Security News > 2024 > August > Common API security issues: From exposed secrets to unauthorized access

Common API security issues: From exposed secrets to unauthorized access
2024-08-19 03:00

Recent investigations reveal that many organizations are struggling with exposed secrets such as passwords and API keys, which attackers frequently misuse.

35% of exposed API keys still active, posing major security risks.

Secrets like passwords and API keys were most often found in GitHub, with nearly 350 total secrets exposed per 100 employees every year.

35% of all API keys discovered were still active - posing a major risk for privilege escalation attacks, data leaks, data breaches and more.

Passwords take the cake by comprising over half of detected secrets, with API keys following closely behind.

Researchers discover exposed API secrets, impacting major tech tokens.


News URL

https://www.helpnetsecurity.com/2024/08/19/apis-security-vulnerabilities/