Passwordless authentication for end users is taking the world by storm, offering organizations and individuals alike unprecedented security, user experience, and efficiency benefits. By all indications, the next generation of authentication for end users has finally arrived, sending the password the way of the dodo. Although they don’t get anywhere near the same hype, advanced authentication strategies for APIs are as critical as passwordless authentication for end-users. Poorly architected and broken authentication for APIs present…
You need an API security solution. That much is a given (although some may argue it isn’t!). While essential for…
Modern businesses are increasingly reliant on APIs. They are the building blocks facilitating data exchange and communication between disparate systems.…
Envoy has carved out a critical role in cloud-native computing, becoming increasingly prevalent as the default ingress controller for Kubernetes.…
Thank You Chicago! Earlier this week we had the pleasure of hosting a regional API Security Summit in Chicago (well,…
GraphQL vs REST APIs Developers are constantly exploring new technologies that can improve the performance, flexibility, and usability of applications. GraphQL…
Managing an organization’s attack surface is a complex problem involving asset discovery, vulnerability analysis, and continuous monitoring. There are multiple…
The Early Days: Basic Asset Management While it was not called ASM, the concept of managing attack surface management began…
On July 19, 2024, a flawed update in CrowdStrike Falcon’s channel file 291 led to a logic error that caused…
As we move through 2024, the Wallarm Research Team continues to monitor the evolving API vulnerability and threat landscape. Our…