5 Best Practices for Securing Your APIs

Поділитися
Вставка
  • Опубліковано 21 лип 2024
  • A talk given by Amjad Afanah from FX Labs at the 2019 Austin API Summit in Austin, Texas.
    With the increased adoption of shift-left testing, more and more software engineering teams are moving application quality considerations closer to the developer (that is, to the “left” of the delivery chain) so that potential issues are avoided or resolved sooner, even before code is committed. Unfortunately, API security is often neglected by engineering teams, leaving their applications vulnerable to serious security risks. Unlike a quality bug where there is an upper limit, the actual cost of a security issue is unbounded.
    In this session, you will learn about the most common API vulnerabilities including login attacks, RBAC, ABAC, distributed denial of service, injections, data attacks and others. You will also learn about the best practices to integrate security as part of API testing workflows and how to implement effective DevSecOps programs that start at the earliest points in the development process and follow the workload throughout its life cycle.
    Check out the Nordic APIs blog for more resources on API Security: nordicapis.com/category/secur...
    ----------
    Get the latest API insights straight to your inbox, subscribe to Nordic APIs newsletter: nordicapis.com/newsletter/
  • Наука та технологія

КОМЕНТАРІ • 7

  • @domaincontroller
    @domaincontroller 3 роки тому +7

    01:41 API Security categories 02:18 most commonly known vulnerabilities, DDOS, SQLi

  • @it0dan
    @it0dan 2 роки тому

    Great video!

  • @ixaazan1696
    @ixaazan1696 3 роки тому

    appreciated :)

  • @Omar2788
    @Omar2788 4 роки тому +10

    stop selling stuff in talks

    • @msingla135
      @msingla135 2 роки тому +3

      Why? Did he give any wrong info in order to promote his stuff? What's the harm in knowing about the products in market that can help your cause?

    • @DheerajKumar-xr6ud
      @DheerajKumar-xr6ud 2 роки тому +2

      why not you create new API security and give everyone to free....Man appreciate their work.. it depends, He did not force anyone to purchase right. when are you going to lunch the same free to everyone. :-)

    • @Willifordwav
      @Willifordwav Рік тому +3

      Stop complaining about free content