Special thanks to Corey Ball, Cybersecurity Consulting Manager and author of the upcoming book "Hacking APIs" (No Starch Press), for his contribution to this articleApplication programming interfaces (APIs) remain an increasingly attractive target for attackers. Enterprises today are using more and more APIs, causing the attack surface to grow and introducing the added complexity of managing a large number of APIs. Security professionals recognize these challenges as they work to find appropriate tooling and security testing techniques that fit both their development and meet business objectives.