{"id":200,"date":"2022-04-08T14:11:37","date_gmt":"2022-04-08T13:11:37","guid":{"rendered":"https:\/\/42crdev.prexihost.com\/?page_id=200"},"modified":"2024-04-29T15:04:29","modified_gmt":"2024-04-29T14:04:29","slug":"owasp-api-security-top-10","status":"publish","type":"page","link":"https:\/\/staging2022.42crunch.com\/owasp-api-security-top-10\/","title":{"rendered":"OWASP Top 10 Protection"},"content":{"rendered":"\n\n\t\t

\n\t\t\tOWASP API Security\n\t\t\t\t\t\t\t\t\t\t\tTop 10 Protection\n\t\t<\/h1>\n\t

Learn how 42Crunch can protect you against the most common API security risks and threats. The 42Crunch API Security Platform<\/a> is a set of automated API tools that ensure your APIs are secure from design to production. You can initiate API security testing<\/a> at design time with\u00a0API Audit<\/a>, utilize\u00a0API Scan<\/a> to test live endpoints, and protect your runtime APIs from all sides with the 42Crunch micro-API firewall<\/a>\u00a0API Protect.<\/p>\n\t\t\t\n\t\t\t\t\t\t\tOWASP API Security Datasheet\n\t\t\t\t\t<\/a>\n\tAPI 1: Broken Object
\nLevel Authorization<\/a>\n\t
API 2: Broken User
\nAuthentication<\/a>\n\t
API 3<\/a>: Excessive
\nData Exposure<\/a>\n\t
API 4: Lack of Resources
\n& Rate Limiting<\/a>\n\t
API 5: Broken Function
\nLevel Authorization<\/a>\n\t
API 6: Mass
\nAssignment<\/a>\n\t
API 7: Security
\nMisconfiguration<\/a>\n\t
API 8:
\nInjection<\/a>\n\t
API 9: Improper
\nAssets Management<\/a>\n\t
API 10: Insufficient
\nLogging & Monitoring<\/a>\n\t

API 01:<\/h4>\n

\n\t\t42Crunch\u00a0Approach\n\t<\/h2>\n

\n\t\tBroken Object Level Authorization\n\t<\/h2>\n\t
DESIGN & CODE
\n(API Audit)<\/center>\n\t