Security News > 2021 > December > Online shopping at risk: Mobile application and API cyber attacks at critical high
Protecting mobile applications and APIs against automated threats is a top priority for online commerce businesses, according to data from a study published by DataDome.
Focusing on mobile application and API protection Two-thirds of respondents report that focusing on mobile application and API protection is a key priority for the next 12 months.
Businesses are prioritizing protection against three types of online fraud: Card fraud, inventory fraud, and account fraud.
Respondents reported that protection from online fraud, particularly in the form of card fraud, inventory fraud, and account fraud, is of critical importance.
These attacks impact the entire value chain, from employee to customer: 45% of surveyed respondents reported the cost of man-hours spent mitigating attacks as the top impact, followed by loss of revenue, and loss of customer trust.
For good reason: regardless of attack types and detection mechanisms, the majority of attacks require active intervention and overwhelmingly target high-profile events or promotions - which can be very costly for online commerce companies.
News URL
https://www.helpnetsecurity.com/2021/12/16/mobile-application-api-protection/
Related news
- Critical Flaws in Tank Gauge Systems Expose Gas Stations to Remote Attacks (source)
- New Cryptojacking Attack Targets Docker API to Create Malicious Swarm Botnet (source)
- Researchers Warn of Ongoing Attacks Exploiting Critical Zimbra Postjournal Flaw (source)
- Critical Ivanti RCE flaw with public exploit now used in attacks (source)
- Vulnerable APIs and Bot Attacks Costing Businesses Up to $186 Billion Annually (source)
- CISA says critical Fortinet RCE flaw now exploited in attacks (source)
- Cybercriminals Exploiting Docker API Servers for SRBMiner Crypto Mining Attacks (source)
- Fortinet warns of new critical FortiManager flaw used in zero-day attacks (source)
- FortiManager critical vulnerability under active attack (source)
- CISA warns of critical Palo Alto Networks bug exploited in attacks (source)