Eskenzi PR ad banner Eskenzi PR ad banner
  • About Us
Thursday, 4 June, 2026
IT Security Guru
Eskenzi PR banner
  • Home
  • Features
  • Insight
  • Channel News
  • Events
    • Most Inspiring Women in Cyber 2026
  • Topics
    • Cloud Security
    • Cyber Crime
    • Cyber Warfare
    • Data Protection
    • DDoS
    • Hacking
    • Malware, Phishing and Ransomware
    • Mobile Security
    • Network Security
    • Regulation
    • Skills Gap
    • The Internet of Things
    • Threat Detection
    • AI and Machine Learning
    • Industrial Internet of Things
  • Multimedia
  • Product Reviews
  • About Us
No Result
View All Result
  • Home
  • Features
  • Insight
  • Channel News
  • Events
    • Most Inspiring Women in Cyber 2026
  • Topics
    • Cloud Security
    • Cyber Crime
    • Cyber Warfare
    • Data Protection
    • DDoS
    • Hacking
    • Malware, Phishing and Ransomware
    • Mobile Security
    • Network Security
    • Regulation
    • Skills Gap
    • The Internet of Things
    • Threat Detection
    • AI and Machine Learning
    • Industrial Internet of Things
  • Multimedia
  • Product Reviews
  • About Us
No Result
View All Result
IT Security Guru
No Result
View All Result

Salt Security Announce New Investigation Capabilities to Help API Threat Detection

Enhancements to Salt's AI algorithms for API attack detection and discovery speed API threat resolution and drive scalable API discovery

by Guru Writer
April 20, 2023
in News
Purple Logo, capitalised letters: SALT.
Share on FacebookShare on Twitter

Salt Security have announced the addition of new advanced threat detection capabilities and improved API discovery to the Salt Security API Protection Platform. Salt now includes richer detection of user intent, analytics to evaluate API threat severity, and rapid investigation enhancements that reduce time to resolution for API attacks. In addition, Salt has strengthened its API discovery process with more comprehensive endpoint mapping to support API discovery at scale.

Salt will showcase these new capabilities at the RSA Conference in San Francisco April 24-27.

Using rich insights gathered from more than five years in customers’ environments, the Salt API data cloud can quickly analyse all API traffic over days, weeks, and months to detect and combat the low and slow approach of API attacks. With the latest improvements to its patented AI algorithms, Salt now delivers:

  • Enhancements to its core AI models – Salt has incorporated advanced models, including neural networks, to process more API data at faster rates into its patented API Context Engine (ACE) architecture. Salt has also applied insights from thousands of customer environments into the data sets it uses for the supervised learning portions of the algorithms. These enhancements to the Salt patented API Context Engine (ACE) architecture underlie several new platform capabilities that span API attack detection and discovery.
  • Improved user intent detection – Salt is tapping its AI model enhancements to more quickly and more accurately detect when an API user exhibits malicious intent. Since most anomalies are benign, platforms that simply provide anomaly detection flood SoC teams, reducing the platform’s value. These enhanced insights that distinguish API changes from API attacks enable Salt to further reduce its false positive rate while ensuring accurate identification of true positives.
  • New threat severity analytics – Salt taps the power of its cloud-scale data sets to analyse more than one million anomalous users every day, looking at their behaviours, over long periods of time, for indicators of malicious intent. Since only 0.02% of traffic is malicious, Salt has been able to distil these signals from the noise and has augmented its attacker analysis to highlight different levels of severity for API attacks. The new capability enables security teams to differentiate between high- vs. low-severity attacks, so they can focus their time and attention on the greatest threats. Tracking user activity over long vs. short periods of time is essential to surfacing today’s low-and-slow API attacks, which can take days and weeks to unfold.
  • A new Rapid Investigation mode – Salt has long correlated attacks into a consolidated attacker timeline to help SoC teams streamline incident resolution. The new Rapid Investigation mode now identifies the most malicious attack events, highlighting them at the top of the attacker timeline. The Salt ACE engine analyses the confidence of the Salt ML findings to identify these most critical malicious events. Given the significant rate of increase in API traffic and API attacks, and the lack of commensurate growth in SoC teams, this new capability helps SoC teams keep up with the growing threat of API attacks. The SoC teams can tap the intelligence of the Salt platform to better scale their operations by dramatically reducing the mean time to resolve (MTTR) API attacks despite not having deep knowledge of the APIs themselves.
  • Advanced API discovery at scale – Salt improvements to its AI and ML models has also enhanced its API discovery process. The latest version of the Salt platform provides a more accurate mapping of API endpoints. This kind of intelligent grouping makes it practical for large organisations to inventory and understand their APIs at scale. Less intelligent systems create a usable catalogue in real-world operations, listing an iteration of an API per dynamic component such as a user ID, for example. Organisations need intelligent coalescence and deduplication for effective cataloguing at scale.

“As the pioneer in API security, Salt recognised early on that API attacks differ from other types of attacks,” said Roey Eliyahu, CEO, Salt Security. “To capture a BOLA attack in the wild, you must watch API behaviour over days, weeks – even months. A short analysis window means you’ll miss most in-the-wild API attacks and also limits your ability to determine user intent. With our AI-powered cloud-scale big data architecture and long analysis windows, we have unparalleled insights across trillions of API calls over time to capture attacker reconnaissance activity. By integrating those learnings into the supervised portions of our ML models, and delivering these new threat protection and discovery capabilities, we enhance the value we deliver to organisations to understand their API ecosystem and quickly and accurately identify and stop API attacks.”

Earlier this month, The Guru reported on Salt’s Q1 2023 State of API Security Report. Statistics from the report showed that there was a 400% increase in attackers in the first quarter of 2023.

ShareTweet
Previous Post

KnowBe4 Q1 Phishing Report reveals IT and online services emails drive dangerous attack trend

Next Post

UK government employees receive average of 2,246 malicious emails per year

Recent News

Nagomi Control Brings CTEM Into Action

IT Security Guru picks for Infosecurity Europe 2026

June 1, 2026
Nine in Ten Security Leaders Concerned About AI-Generated Code Risks as Salt Security Launches New Governance Tool

Nine in Ten Security Leaders Concerned About AI-Generated Code Risks as Salt Security Launches New Governance Tool

June 1, 2026
Acumen Cyber and AttackIQ Partner to Strengthen Cyber Defense Validation

Acumen Cyber and AttackIQ Partner to Strengthen Cyber Defense Validation

May 29, 2026
Check Point Launches AI Agents That Think Like Attackers as Autonomous Exploitation Reaches Critical Threat Level

Check Point Launches AI Agents That Think Like Attackers as Autonomous Exploitation Reaches Critical Threat Level

May 28, 2026

The IT Security Guru offers a daily news digest of all the best breaking IT security news stories first thing in the morning! Rather than you having to trawl through all the news feeds to find out what’s cooking, you can quickly get everything you need from this site!

Our Address: 10 London Mews, London, W2 1HY

Follow Us

© 2015 - 2024 IT Security Guru - Website Managed by Dessol

  • About Us
Manage Consent
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behavior or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
  • Manage options
  • Manage services
  • Manage {vendor_count} vendors
  • Read more about these purposes
View preferences
  • {title}
  • {title}
  • {title}
No Result
View All Result
  • Home
  • Features
  • Insight
  • Channel News
  • Events
    • Most Inspiring Women in Cyber 2026
  • Topics
    • Cloud Security
    • Cyber Crime
    • Cyber Warfare
    • Data Protection
    • DDoS
    • Hacking
    • Malware, Phishing and Ransomware
    • Mobile Security
    • Network Security
    • Regulation
    • Skills Gap
    • The Internet of Things
    • Threat Detection
    • AI and Machine Learning
    • Industrial Internet of Things
  • Multimedia
  • Product Reviews
  • About Us

© 2015 - 2024 IT Security Guru - Website Managed by Dessol