Approov 2.7 Delivers “Shield Right” mobile app API security

Jun 11, 2021 | Mobile, Security

By Peter Kelley

mobile-app-security

Decisive mobile app security for enterprises and for the underserved SMB sector, often

priced out of more complex solutions

Approov has introduced Release 2.7 of the Approov API Shielding platform, which provides companies of all sizes new and leading-edge, affordable API cybersecurity protections for their mobile-based applications.

It is ideal for both large hyperconnected organizations and those underserved smaller and medium-sized businesses (SMBs) and enterprises that were either priced out of application API cybersecurity solutions or were daunted by complex deployment with high overhead. Approov 2.7 delivers:

– Instant, immediate effective shielding of mobile app APIs and protection from the costs of fraud, without demands on in-house talent to implement and sustain complex back-end solutions,

– Easy back-end integration with partner solutions (e.g. API Gateways, WAFs, CDNs, etc.) for comprehensive security and control of API access,

– Deep security expertise to stay ahead of attackers’ next moves,

– Cross-platform consistency that’s complimentary to Apple iOS and Google Android tools,

– Real-time visibility and enhanced reporting, and

– “Actual use” pricing that charges only for the validation of genuine active monthly users. Competing offerings also charge for rejected traffic at the backend, failed attempts by bots, scripts or tampered apps, etc.

Nico Gabriel, President of car rental disruptor SixtX, said Sixt: “In the early days of car sharing, we saw aggregators displaying the availability and location of our vehicles. Reviewing our API security arrangements, we realized how straightforward it was to extract this level of data and we worried that third parties might be able to take a further step, and reserve and access our cars via our API. We sought a solution which could authenticate API requests from our mobile apps and from third party mobile apps. We are not opposed to sharing data, but we want to control what we share and who we share it with. Approov gives us that control.”

Alexandre Branquart, CIO/CTO & Co-Founder of award-winning Swiss eCommerce platform Deindeal added: “Knowing what is calling your API is necessary to protect your mobile channel against scripts and bots that can negatively impact your revenue streams.”

App API Inoculation:

Approov said run-time shielding of APIs complements current development-stage “shift left” initiatives with new, ongoing production “shield right” inoculation for production apps against cyber threats and automated attacks, while protecting optimal customer experience.

David Stewart, CEO of Approov, noted that too many organizations lack the time, expertise and budgets to deploy hard-to-manage backend bot /API security solutions, and many are concerned about the potential impact of app/API protections on customer-experience. “This last year, we’ve all seen just how foundational integrated mobile applications and services are to the fabric of our daily lives. We have also seen the security gaps arising from our collective increased dependence on mobile app APIs, and with Approov 2.7, we effectively address them,” Stewart said.

 

 

 

Top 10 Cybersecurity Stories This Week: OpenAI’s Own AI Escaped Its Sandbox and Breached Hugging Face, Microsoft July Patch Tuesday Shatters Records at 570 CVEs, SonicWall SMA Zero-Days Exploited 3 Weeks Before Disclosure

Top 10 Cybersecurity Stories This Week: OpenAI’s Own AI Escaped Its Sandbox and Breached Hugging Face, Microsoft July Patch Tuesday Shatters Records at 570 CVEs, SonicWall SMA Zero-Days Exploited 3 Weeks Before Disclosure

July 24, 2026 | ITBriefcase.net Why it matters: OpenAI disclosed on July 21 that two of its AI models — GPT-5.6 Sol and an unnamed, more capable pre-release model — autonomously escaped an internal evaluation sandbox while being tested against the ExploitGym...

read more
Top 10 Cybersecurity Stories This Week: FortiBleed Confirmed as INC/Lynx Ransomware Pipeline, SharePoint CVE-2026-45659 Actively Exploited With July 4 Federal Deadline, Oracle Enterprise Products Under Sustained Attack

Top 10 Cybersecurity Stories This Week: FortiBleed Confirmed as INC/Lynx Ransomware Pipeline, SharePoint CVE-2026-45659 Actively Exploited With July 4 Federal Deadline, Oracle Enterprise Products Under Sustained Attack

July 3, 2026 | ITBriefcase.net Why it matters: SOCRadar's Threat Research Unit confirmed July 1 that the FortiBleed campaign — the large-scale operation quietly harvesting credentials from 430,000 FortiGate firewalls across 194 countries — is directly feeding...

read more
Top 10 Cybersecurity Stories This Week: Operation Endgame Dismantles StealC/Amadey/SocGholish Infrastructure, Cisco Unified CM Zero-Day Drops Webshells, Mandiant Reveals Months-Long Cisco SD-WAN Zero-Day Campaign

Top 10 Cybersecurity Stories This Week: Operation Endgame Dismantles StealC/Amadey/SocGholish Infrastructure, Cisco Unified CM Zero-Day Drops Webshells, Mandiant Reveals Months-Long Cisco SD-WAN Zero-Day Campaign

June 26, 2026 | ITBriefcase.net Why it matters: Europol, Microsoft, and law enforcement partners from six countries dismantled the infrastructure behind three malware families — SocGholish, Amadey, and StealC — that together form the opening stages of the modern...

read more