* . *
  • About
  • Advertise
  • Privacy & Policy
  • Contact
Saturday, May 10, 2025
Earth-News
  • Home
  • Business
  • Entertainment
    Flutter Entertainment eyes U.S. prediction markets amid growing interest – Sports Business Journal

    Flutter Entertainment Sets Its Sights on U.S. Prediction Markets as Interest Soars

    SXSW Rom-Com ‘I Really Love My Husband’ Acquired for U.S. Release – Variety

    Heartfelt Romance: ‘I Really Love My Husband’ Set to Captivate U.S. Audiences!

    Georgia Entertainment CEO says large-scale production is slowing down – Decaturish

    Georgia Entertainment CEO Warns of Slowdown in Large-Scale Productions

    Zugalu Entertainment Welcomes Crimson Herring Studios to Its Family!

    Fall 2025 TV Schedule: Your Guide to the Complete Lineup – Wyoming News Now

    Get Ready for Fall 2025: Your Ultimate Guide to the Exciting TV Lineup!

    Blackstone River Theatre presents music from Scotland with Cantrip – The Valley Breeze

    Experience the Enchanting Sounds of Scotland: Cantrip Takes the Stage at Blackstone River Theatre!

  • General
  • Health
  • News

    Cracking the Code: Why China’s Economic Challenges Aren’t Shaking Markets, Unlike America’s” – Bloomberg

    Trump’s Narrow Window to Spread the Truth About Harris

    Trump’s Narrow Window to Spread the Truth About Harris

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Trending Tags

    • Trump Inauguration
    • United Stated
    • White House
    • Market Stories
    • Election Results
  • Science
  • Sports
  • Technology
    Harnessing emerging technologies to power a small business – The Oaklandside

    Unlocking Success: How Emerging Technologies Can Transform Your Small Business

    Artificial intelligence (AI) – The Guardian

    Unlocking the Future: How Artificial Intelligence is Transforming Our World

    Technology Innovation to Take Center Stage at The 2025 National Restaurant Association Show – Restaurant Technology News

    Get Ready for a Tech Revolution: The 2025 National Restaurant Association Show Unveils Cutting-Edge Innovations!

    Newmont signs deal to use Chrysos Corporation technology – Capital Brief

    Newmont Partners with Chrysos Corporation to Revolutionize Mining Technology

    Air Force Invests in Whisper’s Ultraquiet Propulsion Technology – FLYING Magazine

    Air Force Invests in Whisper’s Ultraquiet Propulsion Technology – FLYING Magazine

    Trump administration set to overhaul Biden’s AI chip export regulations – TechHQ

    Trump administration set to overhaul Biden’s AI chip export regulations – TechHQ

    Trending Tags

    • Nintendo Switch
    • CES 2017
    • Playstation 4 Pro
    • Mark Zuckerberg
No Result
View All Result
  • Home
  • Business
  • Entertainment
    Flutter Entertainment eyes U.S. prediction markets amid growing interest – Sports Business Journal

    Flutter Entertainment Sets Its Sights on U.S. Prediction Markets as Interest Soars

    SXSW Rom-Com ‘I Really Love My Husband’ Acquired for U.S. Release – Variety

    Heartfelt Romance: ‘I Really Love My Husband’ Set to Captivate U.S. Audiences!

    Georgia Entertainment CEO says large-scale production is slowing down – Decaturish

    Georgia Entertainment CEO Warns of Slowdown in Large-Scale Productions

    Zugalu Entertainment Welcomes Crimson Herring Studios to Its Family!

    Fall 2025 TV Schedule: Your Guide to the Complete Lineup – Wyoming News Now

    Get Ready for Fall 2025: Your Ultimate Guide to the Exciting TV Lineup!

    Blackstone River Theatre presents music from Scotland with Cantrip – The Valley Breeze

    Experience the Enchanting Sounds of Scotland: Cantrip Takes the Stage at Blackstone River Theatre!

  • General
  • Health
  • News

    Cracking the Code: Why China’s Economic Challenges Aren’t Shaking Markets, Unlike America’s” – Bloomberg

    Trump’s Narrow Window to Spread the Truth About Harris

    Trump’s Narrow Window to Spread the Truth About Harris

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Trending Tags

    • Trump Inauguration
    • United Stated
    • White House
    • Market Stories
    • Election Results
  • Science
  • Sports
  • Technology
    Harnessing emerging technologies to power a small business – The Oaklandside

    Unlocking Success: How Emerging Technologies Can Transform Your Small Business

    Artificial intelligence (AI) – The Guardian

    Unlocking the Future: How Artificial Intelligence is Transforming Our World

    Technology Innovation to Take Center Stage at The 2025 National Restaurant Association Show – Restaurant Technology News

    Get Ready for a Tech Revolution: The 2025 National Restaurant Association Show Unveils Cutting-Edge Innovations!

    Newmont signs deal to use Chrysos Corporation technology – Capital Brief

    Newmont Partners with Chrysos Corporation to Revolutionize Mining Technology

    Air Force Invests in Whisper’s Ultraquiet Propulsion Technology – FLYING Magazine

    Air Force Invests in Whisper’s Ultraquiet Propulsion Technology – FLYING Magazine

    Trump administration set to overhaul Biden’s AI chip export regulations – TechHQ

    Trump administration set to overhaul Biden’s AI chip export regulations – TechHQ

    Trending Tags

    • Nintendo Switch
    • CES 2017
    • Playstation 4 Pro
    • Mark Zuckerberg
No Result
View All Result
Earth-News
No Result
View All Result
Home Technology

Businesses disconnected from realities of API security

September 30, 2023
in Technology
Businesses disconnected from realities of API security
Share on FacebookShare on Twitter

Business leaders feel confident they’ve got a handle on API security, but at the same time, incidents are through the roof, according to a report

Alex Scroxton

By

Alex Scroxton,
Security Editor

Published: 28 Sep 2023 14:00

The spread of application-driven businesses has elevated application programming interface (API) security issues to a pressing concern, with the number of incidents arising from vulnerable APIs through the roof and a majority of organisations planning more investment to keep up – however, at the same time, there exists a puzzling gap between how confident security leaders are in their API security tools and how often their APIs are being attacked.

This is according to a study of over 600 leaders across the UK and US, conducted for Israel-based API security specialist Noname Security.

This is the second year running that Noname has produced the report, titled The API security disconnect, and as the title suggests, 12 months on from the original study, its researchers found evidence of this strange and apparently growing disconnect among respondents.

Last year, 61% expressed confidence in their dynamic and static application security testing (DAST and SAST) tools, and this year, Noname found this had risen to 94%. However, 78% said they had experienced an API security incident in that time, up from 76% last year and rising to 85% among UK respondents.

Noname chief technology officer Shay Levi suggested this lack of correlation suggested something, somewhere, is not quite clicking if so many organisations can be happy with their tools while experiencing elevated levels of cyber attacks incorporating some form of API exploitation.

Levi suggested there was an urgent need for this disconnected to be addressed. “The continuing increase in reported API security incidents over the past two years demonstrates that this is not a fleeting trend, but a pressing reality that organisations must deal with and prioritise,” he said.

“APIs are indispensable in today’s modern environment, but everyone is worried about ransomware, phishing attacks and data breaches. This research validates why security leaders must continue to prioritise API security.” 

Why is API security important?

API security is moving up the agenda because of the sheer ubiquity of APIs around the world – their usage is currently growing at about 200% per annum. “We say there is no piece of code written in the past seven years that doesn’t expose or consume an API,” said Levi.

However, he continued, APIs are also a clear source of risk for several reasons – they are mission-critical to most large organisations; exist in a scattered environment across multiple public clouds, gateways and regions; and crucially, their use puts security teams and developers in conflict.

Cyber criminals being wise to such matters, APIs have therefore become a major attack vector, with many high-profile security incidents and cyber attacks involving their use – perhaps the most significant of recent times being the 2022 attack on Australia’s Optus, which exposed the data of millions of the telco’s customers.

Noname’s approach to API security – which it describes as “complete and proactive” – is predicated on three pillars:

Posture Management – uncovering vulnerabilities and misconfigurations to speed remediation and ease compliance;
Runtime Security – detecting and blocking API attacks with real-time traffic analysis powered by machine learning;
API Testing – finding and remediating API vulnerabilities during the development cycle.

Levi, an Israeli cyber intelligence vet and former Meta software engineer who co-founded Noname in 2020 – the name or lack of came about because he and his co-founder couldn’t think of anything to put on the legal documents incorporating the company – claims that most other API security specialists are still focused too heavily on the middle, Runtime pillar.

“For enterprises, it has become more important to be proactive, which means analysing what is already out there and finding a gap to close it before it becomes a vector for a cyber attack,” he said.

The model also neatly addresses OWASP’s top 10 risks to API security. Noname said traditional API security tools, mostly web application firewalls (WAFs) and API gateways, are not really relevant in addressing these issues, as chief marketing officer Mike O’Malley explained.

“Prior to Noname, when you would talk to a CISO [chief information security officer] and ask if they had API security, they would say they had a gateway or a WAF,” he said. “The reason Noname exists is because those products weren’t designed for modern API threats.

“Because modern API threats are so rooted in the business logic approach, WAFs and gateways, while they served a purpose, just weren’t built for these challenges.

“The root of the disconnect is that they [buyers] think the vendor can address the OWASP top 10 with a WAF, which is less and less the case,” said O’Malley.

Happily, the report also found clear evidence that security leaders are making API security more of a priority than they did 12 months ago – 81% said this was the case (84% in the UK and 78% in the US) – and the data also clearly suggested the impact of the increased volume of API-linked incidents, such as loss of reputation and employee or customer churn, was hitting home.

Brits behind in some areas

Some of the report’s other findings included the insight that UK teams tend to have less visibility of the APIs in their inventory than American ones (70% to 74%), but that Brits tended to do better at knowing exactly which of these APIs returned sensitive data (28% to 19%).

US organisations also seemed to do better when it came to API testing, with 19% undertaking API security testing in real-time compared with 17% in the UK, a reversal on the 2022 report, when the figures were 14% for the UK and 8% for the US.

Read more on Cloud security


How API gateways improve API security

MichaelCobb

By: Michael Cobb


Web application firewall (WAF)

KinzaYasar

By: Kinza Yasar


4 cloud API security best practices

DaveShackleford

By: Dave Shackleford


Claroty unveils web application firewall bypassing technique

AlexanderCulafi

By: Alexander Culafi

>>> Read full article>>>
Copyright for syndicated content belongs to the linked Source : Computer Weekly – https://www.computerweekly.com/news/366553672/Businesses-disconnected-from-realities-of-API-security

Tags: Businessesdisconnectedtechnology
Previous Post

Automated cloud IR: Empowering cyber with AI-powered playbooks

Next Post

US lawmakers write to AI firms about ‘gruelling’ work conditions

‘Active Management’ Harms Forests — And It’s About to Get a Whole Lot Worse – The Revelator

‘Active Management’ Harms Forests — And It’s About to Get a Whole Lot Worse – The Revelator

May 10, 2025

Unlocking the Future: How Innovation Funds Propel Breakthroughs in AI, Bioengineering, and Materials Science

May 10, 2025
Talking Animals: Veteran science journalist Stephen S. Hall recounts reporting and research that yielded Slither, singular book on snakes – WMNF 88.5 FM

Unraveling the Secrets of Snakes: A Journey with Veteran Science Journalist Stephen S. Hall

May 10, 2025
Lifestyle Lookout: Mother’s Day brunch in Bellingham, Big Jam Stories in Ferndale and The Spring Wine Walk – My Bellingham Now

Unforgettable Mother’s Day Brunch, Big Jam Stories, and the Spring Wine Walk: Exciting Events in Bellingham and Ferndale!

May 10, 2025
WCK Forced to Halt Cooking in Gaza as Supplies Run Out – World Central Kitchen

World Central Kitchen Suspends Operations in Gaza Amid Supply Crisis

May 10, 2025
China Reacts to Trump Claims About ‘Suffering’ Chinese Economy – Newsweek

China Responds to Trump’s Claims of Economic Struggles: What You Need to Know

May 10, 2025
Flutter Entertainment eyes U.S. prediction markets amid growing interest – Sports Business Journal

Flutter Entertainment Sets Its Sights on U.S. Prediction Markets as Interest Soars

May 10, 2025
Optimizing Human Health On Earth And In Space – Texas A&M Today

Optimizing Human Health On Earth And In Space – Texas A&M Today

May 10, 2025
Rep. Marjorie Taylor Greene says she won’t run for U.S. Senate – NBC News

Marjorie Taylor Greene Declares She’s Not Entering the Senate Race!

May 10, 2025
Harnessing emerging technologies to power a small business – The Oaklandside

Unlocking Success: How Emerging Technologies Can Transform Your Small Business

May 10, 2025

Categories

Archives

May 2025
MTWTFSS
 1234
567891011
12131415161718
19202122232425
262728293031 
« Apr    
Earth-News.info

The Earth News is an independent English-language daily published Website from all around the World News

Browse by Category

  • Business (20,132)
  • Ecology (597)
  • Economy (608)
  • Entertainment (21,521)
  • General (15,210)
  • Health (9,650)
  • Lifestyle (613)
  • News (22,149)
  • People (611)
  • Politics (615)
  • Science (15,830)
  • Sports (21,118)
  • Technology (15,598)
  • World (598)

Recent News

‘Active Management’ Harms Forests — And It’s About to Get a Whole Lot Worse – The Revelator

‘Active Management’ Harms Forests — And It’s About to Get a Whole Lot Worse – The Revelator

May 10, 2025

Unlocking the Future: How Innovation Funds Propel Breakthroughs in AI, Bioengineering, and Materials Science

May 10, 2025
  • About
  • Advertise
  • Privacy & Policy
  • Contact

© 2023 earth-news.info

No Result
View All Result

© 2023 earth-news.info

No Result
View All Result

© 2023 earth-news.info

Go to mobile version