Account
Please wait, authorizing ...

Don't have an account? Register here today.

×

APIs in Latin America in the eye of cybercrime

API

Latin America. This year there have been more than 9 billion attempts to attack web applications and APIs in the world, which is why Guardicore calls on the region, as APIs in Latin America are gaining maturation and great adoption in different industries.

APIs (application programming interface) in Latin America are mainly being used in the financial, ICT and e-commerce sectors. That is why the security company has indicated as recommended an effective microsegmentation approach, as one of the measures that security teams can take to protect essential applications.

Ciberseguridad

To better understand the subject, it is necessary to expose that APIs are basically mechanisms that allow two software components to communicate with each other, through a set of definitions and protocols. The crucial thing about this is that due to their varied usability they stopped being treated as an isolated technological issue, to become products and facilitators of new business models.

- Publicidad -

That's where they became attractive to cybercriminals, because of access to information and the functioning of organizations.

Oswaldo Palacios, Senior Account Executive for Guardicore said: "An API built securely from the start can be the strongest cornerstone of every application; poorly developed, can multiply the risks. Therefore, it will be important to verify that API developers, both internal and third-party, comply with the most robust cybersecurity measures possible."

However, according to Akamai's report on API and web application threats, for the first half of 2022, there has been a significant increase in attacks on web applications and APIs worldwide, with more than 9 billion attack attempts, three times more than the figures for the first half of 2021. In addition, attacks against web application customers grew by more than 300 %, with the retail sector being the most affected, with 38 % of the most recent attacks.

This is a primary issue for Latin America, according to a study by the firm Sensedia, the financial sector is the one that was more mature in its API programs, using more advanced technologies, well-defined processes and bold strategies based on APIs.
For e-commerces and retailers, the main concern is to use APIs to reach new channels, expand revenue streams, integrate into marketplaces or position themselves as marketplaces, and streamline partner onboarding.

Marketplace

Faced with this panorama, Oswaldo Palacios emphasized that as the use of the cloud expands and the pace of application deployment and update accelerates, many security teams are focusing more on application segmentation. However, since there are several approaches to such segmentation, confusion can be generated in security teams.

He explained that traditional application segmentation approaches are primarily based on layer 4 controls, which are becoming less effective and more difficult to manage.

- Publicidad -

In comparison, micro-segmentation technologies offer security teams a more effective approach to application segmentation by providing a detailed visual representation of the environment.

Oswaldo Palacios Guardicore

"The most effective micro-segmentation technologies use an application-centric approach that extends all the way to layer 7. Visibility and control at the individual process level make application segmentation more efficient and easier to manage. Authorized activities can be regulated with very specific policies that are not affected by IP address spoofing or attempts to execute attacks through allowed ports."

Thus, the expert suggests the implementation of a microsegmentation approach mainly for its characteristics and benefits:

• Provides process-level detail analysis that aligns security policies with application logic.
• Enables consistent implementation of security policies from the data center to the cloud.
• Provides consistent security across the different underlying platforms, regardless of operating system, version or manufacturer.
• It is very easy to implement unlike traditional segmentation.
• Provides fast and accurate detection of security breaches, attempts at lateral movements, activation and spread of any type of threat, including Ransomware.
• No changes to the network.
• Facilitates the "Zero Trust" environment.

Iris Montoya Ricaurte
Author: Iris Montoya Ricaurte
Editora
Periodista con amplia experiencia en corrección de estilo y generación de contenidos de valor para el sector especializado - [email protected]

No thoughts on “APIs in Latin America in the eye of cybercrime”

• If you're already registered, please log in first. Your email will not be published.

Leave your comment

In reply to Some User
Suscribase Gratis
SUBSCRIBE TO OUR ENGLISH NEWSLETTER
DO YOU NEED A SERVICE OR PRODUCT QUOTE?
LATEST INTERVIEWS

Webinar: NxWitness el VMS rápido fácil y ultra ligero

Webinar: Por qué elegir productos con certificaciones de calidad

Por: Eduardo Cortés Coronado, Representante Comercial - SECO-LARM USA INC La importancia de utilizar productos certificados por varias normas internacionales como UL , Ul294, CE , Rosh , Noms, hacen a tus instalciones mas seguras y confiables además de ser un herramienta más de venta que garantice nuestro trabajo, conociendo qué es lo que certifica cada norma para así dormir tranquilos sabiendo que van a durar muchos años con muy bajo mantenimiento. https://www.ventasdeseguridad.com/2...

Webinar: Anviz ONE - Solución integral para pymes

Por: Rogelio Stelzer, Gerente comercial LATAM - Anviz Presentación de la nueva plataforma Anviz ONE, en donde se integran todas nuestras soluciones de control de acceso y asistencia, video seguridad, cerraduras inteligentes y otros sensores. En Anviz ONE el usuario podrá personalizar las opciones según su necesidad, de forma sencilla y desde cualquier sitio que tenga internet. https://www.ventasdeseguridad.com/2...

Webinar: Aplicaciones del IoT y digitalización en la industria logística

Se presentarán los siguientes temas: • Aplicaciones del IoT y digitalización en la industria logística. • Claves para decidir el socio en telecomunicaciones. • La última milla. • Nuevas estrategias de logística y seguimiento de activos sostenibles https://www.ventasdeseguridad.com/2...

Sesión 5: Milestone, Plataforma Abierta que Potencializa sus Instalaciones Manteniéndolas Protegidas

Genaro Sanchez, Channel Business Manager - MILESTONE https://www.ventasdeseguridad.com/2...
Load more...
SITE SPONSORS










LATEST NEWSLETTER
Latest Newsletter