DEV Community

Discussion on: How to protect Serverless (Open)API's?

Collapse
 
phlash profile image
Phil Ashby

Thanks Rolf, a nice run down of available AWS mitigations/controls to common OWASP web app risks!

As a member of an OWASP chapter (Suffolk, UK) I wanted to mention the current work on API security, which complements the web top ten, ongoing here: owasp.org/www-project-api-security/

Needless to say there are controls available for these risks too :)

Collapse
 
rolfstreefkerk profile image
Rolf Streefkerk

Appreciate that, looking forward to the finalized list.

Looking at it, I covered some of them already. I'm sure I'll redo this sometime later when you guys have finalized this