The OWASP Foundation, well-known for publishing a regular “Top 10” of web application security risks, recently published an “API Security Top 10”. It hasn’t received the same attention as its better-known sibling to date, but we’ll take a look at the vulnerabilities presented, and how you can best address them within your organisation’s API development.