cover

Advanced API Security

OAuth 2.0 and Beyond

Authors: Siriwardena, Prabath

  • Defines best practices in designing, developing, and deploying APIs securely
    Provides hands-on tutorials covering key aspects in API security
    Helps you choose between the available standards for securing APIs

Buy this book

eBook $27.99
price for Brazil (gross)
  • The eBook version of this title will be available soon
  • Due: 19 de Dezembro de 2019
  • ISBN 978-1-4842-2050-4
  • Digitally watermarked, DRM-free
  • Included format:
  • ebooks can be used on all reading devices
Softcover $32.99
price for Brazil
  • Customers within the U.S. and Canada please contact Customer Service at +1-800-777-4643, Latin America please contact us at +1-212-460-1500 (24 hours a day, 7 days a week).
  • Due: 19 de Dezembro de 2019
  • ISBN 978-1-4842-2049-8
  • Free shipping for individuals worldwide
About this book

Prepares you for the next wave of challenges in enterprise security. Learn about TLS Token Binding, User Managed Access (UMA) 2.0, Cross Origin Resource Sharing, Incremental Authorization, Proof Key for Code Exchange (PKCE), and Token Exchange in respect to securing APIs. Benefit from lessons learned from analyzing multiple attacks that have taken place by exploiting security vulnerabilities in various OAuth 2.0 implementations. Explore root causes, and improve your security practices to mitigate against future, similar exploits. 
Enterprise API’s have become the common way of exposing business functions to the outside world. Exposing functionality is convenient, but of course comes with risk of exploitation. The focus of this book is on API Security, helping you learn to better protect, monitor, and manage your public and private APIs. 
Security must be an integral part of any development project, including for APIs. This book guides you through and shares best practices in designing APIs for rock-solid security. API security has evolved a lot since the first edition, and the growth of standards has been exponential. OAuth 2.0 is the most widely adopted framework that is used as the foundation for standards, and much of this book shows you how to apply OAuth 2.0 to your own situation in order to secure and protect your enterprise APIs from exploitation and attack. 
What You Will Learn

• Securely design, develop, and deploy enterprise APIs• Pick security standards and protocols to match business needs• Mitigate security exploits by understanding the OAuth 2.0 threat landscape• Federate identities to expand business APIs beyond the corporate firewall• Protect microservices at the edge by securing their APIs• Develop native mobile applications to access APIs securely• Integrate applications with SaaS APIs protected with OAuth 2.0
Who This Book Is For
Advanced API Security, 2nd Edition is for enterprise security architects who are interested in best practices around designing APIs. The book is also for developers who are building enterprise APIs and integrating with internal and external applications. 

About the authors

Prabath Siriwardena is an identity evangelist, author, blogger, and the VP of Identity Management and Security at WSO2. He has more than 11 years of industry experience in designing and building critical Identity and Access Management (IAM) infrastructure for global enterprises, including many Fortune 100/500 companies. As a technology evangelist, Prabath has published five books. He blogs on various topics from blockchain, PSD2, GDPR, IAM to microservices security. He also runs a YouTube channel. Prabath has spoken at many conferences including, RSAConference, Identiverse, European Identity Conference, Consumer Identity World USA, API World, API Strategy & Practice Con, QCon, OSCON, and WSO2Con. He has travelled the world conducting workshops/meetups to evangelize IAM communities. He is the founder of the Silicon Valley IAM User Group, the largest IAM meetup in the San Francisco Bay Area.

Buy this book

eBook $27.99
price for Brazil (gross)
  • The eBook version of this title will be available soon
  • Due: 19 de Dezembro de 2019
  • ISBN 978-1-4842-2050-4
  • Digitally watermarked, DRM-free
  • Included format:
  • ebooks can be used on all reading devices
Softcover $32.99
price for Brazil
  • Customers within the U.S. and Canada please contact Customer Service at +1-800-777-4643, Latin America please contact us at +1-212-460-1500 (24 hours a day, 7 days a week).
  • Due: 19 de Dezembro de 2019
  • ISBN 978-1-4842-2049-8
  • Free shipping for individuals worldwide

Bibliographic Information

Bibliographic Information
Book Title
Advanced API Security
Book Subtitle
OAuth 2.0 and Beyond
Authors
Copyright
2019
Publisher
Apress
Copyright Holder
Prabath Siriwardena
eBook ISBN
978-1-4842-2050-4
Softcover ISBN
978-1-4842-2049-8
Edition Number
2
Number of Pages
X, 275
Topics