Unrestricted Resource Consumption (API4:2023) is the only threat category in the OWASP API Security Top 10 explicitly dedicated to Denial of Service (DoS) and resource abuse. But despite being just one category, attackers can exploit it in many different ways; from large file uploads and expensive GraphQL queries to abuse of metered third-party services like SMS gateways or AI/LLM APIs. These attacks can lead not only to performance degradation and service unavailability, but also to…
With innovation comes risk. As organizations race to build AI-first infrastructure, security is struggling to keep pace. Multi-Agentic Systems –…
IBM’s 2025 Cost of a Data Breach Report offers one of the clearest and most comprehensive views yet of how…
Think you know what to expect from a conference booth? Think again. Forget the cliches: the swag destined for the…
I recently sat down with Tejpal Garwhal, Application Security and DevSecOps Leader, for a conversation debunking some of the most…
On July 19, 2025, a critical remote code execution (RCE) vulnerability (CVE-2025-53770, also referred to as ToolShell) was publicly disclosed,…
Andrew Storms, VP of Security at Replicated, has spent three decades on the frontlines of cybersecurity. From building Unix systems…
Every inline deployment introduces a tradeoff: enhanced inspection versus increased risk of downtime. Inline protection is important, especially for APIs,…
Legislative, regulatory, and advisory bodies the world over are waking up to the importance of API security. Most recently, the…
AI has officially moved out of the novelty phase. What began with people messing around with LLM-powered GenAI tools for…