Listen "BOLA exploits: The #1 API threat and how to stop it"
Episode Synopsis
The 2025 API Threat Report is out, and shocker: we’re still getting wrecked by injection, data leaks, and BOLA. That’s Broken Object Level Authorization, for those of you keeping score at home. And here’s the kicker—95% of these attacks are coming through authenticated sessions. Translation: the bad guys aren’t breaking in through the side door, they’re waltzing in with a valid badge and looting the place. But sure, let’s keep obsessing over password complexity policies while ignoring that our APIs are basically vending machines for sensitive data.In this episode, F5's Lori MacVittie, Joel Moses, and special guest Garland Moore dive into BOLA misconceptions, the impact of AI, and solutions you can implement now to mitigate risk.
More episodes of the podcast Pop Goes the Stack
Reshaping the web for AI agents and LLMs
16/12/2025
We're on a brief hiatus, we'll be back soon
21/10/2025
Crossing the streams
07/10/2025
Agentic APIs Have PTSD
30/09/2025
ZARZA We are Zarza, the prestigious firm behind major projects in information technology.