Common security threats

Exposing APIs to consumers, especially external consumers, creates an inherent risk of attack for an organization. While there are no guarantees that an attack can be thwarted, every effort should be made to secure APIs using APIP CS. There are several policies that can be applied out of the box, which will help circumvent the most common types of attack. These policies will be described in more detail later in the chapter. This section will discuss several common threats that the reader should be aware of.

Further details of common threats can be found at The Open Web Application Security Project (OWASP) https://www.owasp.org/index.php/Main_Page.

Get Implementing Oracle API Platform Cloud Service now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.