Your personal API security journey
We are now at the end of this book, but that does not mean that your personal API security journey has concluded. I would like to think it has only just started. APIs and API security are rapidly evolving domains, with new technologies (such as GraphQL) posing new risks to organizations. Hopefully, this book has given you a solid foundation in the basics of API security, how to attack APIs, and, most importantly, how to defend them.
To keep up to date on all breaking news relating to API security, including breaches, views and opinions, tools, and techniques, I would recommend the bi-weekly newsletter I curate at APISecurity.io (https://apisecurity.io/).
If you prefer a more tactile, hands-on approach to learning, then the good folks at APISecurity University have several online training courses on various API security topics (https://www.apisecuniversity.com/).
Happy learning!