Application Programming Interface (API) Security in Cloud Applications

Many cloud services utilize an API gateway, which enables them to be offered to users through API platforms such as Platform as a Service (PaaS), Software as a service (SaaS), Infrastructure as a Service (IaaS) and cross-platforms APIs. APIs are designed for functionality and speed by developers who...

Celý popis

Uloženo v:
Podrobná bibliografie
Vydáno v:EAI endorsed transactions on cloud systems Ročník 7; číslo 23; s. e1
Hlavní autor: Qazi, Farhan
Médium: Journal Article
Jazyk:angličtina
Vydáno: Ghent European Alliance for Innovation (EAI) 17.10.2023
Témata:
ISSN:2410-6895, 2410-6895
On-line přístup:Získat plný text
Tagy: Přidat tag
Žádné tagy, Buďte první, kdo vytvoří štítek k tomuto záznamu!
Popis
Shrnutí:Many cloud services utilize an API gateway, which enables them to be offered to users through API platforms such as Platform as a Service (PaaS), Software as a service (SaaS), Infrastructure as a Service (IaaS) and cross-platforms APIs. APIs are designed for functionality and speed by developers who write a small portion of code, which has visibility and is secure. The code that is created from third-party software or libraries has no visibility, which makes it insecure. APIs are the most vulnerable points of attack, and many users are not aware of their insecurity. This paper reviews API security in cloud applications and discusses details of API vulnerabilities, existing security tools for API security to mitigate API attacks. The author’s study showed that most users are unaware of API insecurity, organizations lack resources and training to educate users about APIs, and organizations depend on the overall security of the network instead of the security of standalone APIs.
Bibliografie:SourceType-Scholarly Journals-1
ObjectType-Commentary-1
content type line 14
ISSN:2410-6895
2410-6895
DOI:10.4108/eetcs.v7i23.3011