> For the complete documentation index, see [llms.txt](https://docs.fractalsecurity.app/fractal-security/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://docs.fractalsecurity.app/fractal-security/solutions/use-cases/api-protection.md).

# API Protection

## How does Fractal help organizations protect API endpoints?

* **Bot Protection:** Using Fractal Bot Defense, organizations can block bots attacking API endpoints.&#x20;
* **Threat Intelligence:** With Fractal Threat Recon, organizations can identify, assess, and resolve the specific API endpoints bots are using to attack and/or bypass security measures.&#x20;

## How do bad actors attack API endpoints?

<details>

<summary>Brute Force Attacks</summary>

Brute-force attacks involve bots inundating APIs in attempts to guess passwords, access tokens, and other credentials, ultimately seeking entry into backend systems.

</details>

<details>

<summary>Scraping Abuse</summary>

Scraping refers to the process where bots gather sensitive data like customer details, financial records, and intellectual property.

</details>
