Skip to main content

API Security

Definition

API security protects Application Programming Interfaces (APIs) against attacks and misuse. APIs are the backbone of modern applications but also a popular target for attackers.

Common API vulnerabilities (OWASP API Security Top 10): broken authentication, excessive data exposure, injection attacks, and missing rate limiting.

Protection: API gateway with authentication (OAuth, API keys), rate limiting, input validation, and logging.

Related terms

Pentest Zero Trust SQL Injection