Radware Acquires Pynt to Add API Security Testing Tool
嗯,用户让我用中文帮他总结一下这篇文章的内容,控制在一百个字以内,而且不需要以“文章内容总结”或者“这篇文章”这样的开头,直接写描述即可。好的,我先仔细看看这篇文章讲了什么。 文章主要讲的是Radware收购了Pynt公司,Pynt提供测试API安全性的工具。Radware的高级产品经理Uri Dorot提到,Pynt的能力将继续作为独立工具使用,并且会更紧密地集成到现有的API安全平台中。Radware去年推出了API安全服务,帮助团队发现和保护API。通过收购Pynt,他们可以扩展平台的功能,包括设计和测试流程,这些通常在DevOps早期阶段进行。 现在大部分网络流量都是通过API传输的,所以越来越多的团队需要在一个更大的平台上处理API安全问题,比如评估风险和防止DDoS攻击。Radware的服务可以让团队协调应对各种攻击策略。最大的挑战是发现组织开发了多少API,通常这个数量被低估了。大多数团队缺乏对IT栈核心元素的可见性。 用户可能需要一个简洁明了的总结,重点突出收购、整合、扩展功能以及当前的挑战。我得确保在100字以内涵盖这些要点。 总结一下:Radware收购Pynt以增强其API安全平台功能,并整合测试工具到现有服务中。这扩展了平台能力,并帮助团队更早地处理API安全问题。同时提到了发现和保护API的挑战。 </think> Radware收购Pynt以增强其API安全工具集,并将其整合至现有平台中。此举扩展了API安全能力至设计与测试阶段,并帮助团队更早识别与保护API。随着网络流量依赖API增加,团队需在综合平台上应对安全威胁如DDoS攻击。当前主要挑战在于发现与保护组织内的大量API及其潜在风险。 2026-1-28 20:53:5 Author: securityboulevard.com(查看原文) 阅读量:0 收藏

Radware this week revealed it has acquired Pynt, a provider of a set of tools for testing the security of application programming interfaces (APIs).

Uri Dorot, a senior product marketing manager for Radware, said that capability will continue to be made available as a standalone tool in addition to being more tightly integrated into the existing cybersecurity platform that Radware makes available for securing APIs and thwarting cybersecurity attacks.

The acquisition of Pynt follows the launch of the Radware API Security Service last year, through which it enables cybersecurity teams to both discover APIs and secure them at runtime.

By combining Pynt’s API security testing capabilities with that platform, it now becomes possible to extend the scope of the API security platform to include design and testing workflows that typically occur early in a DevOps workflow, said Dorot.

With the bulk of web traffic now moving between APIs, more cybersecurity teams are moving to address API security within the context of a larger platform that can, for example, also assess risks and thwart distributed denial of service (DDoS) attacks.

The Radware API Security Service provides a means to secure APIs in a way that can be coordinated with response to other types of attacks as the tactics and techniques employed by cybercriminals become more sophisticated, noted Dorot.

The biggest challenge is usually simply discovering the number of APIs an organization has developed, which most of the time is significantly underestimated, he added. The biggest issue most cybersecurity teams have today is they simply lack visibility into core elements of the IT stack, noted Dorot.

It’s not clear to what degree cybersecurity teams are attempting to secure APIs much like any other endpoint or as part of a larger overall strategy. Radware, in effect, is positioning itself to be able to address both of those scenarios, said Dorot.

Hopefully, more cybersecurity teams are assuming responsibility for API security. Historically, many cybersecurity teams tended to assume that the application developers that created an API were also taking steps to secure them. Most application developers, however, lack the expertise and tooling required to secure the APIs they create. As a result, in addition to making it relatively simple for cybercriminals to, for example, invoke an API to exfiltrate data, there also tends to be more rogue APIs that have been deployed than cybersecurity teams realize.

More troubling still, there are also zombie APIs that, while still exposed to the Internet, are no longer being updated and maintained.

Longer term, cybersecurity teams will also soon need to extend the reach of API security tools and platforms to include the Model Context Server (MCP) protocol that is now being widely used to provide artificial intelligence (AI) applications and agents with access to data. MCP, for all intents and purposes, is just another type of API, said Dorot.

Hopefully, there will come a day soon when most organizations have an effective strategy in place for securing all their APIs. In the meantime, however, cybersecurity teams should assume that most of the external-facing APIs they have deployed are to one degree or another have probably been compromised.

Recent Articles By Author


文章来源: https://securityboulevard.com/2026/01/radware-acquires-pynt-to-add-api-security-testing-tool/
如有侵权请联系:admin#unsafe.sh