Get a Pentest and security assessment of your IT network.

News

Why REST Security Doesn’t Exist (and what to do about it)

As of January 2010, 1,100 out of 1,600 APIs listed on Programmable Web are REST-based. Some of our best-known cloud services utilize REST, including Amazon, SalesForce and Google. REST does not have predefined security methods so developers define their own, and developers in a hurry to just get their web services deployed don’t treat them with the same level of diligence as they treat web applications. For instance, most APIs handle authentication using a key but no secret, essentially requiring a user name but no password.”]

Source: https://www.csoonline.com/article/2124905/why-rest-security-doesn-t-exist–and-what-to-do-about-it-.html

Related posts
News

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

News

Art of Twitter account hacking

News

Take note, next week update Adobe Reader and Acrobat to fix critical flaws

News

Linux bug leaves 1.4 billion Android users vulnerable to hijacking attacks