Escape - Offensive Security

Escape - Offensive Security

Escape - Offensive Security — Last Publications

Understanding Access Control Models: RBAC, ABAC, and DAC
Product Security

Understanding Access Control Models: RBAC, ABAC, and DAC

Different models of access control offer unique methods and benefits. The three primary models are Role-Based Access Control (RBAC), Attribute-Based Access Control (ABAC), and Discretionary Access Control (DAC).
Escape - Offensive Security
Escape - Offensive Security
3 min read
Webinar: Best Practices for API security
API Security

Webinar: Best Practices for API security

Learn the ins and outs of keeping your APIs secure.
Escape - Offensive Security
Escape - Offensive Security
1 min read
How to establish an application security policy
Application Security

How to establish an application security policy

As organizations increasingly rely on web and mobile applications to conduct business, robust application security has become paramount. Cyberattacks are on the rise, and without adequate protection, businesses risk losing sensitive data, revenue, and reputational damage. Having an application security policy in place is the first line of defense against
Escape - Offensive Security
Escape - Offensive Security
14 min read
Escape vs 42Crunch: A Complete Comparison 2025
Competitor Comparison

Escape vs 42Crunch: A Complete Comparison 2025

Today, attackers prioritize exploiting an application's business logic flaws and API vulnerabilities, which may result in the unauthorized extraction of sensitive data. Understanding an application's business logic is challenging, and requires a security platform that comprehends an application's functionalities to address complex API attacks.
Escape - Offensive Security
Escape - Offensive Security
7 min read
How we found a security misconfiguration in Philips' GraphQL API
Announcement

How we found a security misconfiguration in Philips' GraphQL API

It is a misconception that discovering vulnerabilities is only within the domain of developers and hackers. Jacob, an Account Executive at Escape, proves this notion wrong. What is a vulnerability disclosure? Vulnerability disclosure is the process of reporting security weaknesses in computer software or hardware. Individuals and groups such as
Escape - Offensive Security
Escape - Offensive Security
3 min read
Top 5 Web3 security breaches: A deep dive into DApp frontend and API vulnerabilities
Web3 Security

Top 5 Web3 security breaches: A deep dive into DApp frontend and API vulnerabilities

The world is gearing more into a phase of individual ownership of data and digital assets without external interference. This metamorphosis of the web is commonly called Web3. It combines frontend technology, smart contracts, and other components of backend technology, such as indexing, querying, and database management. Smart contracts, a
Escape - Offensive Security
Escape - Offensive Security
9 min read
GraphQL Security: Challenges & Best Practices for DApps
Web3 Security

GraphQL Security: Challenges & Best Practices for DApps

Apart from the issue of poor user experience, security is one of the greatest setbacks to global Web3. Blackhats are constantly exploiting Web3 applications to siphon funds. On the 2nd of July, 2023, Poly Network lost about $5 million to a hack. Atomic Wallet lost over $100 million to a
Escape - Offensive Security
Escape - Offensive Security
6 min read
Escape raises $3.9 million in seed to secure APIs at every development stage
Announcement

Escape raises $3.9 million in seed to secure APIs at every development stage

Official Press release * Six months after releasing its API security platform, Escape has already secured the applications of 1000+ organizations worldwide and just graduated from Y Combinator. * The funding will allow the company to hire new team members covering European and US-based customers, aiming to double the team’s size
Escape - Offensive Security
Escape - Offensive Security
4 min read
Top 5 GraphQL vulnerabilities burdening HIPAA compliance
GraphQL

Top 5 GraphQL vulnerabilities burdening HIPAA compliance

TL;DR: GraphQL vulnerabilities will inevitably burden organizations, especially when healthcare compliances like HIPAA come into play. This article highlights how Escape makes it super easy to release compliant APIs. The correlation between HIPAA and GraphQL is that PHI resources can be exposed through GraphQL APIs, allowing for a more
Escape - Offensive Security
Escape - Offensive Security
5 min read
The State of Public APIs 2023
Research

The State of Public APIs 2023

tl;dr we scanned 6056+ public APIs on the internet with our in-house feedback driven exploration tech and ranked them using security, performance, reliability, and design criteria. We decided to analyze the resulting data and produce a full featured report: The State of Public APIs 2023 Why build this report?
Escape - Offensive Security
Escape - Offensive Security
2 min read
Demeter's Hymn to Cybersecurity: Consequences of Cyberattacks on Scale-Ups
Startup Security

Demeter's Hymn to Cybersecurity: Consequences of Cyberattacks on Scale-Ups

How many entrepreneurs feel a filial connection with their business, such as Demeter’s passion for Persephone? If Hades abducted Persephone on his golden chariot drawn by immortal horses, the infants of start-up founders are threatened by a more nebulous danger: cyberattacks.
Escape - Offensive Security
Escape - Offensive Security
7 min read