Issue 214: Google Cloud’s four pillars of API security, Cerbos for API permissions, attacking predictable GUIDs
Brief
This week, we have views from the Google Cloud team on their four pillars of API security and a great article from the NewStack on using Cerbos to add permissions to your APIs. Dana Epp shares his thoughts on attacking predictable GUIDs when hacking APIs and, finally, a quick read on the developer’s need for integrated tooling.
Article: Google Cloud’s four pillars of API security
First up this week is an article from Google Cloud where they share their four pillars for API security. The article highlights the findings from Google’s own Apigee platform and their 2022 report on API security insights and trends ( featured here in issue 210 ). From Apigee comes the finding that API traffic increased by 46% between 2019 and 2020.
In 2021, more than half of organizations experienced a security threat related to APIs.
