-
Products
- Alphabetical List
- Business & Industry Applications
- Cybersecurity
- Data and Analytics
- AI and Intelligent Operations
- Total Experience
- Sovereign Collaboration
- Specialized Software
- HCL Actian
- HCL Actian Data Platform
- HCL Actian Ingres
- HCL Aftermarket Cloud
- HCL AppScan
- HCL Automation Orchestration
- HCL Automation Orchestrator Suite
- HCL BigFix
- HCL CAMWorks
- HCL Clara
- HCL Commerce Cloud
- HCL Connections
- HCL Customer Data Platform
- HCL DataConnect
- HCL DFMPro
- HCL Discover
- HCL Domino
- HCL DX
- HCL DevOps Code ClearCase
- HCL DevOps Code RealTime
- HCL DevOps Deploy
- HCL DevOps Plan
- HCL DevOps Model RealTime
- HCL DevOps Test
- HCL DevOps Test Embedded
- HCL DevOps Velocity
- HCL Glovius
- HCL Hero
- HCL HIVE
- HCL iAutomate
- HCL iAutomate Netbot
- HCL iControl
- HCL Informix
- HCL IntelliOps
- HCL IntelliOps Event Management
- HCL iObserve
- HCL Leap
- HCL Link
- HCL Mainframe Solutions
- HCL Marketing Cloud
- HCL Marketplace
- HCL MyCloud
- HCL MyXalytics
- HCL MyXalytics Finops
- HCL Nippon
- HCL Notes
- HCL Now
- HCL SafeLinx
- HCL Sametime
- HCL Secure DevOps
- HCL SX
- HCL TX Platform
- HCL Unica
- HCL Universal Orchestrator
- HCL Vector Analytics
- HCL Verse
- HCL Volt MX
- HCL Workload Automation
- HCL Z Asset Optimizer
- HCL Z Abend Investigator
- HCL Z and I Emulator
- HCL Zeenea Data Intelligence Platform
- HCL Zen Edge Data Management
- HCL Aftermarket Cloud Aftermarket-led growth platform
- HCL Automation Orchestration Streamline Business Processes
- HCL Commerce Cloud Enterprise e-commerce for B2C and B2B
- HCL CDP Flexible and customizable customer data platform
- HCL Discover Behavioral insights for customer journeys
- HCL Marketing Cloud Fueling precision marketing at scale with AI
- HCL Unica Enterprise marketing automation platform
- HCL AppScan Scans for application vulnerabilities
- HCL BigFix Secure endpoint management
- HCL BigFix Compliance Ensure security with continuous, real-time compliance monitoring
- HCL BigFix CyberFOCUS Supercharging IT operations to secure the enterprise
- HCL BigFix Remediate Automate, remediate & secure endpoints
- HCL Actian Empowers the data-driven enterprise
- HCL Actian Data Platform Data services suite; flexible deployment
- HCL Actian Ingres Legendary transactional RDBMS
- HCL DataConnect Low-code integration platform
- HCL Zeenea Data Intelligence Platform Cloud-native data governance solution
- HCL Zen Embeddable edge data management
- HCL Automation Orchestration Streamline Business Processes
- HCL Automation Orchestrator Suite Accelerate IT and business automation
- HCL BigFix Secure endpoint management
- HCL BigFix AEX AI-driven employee experience accelerating productivity and innovation
- HCL BigFix Enterprise+ An all-in-one IT infrastructure automation offering enabling you to stay ahead of cyber threats
- HCL BigFix Workspace+ Fueling GenAI within the Digital+ experience
- HCL iControl HCL iControl is a business flow and process observability solution
- HCL MyXalytics Cloud finOps visibility and insights
- HCL SX Service management for everything-as-a-service delivery
- HCL Workload Automation Simplify and automation business workflows
- HCL Automation Orchestration Streamline Business Processes
- HCL CDP Flexible and customizable customer data platform
- HCL DX The DXP for the moments that matter
- HCL Foundry Secure backend services
- HCL Leap No code citizen app dev
- HCL TX Platform Deliver seamless customer and employee experiences
- HCL Volt MX Multi-experience low code app dev
- HCL Connections Collaboration and task management in one workspace
- HCL Domino Rapid application development platform
- HCL Leap No code citizen app dev
- HCL Link Connectivity across your digital ecosystem
- HCL Notes Comprehensive email and collaboration hub
- HCL SafeLinx Secure and flexible remote access to enterprise applications
- HCL Sametime Secure meetings, video, and chat communications
- HCL Verse Smart and secure enterprise email for seamless workflow
- HCL Augmented Network Automation (SON)Intelligent RAN automation platform
- HCL DFMProCAD integrated Design-for-Manufacturing platform
- HCL CAMWorksCAM for machining productivity
- HCL GloviusModern lightweight CAD Viewer
- HCL Mainframe Optimization Optimize, modernize, and innovate your mainframe investments
- HCL Secure DevOps Automated testing and security scanning
- Industries
- Partners
-
Persona
- HCL Commerce Cloud Enterprise e-commerce for B2C and B2B
- HCL CDP Flexible and customizable customer data platform
- HCL DX The DXP for the moments that matter
- HCL Marketing Cloud Fueling Precision Marketing At Scale with AI
- HCL Unica Enterprise marketing automation platform
- HCL Volt MX Multi-experience low code app dev
- HCL Actian Ingres Legendary transactional RDBMS
- HCL Actian Data Platform Data services suite; flexible deployment
- HCL AppScan Scans for Application Vulnerabilities
- HCL BigFix Secure endpoint management
- HCL BigFix AEX AI-driven employee experience accelerating productivity and innovation
- HCL BigFix Enterprise+ An all-in-one IT infrastructure automation offering enabling you to stay ahead of cyber threats
- HCL BigFix Workspace+ Fueling GenAI within the Digital+ experience
- HCL DataConnect Low-code integration platform
- HCL Foundry Secure Backend Services
- HCL iControl HCL iControl is a business flow and process observability solution
- HCL MyXalytics Cloud FinOps visibility and insights
- HCL SX Service management for everything-as-a-service delivery
- HCL Universal Orchestrator Orchestrate and optimize business automation
- HCL Vector Analytics A high-performance, secure vectorized columnar analytics database
- HCL Workload Automation Simplify and automation business workflows
- HCL Zen Embeddable edge data management
- Learn & Support
HCLSoftware News
HCLSoftware Launches HCL AppScan API Security
A comprehensive API Security solution designed to help organizations effectively manage their API assets while minimizing risk.
NOIDA, India (April 23, 2025) - HCLSoftware, a global leader in enterprise software solutions, announced today the launch of HCL AppScan API Security, in partnership with Salt Security. This comprehensive API security program enables organizations to effectively manage all their API assets and ensure they continue to deliver business value without introducing increased levels of risk.
HCL AppScan API Security is designed to reduce security blind spots with an expert-trained, AI-infused discovery platform that finds and inventories all API assets, ensures corporate API standards in runtime and development, and integrates seamlessly with dynamic analysis to pinpoint and fix vulnerabilities.
Application Programming Interfaces (APIs) are rapidly transforming the digital landscape, with APIs now accounting for well over 50 percent of all web traffic. APIs facilitate seamless communication between applications and are now being relied upon to drive cloud services, mobile apps, and Internet of Things (IoT) devices. But all this traffic has, at the same time, made APIs a leading attack vector that can be exploited by bad actors, and organizations are now facing a whole new set of security challenges.
“The growing dependence on APIs has made robust API security a boardroom-level concern for our customers, all of whom are looking to improve their security posture and safeguard their digital ecosystems,” said Rajesh Iyer, Executive Vice President, HCLSoftware.
2023 saw a significant increase over previous years in both the total number of API attacks, as well as the percentage of data breaches associated with API vulnerabilities. And the trend is continuing. In the recent 2024 State of API Security report from Salt Security, 37% of the organizations surveyed reported having experienced an API-related security incident – twice that of the previous year. Just in the first six months of 2024, various news agencies have reported large-scale API-related attacks across numerous industries including social media and file sharing platforms, technology companies, and e-commerce sites, to name a few, leading to compromised data for millions of users.
APIs have become so ubiquitous that many companies don’t even know how many they are using. The number for medium and larger organizations can easily be in the hundreds. APIs now play multiple roles in every industry, most evidently in functionality such as online shopping, media delivery, payment gateways, workflow automation, microservices, software development – the list goes on. This means that the first step to securing APIs is gathering a full and accurate inventory of what is being used.
“One of the key capabilities of HCL AppScan API Security is its ability to continuously discover and record an organization’s entire API inventory.” said Colin Bell, CTO for HCL AppScan. “This allows security teams to gain insights into their overall security posture.”
The rising trend in API attacks led the Open Web Application Security Project (OWASP) to create The OWASP API Security Top 10 – a list of the most critical security risks specifically related to APIs. The list was compiled to help organizations understand and mitigate the risks associated with API vulnerabilities. These include key areas that organizations should focus on when securing their APIs such as Broken Object Level Authorization (BOLA), Excessive Data Exposure, and Security Misconfiguration, just to name a few. According to the 2024 State of API Security report from Salt Security, 80% of attack attempts leverage one or more of OWASP API Top 10 methods, but only about 58% of respondents surveyed focus their security efforts around this list.
"With the rise in API security incidents and regulatory oversight, organizations need to maintain continuous compliance across their API ecosystems," stated Michael Nicosia, COO and Co-founder at Salt Security. "By combining HCL AppScan's powerful scanning features with Salt Security's real-time governance and visibility of attack surfaces, including our discovery of undocumented and shadow APIs, we deliver unified insights and deeper visibility across their entire API landscape. This enables organizations to proactively identify risks and uphold compliance with essential standards such as PCI DSS, GDPR, and HIPAA throughout the API lifecycle.”
HCL AppScan API Security ensures 100 percent coverage of the OWASP API Security Top 10 list and provides organizations with numerous capabilities for more robust API security including:
- Reduce security blind spots with an expert-trained, AI-infused API discovery platform
- Discover and inventory all APIs, including Shadow and Zombie APIs
- Pinpoint sensitive data in transit and ensure compliance with relevant regulations (e.g., GDPR, HIPAA, and PCI DSS)
- Link APIs to owners and functions
- Gain insights into the security posture of your entire API landscape
- Ensure corporate API standards in runtime and development with the help of AI-based insights that assess and prioritize the riskiest API assets
- Adopt industry best practices using pre-built policy templates and an expansive API policy library
- Integrate API-specific DAST vulnerability testing and improve accuracy with up-to-date specs, business logic, and API configuration data
For more information about HCL AppScan API Security, please visit: https://www.hcl-software.com/appscan/products/api-security
About HCLSoftware
HCLSoftware is a global leader in software innovation and the software division of HCLTech. We develop, market, sell, and support transformative solutions across various industries, including business and industry, intelligent operations, total experience, data and analytics, and cybersecurity. Our commitment to customer success and our core values of integrity, inclusion, value creation, people-centricity, and social responsibility drive us to deliver best-in-class software products that empower organizations to achieve their goals. With a rich heritage of pioneering spirit, HCLSoftware serves more than 20,000 organizations, including a majority of the Fortune 100 and almost half of the Fortune 500. Learn more about how we can help you achieve your goals at www.hcl-software.com.