API Security - Security Boulevard https://securityboulevard.com/category/editorial-calendar/api-security/ The Home of the Security Bloggers Network Wed, 28 Aug 2024 16:57:30 +0000 en-US hourly 1 https://wordpress.org/?v=6.6.1 https://securityboulevard.com/wp-content/uploads/2021/10/android-chrome-256x256-1-32x32.png API Security - Security Boulevard https://securityboulevard.com/category/editorial-calendar/api-security/ 32 32 133346385 China Cyberwar Coming? Versa’s Vice: Volt Typhoon’s Target https://securityboulevard.com/2024/08/china-cyberwar-coming-versas-vice-volt-typhoons-target/ Wed, 28 Aug 2024 16:57:30 +0000 https://securityboulevard.com/?p=2029126 A Chinese flag flies on a high pole

Xi whiz: Versa Networks criticized for swerving the blame.

The post China Cyberwar Coming? Versa’s Vice: Volt Typhoon’s Target appeared first on Security Boulevard.

]]>
2029126
APIs, Web Applications Under Siege as Attack Surface Expands https://securityboulevard.com/2024/08/apis-web-applications-under-siege-as-attack-surface-expands/ Tue, 06 Aug 2024 08:34:58 +0000 https://securityboulevard.com/?p=2026684 pen testing, Salt Security, API, APIs, attacks, testing, PTaaS, API security, API, cloud, audits, testing, API security vulnerabilities testing BRc4 Akamai security pentesting ThreatX red team pentesting API APIs Penetration Testing

Attackers are increasingly targeting web applications and APIs, with a nearly 50% year-over-year growth in web attacks, driven by the increased adoption of these technologies, which significantly expanded organizational attack surfaces, according to an Akamai report.

The post APIs, Web Applications Under Siege as Attack Surface Expands appeared first on Security Boulevard.

]]>
2026684
Prisoner Swap: Huge Russian Hackers Freed — Seleznev and Klyushin https://securityboulevard.com/2024/08/seleznev-klyushin-prisoner-swap-richixbw/ Fri, 02 Aug 2024 16:00:17 +0000 https://securityboulevard.com/?p=2026469

Pragmatic politics: Anger as Putin gets back two notorious cybercriminals

The post Prisoner Swap: Huge Russian Hackers Freed — Seleznev and Klyushin appeared first on Security Boulevard.

]]>
2026469
WTH? Google Auth Bug Lets Hackers Login as You https://securityboulevard.com/2024/07/google-workspace-authentication-richixbw/ Mon, 29 Jul 2024 15:17:43 +0000 https://securityboulevard.com/?p=2025777 A person looking confused

G Suite Sours: Domain owners flummoxed as strangers get Google for their domains.

The post WTH? Google Auth Bug Lets Hackers Login as You appeared first on Security Boulevard.

]]>
2025777
PKfail: 800+ Major PC Models have Insecure ‘Secure Boot’ https://securityboulevard.com/2024/07/pkfail-secure-boot-broken-richixbw/ Fri, 26 Jul 2024 17:06:55 +0000 https://securityboulevard.com/?p=2025641 An open padlock on a PC keyboard, with the word “FAIL” superimposed

Big BIOS bother: Hundreds of PC models from vendors such as HP, Lenovo, Dell, Intel, Acer and Gigabyte shipped with useless boot protection—using private keys that aren’t private.

The post PKfail: 800+ Major PC Models have Insecure ‘Secure Boot’ appeared first on Security Boulevard.

]]>
2025641
API Discovery – Common Topics We’re Asked About https://securityboulevard.com/2024/07/ebpf-for-api-security-the-devils-in-the-details/ Thu, 25 Jul 2024 13:00:46 +0000 https://www.cequence.ai/?p=19220 This article is the first in a series of six covering key API security topics and provides some answers to common questions we often get when talking to potential customers. This series will cover the following topics: API Discovery (this article) API Posture Management Attack Protection API Security Testing Attack Detection and Threat Hunting Architecture […]

The post API Discovery – Common Topics We’re Asked About appeared first on Cequence Security.

The post API Discovery – Common Topics We’re Asked About appeared first on Security Boulevard.

]]>
2025597
EFF Angry as Google Keeps 3rd-Party Cookies in Chrome https://securityboulevard.com/2024/07/google-3rd-party-cookies-eff-richixbw/ Tue, 23 Jul 2024 16:43:52 +0000 https://securityboulevard.com/?p=2025211 a leaking cookie

Regulatory capture by stealth? Google changes its mind about third-party tracking cookies—we’re stuck with them for the foreseeable.

The post EFF Angry as Google Keeps 3rd-Party Cookies in Chrome appeared first on Security Boulevard.

]]>
2025211
API Transformation Cyber Risks and Survival Tactics https://securityboulevard.com/2024/07/api-transformation-cyber-risks-and-survival-tactics/ Tue, 16 Jul 2024 11:04:28 +0000 https://securityboulevard.com/?p=2024466 threat modeling, ICS, VPNs, APIs, risk, left-of-bang, threats, vulnerabilities, XDR, zero-trust, attack, XDR API Skyhawk Security modeling threat CosmicStrand insider threats Threat Modeling - Secure Coding - Cybersecurity - Security

As you think about how to ensure your APIs are within your risk tolerance, ensure that you have a sound understanding of your inventory and the data associated with them.

The post API Transformation Cyber Risks and Survival Tactics appeared first on Security Boulevard.

]]>
2024466
‘Blast-RADIUS’ Critical Bug Blows Up IT Vacation Plans https://securityboulevard.com/2024/07/blast-radius-mitm-md5-richixbw/ Wed, 10 Jul 2024 15:35:11 +0000 https://securityboulevard.com/?p=2023823 Blast-RADIUS logo

MD5 MITM Muddle: Ancient, widely used protocol has CVSS 9.0 vulnerability.

The post ‘Blast-RADIUS’ Critical Bug Blows Up IT Vacation Plans appeared first on Security Boulevard.

]]>
2023823
‘Polyfill’ Supply Chain Threat: 4x Worse Than We Thought https://securityboulevard.com/2024/07/polyfill-supply-chain-richixb/ Fri, 05 Jul 2024 16:59:56 +0000 https://securityboulevard.com/?p=2023475 A ballet dancer sitting with her head in her hands

Spackle attack: Chinese company takes over widely used free web service—almost 400,000 websites at risk.

The post ‘Polyfill’ Supply Chain Threat: 4x Worse Than We Thought appeared first on Security Boulevard.

]]>
2023475