From the course: Cloud Security for DevSecOps Engineers: From Security Models to API Protection
Unlock this course with a free trial
Join today to access over 24,900 courses taught by industry experts.
API rate limiting and abuse prevention
From the course: Cloud Security for DevSecOps Engineers: From Security Models to API Protection
API rate limiting and abuse prevention
- [Narrator] As APIs become more accessible to consumers for pulling data, there is always the risk of an attacker finding a way to compromise or abuse them through a myriad of attacks for their gain. In this video, we're going to be walking through we ways to prevent API abuse and explain a preventive strategy called API Rate Limiting. As stated by Ian from Wallarm, "API Abuse refers to the act "of wrong-handling of APIs, "gaining unsanctioned access, "and modifying the key functions "so that APIs can be used "for adversarial processes such as raiding a server "or overburdening a server." So when you think about API abuse, think about hackers or attackers attempting to compromise them and use them in ways that violate their original purpose. Let's move on to rate limiting. When we speak about APIs, rate limiting is a technique that limits the number of API requests made within a specific time period. If you are calling an API multiple times that bypasses the allowed timeframe, you…
Contents
-
-
-
-
-
(Locked)
APIs in the cloud: What they are and why they matter4m 20s
-
(Locked)
API risks and OWASP API Top 10 overview4m 56s
-
(Locked)
Securing APIs with authentication and authorization4m 1s
-
(Locked)
Input validation and response hardening6m 5s
-
(Locked)
Logging and monitoring for API security6m 29s
-
(Locked)
API rate limiting and abuse prevention4m 45s
-
(Locked)
API security testing5m 54s
-
(Locked)
-
-