Web application and API security tools are not effective enough to protect against today’s threats.

Traditional web app and API security tools have become obsolete against today’s threats. Organizations need a new approach that provides real-time protection without false positives https://t.co/Gtr ...

Continue Reading
I’m going to be taking a break from blogging for the next few months.

I will still be around on Twitter and Facebook, so feel free to reach out if you have any questions or comments! I’ve been thinking about this post for quite some time now. It is something that has ...

Continue Reading
The Open Future World (OFW) is a non-profit organisation that promotes the development of open banking and open data ecosystems.

We are based in London, UK. Our mission is to accelerate the adoption of open banking standards and technologies by businesses, governments and individuals around the world. We believe that: 1/ The ...

Continue Reading
The API was not secure because the application code implementing it wasn’t secure.

The incident highlights a number of key issues that organizations need to address when developing and deploying APIs: API security is critical, even if you think you don’t have any “real users” – ...

Continue Reading
I’m not a fan of the new “sketchbook” feature in Sketch.

I think it is a step back from what we had before, and I don’t see any real benefit to using it over just having an artboard with your sketches on them. If you want to make changes later, you can alw ...

Continue Reading
API keys are passwords.

Treat them as such. 3. Use a Secure Communication Channel The most common way to implement API security is through the use of HTTPS, which encrypts all traffic between users and the API endpoint usi ...

Continue Reading
If you’re using an API, make sure that it has rate limiting enabled.

Rate Limiting for the Win! So how do we prevent these issues? The first step is to implement rate-limiting on your APIs. Rate limiting can be implemented in many ways: by IP address, by user agent (b ...

Continue Reading
Companies are suffering more API attacks than ever, and companies remain as ill-prepared as ever.

The Salt Labs team today released the latest edition of the pioneering “State of API Security” report. The data, drawn from a combination of survey responses and empirical data from Salt Security cu ...

Continue Reading

Back to Main

Subscribe for the latest news: