API Security: Learning from the 20 Years of Appsec Failures


Posted on in Presentations

Web application security remains extremely hard despite 20 years of numerous efforts, tools, companies and methodologies. SOAP web services had security built-in but failed due to complexity. REST JSON APIs took over the world but unfortunately sacrificed security on the way. This talk will look at OpenAPI specification and other standards aimed to deliver structured security to the world of APIs.

Learning Objectives:
1: Understand why various approaches failed with web application security.
2: Understand how APIs are different and what are the advantages.
3: Understand how to leverage these advantages to not make the same mistake.

Access This and Other RSAC Conference Presentations with Your Free RSAC Membership

Your RSAC Membership also includes AI-powered summaries, mind maps, and slides for Conference presentations, Group Discussions with experts, and more.

Watch Now >>
Participants
Matthieu Estrade

Participant

CTO, 42Crunch


Share With Your Community