Third Party APIs
Salesloft Drift Breach Rolls Up Cloudflare, Palo Alto, Zscaler and Others
Cloudflare, Palo Alto Networks, and Zscaler are the latest among hundreds of victims of an expanding data-stealing attack by the UNC6395 threat group that is exploiting compromised OAuth tokens associated with Salesloft's ...
Security Boulevard
API Security Lacking for Ecosystem and Third-Party APIs?
Research by the CQ Prime Threat Research Team documents how attackers bypass API security to target third-party and partner eco-system APIs to achieve their end-goals. In the latest research report, attackers hit ...
FHIR API Security Research – 3 Immediate Actions For Mobile Healthcare Companies
David Stewart | | API security, API Security - Analysis, News and Insights, certificate pinning, healthcare, MitM Attack, Mobile Security, Third Party APIs
Considering the recent “Playing with FHIR” research report together with the earlier “All that We Let In” research report (which looked at the state of mHealth app/API security), it would be understandable ...
FHIR API Security Research – 3 Immediate Actions For Mobile Healthcare Companies
David Stewart | | API security, API Security - Analysis, News and Insights, certificate pinning, healthcare, MitM Attack, Mobile Security, Third Party APIs
Considering the recent “Playing with FHIR” research report together with the earlier “All that We Let In” research report (which looked at the state of mHealth app/API security), it would be understandable ...
FHIR API Security Research Sparks Debate
David Stewart | | API Abuse, API security, API Security - Analysis, News and Insights, healthcare, Mobile Security, Third Party APIs
Alissa Knight released her report “Playing with FHIR” a couple of weeks ago (download it here) about her investigations into the security of healthcare apps and APIs which use the FHIR standard ...

