Security News > 2021 > December > Online shopping at risk: Mobile application and API cyber attacks at critical high
Protecting mobile applications and APIs against automated threats is a top priority for online commerce businesses, according to data from a study published by DataDome.
Focusing on mobile application and API protection Two-thirds of respondents report that focusing on mobile application and API protection is a key priority for the next 12 months.
Businesses are prioritizing protection against three types of online fraud: Card fraud, inventory fraud, and account fraud.
Respondents reported that protection from online fraud, particularly in the form of card fraud, inventory fraud, and account fraud, is of critical importance.
These attacks impact the entire value chain, from employee to customer: 45% of surveyed respondents reported the cost of man-hours spent mitigating attacks as the top impact, followed by loss of revenue, and loss of customer trust.
For good reason: regardless of attack types and detection mechanisms, the majority of attacks require active intervention and overwhelmingly target high-profile events or promotions - which can be very costly for online commerce companies.
News URL
https://www.helpnetsecurity.com/2021/12/16/mobile-application-api-protection/
Related news
- CISA warns of critical Palo Alto Networks bug exploited in attacks (source)
- Critical Veeam RCE bug now used in Frag ransomware attacks (source)
- Critical bug in EoL D-Link NAS devices now exploited in attacks (source)
- Palo Alto Networks warns of critical RCE zero-day exploited in attacks (source)
- Critical RCE bug in VMware vCenter Server now exploited in attacks (source)
- T-Mobile US 'monitoring' China's 'industry-wide attack' amid fresh security breach fears (source)
- New Ghost Tap attack abuses NFC mobile payments to steal money (source)
- CISA Urges Agencies to Patch Critical "Array Networks" Flaw Amid Active Attacks (source)
- Critical WordPress Anti-Spam Plugin Flaws Expose 200,000+ Sites to Remote Attacks (source)
- Over 300K Prometheus Instances Exposed: Credentials and API Keys Leaking Online (source)