New

Unlock AI's Future with APISIX – The Fully Open-Source AI Gateway for AI Agents & LLMs!Learn More

Learn More

All posts tagged

"API Security"

Understanding API Tokens and Their Usage

API 101

June 12, 2025

Understanding API Tokens and Their Usage

Unlock the full potential of API tokens. This guide covers token types, API gateway integration, best practices, and advanced concepts for developers.

Securing APIs in Serverless Architectures

API 101

June 12, 2025

Securing APIs in Serverless Architectures

Master serverless API security with our guide. Learn best practices for AWS API Gateway, Lambda, data protection, and advanced strategies to safeguard your serverless architectures.

API Security in the Age of IoT

API 101

June 12, 2025

API Security in the Age of IoT

Protect your IoT ecosystem with robust API security. This guide covers challenges, API Gateway's role, and best practices for authentication, data encryption, and threat detection in IoT APIs.

API Security Testing: Tools and Techniques

API 101

June 11, 2025

API Security Testing: Tools and Techniques

Discover essential API security testing tools, methodologies, and best practices to protect your APIs from breaches and threats for 2025.

CORS in APIs: Handling Cross-Origin Requests

API 101

June 11, 2025

CORS in APIs: Handling Cross-Origin Requests

Discover how CORS works and implement it securely in your APIs with this comprehensive guide.

Data Encryption in API Communication

API 101

June 11, 2025

Data Encryption in API Communication

Learn essential API encryption strategies, including TLS 1.3 implementation and post-quantum cryptography.

API Security Best Practices: Protecting Your Digital Front Door

API 101

June 11, 2025

API Security Best Practices: Protecting Your Digital Front Door

Explore comprehensive API security strategies, including TLS 1.3, secure authentication, and gateway protections.

How to Avoid Common Vulnerabilities

API 101

May 21, 2025

How to Avoid Common Vulnerabilities

Discover common API vulnerabilities and learn how to secure your APIs with best practices, rate limiting, and API gateway security measures.

Implementing JWT for API Security

API 101

May 21, 2025

Implementing JWT for API Security

Learn how to secure APIs using JSON Web Tokens. Explore implementation steps, best practices, and the role of API gateways in API security.

Rate Limiting and Throttling: Protecting Your API

API 101

May 21, 2025

Rate Limiting and Throttling: Protecting Your API

Learn essential rate limiting and throttling strategies to protect your API from abuse, ensure reliability, and enhance security.

How API7-MCP Helps You Eliminate Hidden API Risks

Products

May 19, 2025

How API7-MCP Helps You Eliminate Hidden API Risks

Discover how API7-MCP boosts API security and compliance by detecting risks with AI-driven insights.

API7 Enterprise v3.2.16.4 Supports Webhook/Email Alert Notifications

Products

November 14, 2024

API7 Enterprise v3.2.16.4 Supports Webhook/Email Alert Notifications

API7 Enterprise v3.2.16.4 enhances the alerting feature, supporting Webhook and Email notifications for timely updates.

API7 Enterprise v3.2.16.3 Integrates with AWS Secrets Manager

Products

November 7, 2024

API7 Enterprise v3.2.16.3 Integrates with AWS Secrets Manager

API7 Enterprise v3.2.16.3 integrates with AWS Secrets Manager for secure, efficient management and protection of sensitive data.

Apache APISIX Integrates with open-appsec WAF

Ecosystem

October 21, 2024

Apache APISIX Integrates with open-appsec WAF

Let's protect your web APIs and applications exposed by Apache APISIX against known and unknown attacks with open-appsec - the automatic, machine learning-based WAF.

API7 Enterprise v3.2.16: Integrated Secret Providers

Products

October 10, 2024

API7 Enterprise v3.2.16: Integrated Secret Providers

API7 Enterprise v3.2.16 seamlessly integrates with secret providers like HashiCorp Vault, enabling effortless management and referencing of external sensitive information.

What Is API Sprawl? How to Prevent API Sprawl?

Technology

May 6, 2024

What Is API Sprawl? How to Prevent API Sprawl?

Explore the issue of API sprawl in enterprises, learn about solutions to reduce development costs, enhance security, and facilitate successful digital transformation.

Integrating Alert Notifications with IM Systems

Products

April 24, 2024

Integrating Alert Notifications with IM Systems

Learn how to use API7 Enterprise to set alerts and quickly push alert notifications to commonly used IM systems through Webhook notifications.

How APISIX protects against the OWASP top 10 API security threats

Technology

October 6, 2023

How APISIX protects against the OWASP top 10 API security threats

In this blog post, we'll explore OWASP Top 10 threats and learn how APISIX can protect against them with examples.

mTLS Everywhere: How to Configure TLS for APISIX

Ecosystem

July 31, 2023

mTLS Everywhere: How to Configure TLS for APISIX

Transport Secure Layer, aka TLS, formerly SSL, is among its many pillars of information system security. Let's learn how to configure TLS for the Apache APISIX API Gateway.

RBAC with API Gateway and Open Policy Agent (OPA)

Technology

May 15, 2023

RBAC with API Gateway and Open Policy Agent (OPA)

In this article, we will discuss how to enable the Role-based access control (RBAC) authorization model.

A Guide to DevSecOps with API Gateway

Technology

March 13, 2023

A Guide to DevSecOps with API Gateway

In this article, we will walk you through the reasons why API Gateway is important in building APIs with DevSecOps approach.

APISIX: Be FIPS 140-2 Compliant

Products

January 6, 2023

APISIX: Be FIPS 140-2 Compliant

APISIX enhances its security by being compliant with FIPS 140-2, the security for cryptographic modules.

Hashicorp Vault & Apache APISIX: Strengthen Your API Security

Products

November 15, 2022

Hashicorp Vault & Apache APISIX: Strengthen Your API Security

This article introduces Hashicorp Vault, how Apache APISIX integrates Hashicorp Vault, and some future developing trends between them.

Secure APIs in an API Gateway

Technology

November 4, 2022

Secure APIs in an API Gateway

This article introduces API, API security, and some ways of protecting API.

Apache APISIX Enhances API Security by CSRF Plugin

Products

February 23, 2022

Apache APISIX Enhances API Security by CSRF Plugin

This article describes how to secure your API information with the CSRF plugin in API Gateway Apache APISIX.

360 Improves Cloud Resource Management With APISIX

Case Study

December 11, 2020

360 Improves Cloud Resource Management With APISIX

APISIX has addressed the challenges faced by 360 Cloud Computing in their Basic Operation and Maintenance Platform project.

API7.ai Logo

The digital world is connected by APIs, API7.ai exists to make APIs more efficient, reliable, and secure.

Sign up for API7 newsletter

Product

API7 Gateway

SOC2 Type IIISO 27001HIPAAGDPRRed Herring

Copyright © APISEVEN PTE. LTD 2019 – 2025. Apache, Apache APISIX, APISIX, and associated open source project names are trademarks of the Apache Software Foundation