API Security Weekly: Issue #24

This week, we dive under the skin with unprotected APIs on implanted cardiac defibrillators and take a spin with a hacked tornado warning system in Texas. We have a story on how Uber used API vulnerability to drive competition out of business, and finally, we also look into how to store API keys and prevent SQL injections.Image title

Vulnerabilities

IoT security as bad as it gets: 750 000 implanted cardiac defibrillators from Medtronic have unprotected APIs! Even U.S. Department of Homeland Security had to issue a warning on this one.