
API vulnerabilities are hard to monitor and do not stand out. Traditional application security assessment tools do not work well with APIs or are simply irrelevant in this case. As a result, Web services such as APIs are vulnerable to all types of attacks and threats against web applications.
Read “Creating a Safe Environment for Under-Protected APIs” to understand