发明名称 APPLICATION PROGRAMMING INTERFACE WALL
摘要 Application programming interfaces (APIs) can be unintentionally exposed and allow for potentially undesirable use of corporate resources. An API call filtering system configured to monitor API call requests received via an endpoint and API call responses received via a supporting service of an API or web service. The API call filtering system enables enterprises to improve their security posture by identifying, studying, reporting, and securing their APIs within their enterprise network.
申请公布号 US2016057107(A1) 申请公布日期 2016.02.25
申请号 US201414466779 申请日期 2014.08.22
申请人 Shape Security, Inc. 发明人 Call Justin D.;Peacock Timothy D.
分类号 H04L29/06 主分类号 H04L29/06
代理机构 代理人
主权项 1. An application programming interface (API) call filtering system to filter API call requests received, via a network, from a device that is network-connected and configured to run endpoint application hardware and/or software, to secure an API service that accepts API call requests and provides API call responses thereto, the system comprising: at least one computing device configured to implement one or more services, wherein the one or more services are configured to: a) monitor, at an API filter, API call requests received from an endpoint application directed to a server configured to provide, at least in part, the API service;b) monitor authentication methods of the API call requests;c) compile authentication information related to the authentication methods;d) compile performance indicators of the API call requests;e) analyze the compiled performance indicatorsf) create at least one report based at least in part, on the analyzed performance indicators and compiled authentication information;g) modify an authentication method of at least one API call request in response to a security team input following an output of the at least one report, to form a modified API call request that is processable by the server as the server is configured for the API call requests, wherein modifying an authentication method comprises, for at least some API call requests, creating a requirement that the at least one API call request satisfy an authentication test that the at least one API call request would not have otherwise had to satisfy; and h) send the modified API call request to the server.
地址 Palo Alto CA US