API Security

API Security Requires Everyone’s Support
If you leave cybersecurity responsibilities only to the security team, your organization is setting itself up for a major cybersecurity incident. Security teams are already battling conditions that leave them ripe for ...

Slack App Leaked Hashed User Passwords for 5 YEARS
Since 2017, if you’ve invited anyone to a Slack workspace, your password has leaked. How could this have happened? ...

API Security: A Complete Guide
We as consumers may not realize it, but APIs have revolutionized how we live and work, driving innovation and making it easier to use software in our day-to-day lives. Our society has ...

US Emergency Alert System Has ‘Huge Flaw’ — Broadcasters Must Patch NOW
The Emergency Alert System run by FEMA and the FCC is vulnerable to hacking. This is NOT a test. All will be revealed next week at DEF CON 30 ...

Modern APIs Need a Different Security Approach
Organizations leverage application programming interfaces (APIs) regularly, often without giving them much thought. The benefits APIs deliver enable companies to monetize applications in new and exciting ways, ultimately driving revenue and gaining ...

Salt Security Survey Shows Surge in API Attacks
Salt Security today published a quarterly report that found malicious application programming interface (API) traffic now accounts for 2.1% of all API traffic seen by its customers. On average, those organizations were ...

FAIL: Nomad DeFi Bridge ‘Loses’ $190M of Worthless Tokens
Cryptocurrency startup Nomad claimed its “optimistic bridging” protocol would “would keep users’ funds safe.” We take a closer look ...

Salt Security Increases Visibility Into API Security
Salt Security today extended its security platform for application programming interfaces (APIs) to include the ability to visually depict API call sequences, create attack simulations before APIs are released into production and ...

Google: Poor Software Fixes Cause Half of all Zero-Days
Researchers from Google’s Project Zero examined 18 zero-day vulnerabilities exploited by hackers this year before a patch was available; they found that half those vulnerabilities could have been avoided if software vendors ...

Google Launches Advanced API Security to Combat API Threats
Google launched a preview version of a service, called Advanced API Security, aimed at helping organizations combat growing threats targeting application programming interfaces (APIs). The goal of the service, built on the ...