their web applications. The organization’s flagship project is the OWASP Top 10 which provides a list of the most critical security risks that developers should address when building applications. In 2017, OWASP released another important document called “API Security Guide” which aims to help developers build secure APIs using best practices from both software development and information security communities

Back to Main

Subscribe for the latest news: