Security News > 2021 > December > Online shopping at risk: Mobile application and API cyber attacks at critical high

Protecting mobile applications and APIs against automated threats is a top priority for online commerce businesses, according to data from a study published by DataDome.
Focusing on mobile application and API protection Two-thirds of respondents report that focusing on mobile application and API protection is a key priority for the next 12 months.
Businesses are prioritizing protection against three types of online fraud: Card fraud, inventory fraud, and account fraud.
Respondents reported that protection from online fraud, particularly in the form of card fraud, inventory fraud, and account fraud, is of critical importance.
These attacks impact the entire value chain, from employee to customer: 45% of surveyed respondents reported the cost of man-hours spent mitigating attacks as the top impact, followed by loss of revenue, and loss of customer trust.
For good reason: regardless of attack types and detection mechanisms, the majority of attacks require active intervention and overwhelmingly target high-profile events or promotions - which can be very costly for online commerce companies.
News URL
https://www.helpnetsecurity.com/2021/12/16/mobile-application-api-protection/
Related news
- CISA tags critical Ivanti EPM flaws as actively exploited in attacks (source)
- Critical PHP RCE vulnerability mass exploited in new attacks (source)
- Critical RCE flaw in Apache Tomcat actively exploited in attacks (source)
- Critical GitHub Attack (source)
- Critical Cisco Smart Licensing Utility flaws now exploited in attacks (source)
- Ongoing Cyber Attacks Exploit Critical Vulnerabilities in Cisco Smart Licensing Utility (source)
- Critical auth bypass bug in CrushFTP now exploited in attacks (source)
- SAP fixes critical Netweaver flaw exploited in attacks (source)
- Back online after 'catastrophic' attack, 4chan says it's too broke for good IT (source)