Business Wire

Traceable Releases 2025 State of API Security Report: API Breaches Persist as Fraud, Bot Attacks, and Generative AI Increase Risks

30.10.2024 13:25:00 CET | Business Wire | Press release

Share

57% of Organizations Suffer API-related Breaches; Fraud, Bot Attacks, and Generative AI Applications Exploit API Vulnerabilities as Traditional Defenses Fail

Traceable AI, the industry's leading API security company, today released its second annual research report—the 2025 Global State of API Security. The findings demonstrate that organizations are failing to protect their APIs despite persistent breaches and increased awareness of security risks. This comprehensive study, incorporating insights from over 1,500 IT and cybersecurity experts across the US, UK, and EMEA, reveals fundamental weaknesses in API security strategies and tracks how these issues have shifted since our inaugural report.

Key findings examine the most pressing API security issues organizations face today: increasing bot attacks and fraud, risks from third-party APIs, and the new security implications of generative AI applications.

Download the full report for in-depth analysis.

Key Findings Include:

  1. API-Related Data Breaches Continue to Wreak Havoc: 57% of organizations suffered an API-related data breach in the past two years, with a staggering 73% of these experiencing three or more incidents. Even more concerning, 41% endured five or more breaches, revealing a systemic failure in API defenses and a clear need for investment in purpose-built API security solutions.
  2. Traditional Security Solutions Fail to Deliver API Protection: Despite deploying an array of security tools—from legacy WAFs to CDNs and Gateways—only 19% of organizations rate their defenses as highly effective. Moreover, 53% admit that traditional solutions like WAFs and WAAPs are ineffective at identifying or preventing fraud at the API layer.
  3. Generative AI Applications Create New Risks: 65% of organizations state that generative AI applications pose a serious to extreme risk to APIs. 60% state that the additional API integrations required for generative AI applications expand their organization’s attack surface; the same percentage cite concerns about sensitive data exposure and unauthorized access.
  4. Bot Attacks and Fraud are Rampant: 53% of organizations have experienced one or more bot attacks involving their APIs, and 44% say that bot mitigation is a top challenge. Fraud is equally concerning, emerging as the second most prevalent cause of API-related data breaches among survey respondents.
  5. Third-Party APIs Are a Hidden Danger: Organizations now use an average of 131 third-party APIs, up slightly from last year's 127. Yet, only 16% have a “high ability” to mitigate these external risks, leaving a vast attack surface greatly exposed.

"API breaches are rampant, and the industry is in denial,” said Richard Bird, Chief Security Officer of Traceable. “Organizations keep deploying the same solutions—Web Application Firewalls, API gateways, and lifecycle tools—yet only a small percentage report any real success. This cognitive dissonance is a ticking time bomb. The truth is, these traditional defenses are failing, and the more companies rely on them, the more they expose themselves to devastating attacks. We’re also seeing a surge in bot attacks, increasing instances of API fraud, and new vulnerabilities emerging from the rapid adoption of generative AI applications. Companies must confront the uncomfortable truth: their current strategies are inadequate. Without a fundamental shift in how they secure APIs, breaches and their consequences will continue to escalate.”

Traceable conducts this annual research to provide organizations with an objective assessment of API security risks and trends. By tracking these patterns and emerging threats, we aim to offer security leaders the knowledge needed to make informed decisions and prioritize the most important security challenges. Our commitment is to ensure that as APIs continue to be central to business operations, organizations have the insights they need to protect their critical assets.

Download the full 2025 State of API Security report today.

About Traceable

Traceable’s intelligent and context-aware solution powers complete API security, API discovery and posture management, API security testing, attack detection and threat hunting, and attack protection anywhere your APIs live. Traceable enables organizations to minimize risk and maximize the value that APIs bring their customers. To learn more about how API security can help your business, book a demo with a security expert.

View source version on businesswire.com: https://www.businesswire.com/news/home/20241030645718/en/

Subscribe to releases from Business Wire

Subscribe to all the latest releases from Business Wire by registering your e-mail address below. You can unsubscribe at any time.

Latest releases from Business Wire

Venture Global and EnBW Announce New LNG Purchase Agreements17.6.2026 22:30:00 CEST | Press release

Today, Venture Global, Inc. (NYSE: VG) and EnBW announced the execution of new, binding agreements for the purchase of approximately 0.82 million tonnes per annum (MTPA) of U.S. liquefied natural gas (LNG) from Venture Global for approximately five years commencing in 2026, to be supplied from Venture Global’s portfolio. The new agreements add to the existing long-term sales and purchase agreements (SPAs) between Venture Global and EnBW for 2 MTPA for 20 years. “As one of Germany’s top LNG suppliers, Venture Global is proud to strengthen our partnership with EnBW and support the region’s energy security with a reliable supply of LNG,” said Venture Global CEO Mike Sabel. “The new mid-term agreements build on our strong, long-standing relationship with EnBW and reflects our commitment to meeting our customers’ evolving energy needs. Our dynamic marketing platform uniquely positions us to provide supply solutions across the short, medium, and long term.” About Venture Global Venture Globa

Kinaxis Announces Results of Voting at Annual and Special Meeting of Shareholders17.6.2026 22:05:00 CEST | Press release

Kinaxis® Inc. (“Kinaxis” or the “Company”) (TSX:KXS), a global leader in end-to-end supply chain planning and orchestration, received approval for all resolutions put forward to shareholders at today’s Annual and Special Meeting of Shareholders (the “Meeting”), as detailed in the Company’s management information circular dated May 5, 2026 (the “Circular”). 1. Election of Directors Shareholders voted to elect all eight directors nominated to the Kinaxis board, to hold office until the close of the next annual meeting of shareholders of the Company or until their successors are elected or appointed. Name of Nominee Total Number of Votes For Percentage of Votes For Total Number of Votes Against Percentage of Votes Against Razat Gaurav 21,870,163 99.01% 219,468 0.99% Robert Courteau 20,882,945 94.54% 1,206,685 5.46% Gillian (Jill) Denham 21,474,486 97.22% 615,143 2.78% José Alberto Duarte 21,699,181 98.23% 390,448 1.77% Lynn Loewen 21,952,244 99.38% 137,387 0.62% Angel Mendez 21,410,402 96

SES Announces Results of the Extraordinary General Meeting of Shareholders17.6.2026 19:23:00 CEST | Press release

SES (the “Company”) held an Extraordinary General Meeting (“EGM”) of Shareholders today in Betzdorf, Luxembourg. Following the recommendations made by the Board of Directors of SES, the shareholders have voted in favor of all resolutions. In particular, shareholders approved the cancellation of shares repurchased under the Company’s share buyback program of 2 November 2023, as amended on 2 May 2024, resulting in a corresponding reduction of the Company’s share capital. Shareholders also approved amendments to the Company’s articles of association, including indemnification for Board members and executives, as well as updates relating to the conduct of shareholder meetings. Detailed results on all matters voted on at the EGM will be available on the company’s webpage: https://www.ses.com/company/investors/shareholder-information/general-meeting-shareholders Follow us on: Twitter | Facebook | YouTube | LinkedIn | Instagram Read our Blogs > Visit the Media Gallery > About SES At SES, we b

IQM and Real Asset Acquisition Corp. Host Inaugural Capital Markets Day for Investors and Analysts17.6.2026 19:10:00 CEST | Press release

The presentation is now available on demand, outlining IQM's growth strategy, technology roadmap, commercial momentum, and vision for the future of quantum computing. IQM Quantum Computers Oy (f/k/a IQM Finland Oy), a global leader in full-stack superconducting quantum computers ("IQM," "IQM Quantum Computers" or the "Company"), today announced that its Capital Markets Day presentation is now available on IQM’s investor site at https://iqm.tech/ir/IQM-CapitalMarketDay-2026.pdf, following the event hosted at the Nasdaq MarketSite in New York City on June 15, 2026. The final edited webcast will be posted to and available on the Company's investor relations website in the coming days. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20260617509971/en/ IQM CEO and Co-founder Jan Goetz presenting the company's growth strategy, technology roadmap, and commercial vision at the inaugural Capital Markets Day at Nasdaq MarketSite. The Cap

The Smarter E Europe Sends a Strong Message: the Energy Future Is Renewable17.6.2026 16:09:00 CEST | Press release

Europe is once again facing an energy crisis, another reminder of just how vulnerable our fossil fuel-based energy system is. Yet the current crisis is also accelerating the energy transition and the adoption of electromobility. The objective is to reduce dependence on imports of fossil-based raw materials and thereby increase resilience. This year, The smarter E Europe, Europe’s largest alliance of exhibitions for the energy industry, is sending a strong and clear message with its new special exhibit Renewables 24/7: Renewable energies ensure a secure, reliable and affordable energy supply every day, around the clock. This message is scientifically supported by a new study from the Fraunhofer Institute for Solar Energy Systems ISE, which will be presented on June 23. From June 23–25, around 2,800 exhibitors will present groundbreaking, market-ready and cross-system technologies for a 24/7 renewable energy supply at Messe München. More than 100,000 visitors are expected. This press rel

In our pressroom you can read all our latest releases, find our press contacts, images, documents and other relevant information about us.

Visit our pressroom
World GlobeA line styled icon from Orion Icon Library.HiddenA line styled icon from Orion Icon Library.Eye