API Security

(1)

API security covers the authentication, authorization, and traffic controls protecting application programming interfaces from abuse and exploitation. Coverage of OAuth and API key management, rate limiting, injection and broken object-level authorization attacks, API gateway hardening, and the testing and monitoring practices securing APIs across development and production.