Source: https://www.cshub.com/security-strategy/articles/the-role-of-api-inventory-in-sbom-and-cyber-security
The Software Bill of Materials (SBOM) has become a cornerstone of cyber security and software supply chain management in recent years. As outlined by the United States National Telecommunications and Information Administration (NTIA), SBOM consists of minimum elements such as component name, version, and vendor. As organizations increasingly recognize the value of SBOM for mitigating software supply chain risks, governments have implemented directives such as Executive Order (EO) 14028 to promote transparency, accountability, and security in software supply chains.
Alongside this, maintaining a comprehensive and up-to-date application programming interface (API) inventory has emerged as an important component in the creation and management of an effective SBOM. APIs are integral components of modern software applications, allowing communication and data exchange between different software systems. Keeping an accurate inventory of APIs and using good version control enables organizations to better manage risks, vulnerabilities and compliance requirements. API inventory management can also help reduce the risk of cyber attacks like Account Takeover (ATO) or unauthorized access to user data, ultimately leading to more efficient use of resources and cost savings. As the cyber security landscape continues to evolve, the importance of SBOM and API inventory management is expected to further grow.