• Home
  • Lifestyle
  • Tech
  • Travel
  • Review
  • About
  • Contact
What's Hot

How to Upgrade Your Morning Skin Care Routine After 60: Five Essential Tips to Help You Look and Feel Rejuvenated

October 3, 2023

UNIQLO Launches Final “Doraemon Sustainability Mode” Productsfor JOIN: THE POWER OF CLOTHING Campaign

October 3, 2023

PLDT Enterprise Presents PH Digicon 2023

October 3, 2023
Facebook X (Twitter) Instagram
Facebook X (Twitter) Instagram
Manila RepublicManila Republic
  • Home
  • Lifestyle
  • Tech
  • Travel
  • Review
  • About
  • Contact
Manila RepublicManila Republic
Home»Tech»New Checkmarx API Security Empowers the Developer/AppSec Partnership to Secure the Entire API and Software Development Lifecycle
Industry’s first true “shift-left” security solution offers the most comprehensive API inventory available and prioritized remediation of API vulnerabilities
Tech

New Checkmarx API Security Empowers the Developer/AppSec Partnership to Secure the Entire API and Software Development Lifecycle

Team Manila RepublicBy Team Manila RepublicAugust 22, 2022No Comments4 Mins Read
Share
Facebook Twitter LinkedIn Pinterest Email

Checkmarx, the global leader in developer-centric application security testing (AST) solutions, announced today the availability of Checkmarx API Security, the first true “shift-left” API security solution. Building on the launch of Checkmarx Fusion, which prioritizes and correlates vulnerability data from across different AppSec engines, Checkmarx API Security is delivered as part of the industry-leading application security platform Checkmarx One. The developer workflow-oriented solution inventories even shadow and zombie APIs as part of the most comprehensive inventory and remediation solution available to secure the entire API lifecycle.

According to Gartner®, “Every connected mobile, modern web or cloud-hosted application uses and exposes APIs. These APIs are used to access data and to call application functionality. APIs are easy to expose but difficult to defend. This creates a large and growing attack surface, leading to a growing number of publicized API attacks and breaches. Traditional network and web protection tools do not protect against all the security threats facing APIs, including many of those described in the OWASP API Security Top 10.”

While other API security offerings can only discover APIs already deployed in production, Checkmarx API Security addresses security issues earlier in the software development lifecycle (SDLC). This differentiation uniquely enables:

  • Comprehensive visibility of APIs: Discovers shadow and zombie APIs with the most accurate and up-to-date view into the entire API attack surface.
  • True shift-left approach: Detects APIs in application source code to identify and fix problems earlier in the SDLC – faster, with less cost and lower risk.
  • Prioritized remediation: Enables developers and AppSec teams to focus on solving the most critical issues first by prioritizing API vulnerabilities based on their real impact and risk.
  • Holistic view into application risk: Scans entire applications with a single solution, eliminating the need for additional API-specific tools to reduce the overhead on already pressured AppSec teams.

“Modern application development is increasingly dependent on APIs, which are notoriously difficult to document. Often the only place that a given API’s documentation exists is on the developer’s laptop,” said Checkmarx CEO Emmanuel Benzaquen. “Our global enterprise customers are focusing on the transition to cloud-native application development, yet their tools have only been able to address part of the API challenge that cloud-native development imposes. The Checkmarx goal is to secure every component of every application in a way that keeps developers productive and simplifies processes for AppSec leaders, thereby keeping their organizations agile, secure and competitive.”

Taking a unique, API-centric view into the problem, Checkmarx API Security offers:

  • Automatic API discovery: Automatic identification of API endpoints without requiring manual API definition or registration by AppSec teams or developers.
  • Complete API inventory: The ability to discover newly created or updated APIs as the source code is checked in or compiled by developers, as early as possible in the SDLC.
  • Unknown API identification: Automatic comparison of an application’s complete API inventory against its API documentation to identify unknown, shadow and zombie APIs.
  • API-centric remediation: API-specific views that allow AppSec teams and developers to prioritize remediation of API vulnerabilities and OWASP Top 10 risks.
  • Whole-application coverage: A single application security testing (AST) solution for the entire application, which may include both API- and non-API-based components, offering a holistic view of security risk and prioritization for vulnerability remediation.

Gartner has also reported that “Attacks on applications are shifting to focus on APIs, and the pace of attacks is increasing. API abuses and exploits are a common attack category that can result in data breaches. DevSecOps teams are focusing attention on the need for improved API testing in development. To identify the optimal approach to API testing, they are looking to a mix of traditional tools (such as static AST [SAST] and dynamic AST s[DAST]) and emerging solutions focused specifically on the requirements of APIs.”[2]

Checkmarx API Security is available now. For more information, visit this page or visit booth #860 at Black Hat USA.

Share. Facebook Twitter Pinterest LinkedIn Tumblr Telegram Email
Previous ArticleFilipino Delegates Joined Huawei AP Seeds for the Future, starting an inspired digital journey 
Next Article bbno$ Drops Fresh Single And Video “sophisticated”, Announces Upcoming Album
Team Manila Republic

Related Posts

Hot-selling HONOR 90 Lite 5G is now available nationwide for only Php 12,990!

October 2, 2023

Express yourself with a splash of color and a dash of flairin your daily grind with the all-new Logitech Pebble 2 Combo

October 2, 2023

realme C51 Achieves SOLD OUT Performance in all Online Platforms

September 28, 2023
Add A Comment

Leave A Reply Cancel Reply

Advertisement
Top Posts

Create Your Own P75 Sulit-Sarap Combo with Jollibee’s Mix & Match Combos

April 18, 2023

The Ultimate Guide to the Best Dining Deals in the Metro: Save Up to 50% with BDO Credit and Debit Cards

June 14, 2023

Express yourself with a splash of color and a dash of flairin your daily grind with the all-new Logitech Pebble 2 Combo

October 2, 2023

Smart holds ‘Creativity Camp’ at Silliman University, reinforcing sustainability

September 30, 2023

International Workplace Group (IWG), PNB Holdings Corporation (PHC) Team Up To Open “spaces” in Makati CBD

September 28, 2023
Advertisement
© 2023 Manila Republic.
  • Home
  • Lifestyle
  • Tech
  • Travel
  • Review
  • About
  • Contact

Type above and press Enter to search. Press Esc to cancel.