Research, best practices, and news on securing APIs and the agentic AI systems that call them.
Between 40–62% of AI-generated code contains vulnerabilities, produced at 2.74x the rate of human-written code.
Read post →What to weigh when selecting an API security platform built for AI-driven, agentic enterprise environments.
Read post →A data-driven look at real-world API vulnerabilities and the implementation mistakes behind them.
Read post →How MCP's contract-based design enables automated tool discovery — and secure execution.
Read post →How agentic AI is reshaping the cyber threats aimed at APIs, and what security-by-design means in response.
Read post →Defensive strategies for protecting APIs against increasingly capable, autonomous attack agents.
Read post →Norway's mandate of FAPI 2.0 strengthens healthcare API authentication, but comprehensive security still requires controls against risks like broken object-level authorization.
Read post →When backend APIs unexpectedly return malicious payloads, drift stops being a nuisance and becomes a security threat — here's how to detect and prevent it.
Read post →Organizations often believe their existing security tools protect their APIs, but a significant gap remains between that perception and the reality of API vulnerabilities.
Read post →A Radware WAF vulnerability shows how traditional pattern-based firewalls fail against malformed requests, while a specification-driven approach blocks anything outside the defined contract.
Read post →