Traceable Releases 2025 State of API Security Report: API Breaches Persist as Fraud, Bot Attacks, and Generative AI Increase Risks
57% of Organizations Suffer API-related Breaches; Fraud, Bot Attacks, and Generative AI Applications Exploit API Vulnerabilities as Traditional Defenses Fail
Traceable AI, the industry's leading API security company, today released its second annual research report—the 2025 Global State of API Security. The findings demonstrate that organizations are failing to protect their APIs despite persistent breaches and increased awareness of security risks. This comprehensive study, incorporating insights from over 1,500 IT and cybersecurity experts across the US, UK, and EMEA, reveals fundamental weaknesses in API security strategies and tracks how these issues have shifted since our inaugural report.
Key findings examine the most pressing API security issues organizations face today: increasing bot attacks and fraud, risks from third-party APIs, and the new security implications of generative AI applications.
Download the full report for in-depth analysis.
Key Findings Include:
- API-Related Data Breaches Continue to Wreak Havoc: 57% of organizations suffered an API-related data breach in the past two years, with a staggering 73% of these experiencing three or more incidents. Even more concerning, 41% endured five or more breaches, revealing a systemic failure in API defenses and a clear need for investment in purpose-built API security solutions.
- Traditional Security Solutions Fail to Deliver API Protection: Despite deploying an array of security tools—from legacy WAFs to CDNs and Gateways—only 19% of organizations rate their defenses as highly effective. Moreover, 53% admit that traditional solutions like WAFs and WAAPs are ineffective at identifying or preventing fraud at the API layer.
- Generative AI Applications Create New Risks: 65% of organizations state that generative AI applications pose a serious to extreme risk to APIs. 60% state that the additional API integrations required for generative AI applications expand their organization’s attack surface; the same percentage cite concerns about sensitive data exposure and unauthorized access.
- Bot Attacks and Fraud are Rampant: 53% of organizations have experienced one or more bot attacks involving their APIs, and 44% say that bot mitigation is a top challenge. Fraud is equally concerning, emerging as the second most prevalent cause of API-related data breaches among survey respondents.
- Third-Party APIs Are a Hidden Danger: Organizations now use an average of 131 third-party APIs, up slightly from last year's 127. Yet, only 16% have a “high ability” to mitigate these external risks, leaving a vast attack surface greatly exposed.
"API breaches are rampant, and the industry is in denial,” said Richard Bird, Chief Security Officer of Traceable. “Organizations keep deploying the same solutions—Web Application Firewalls, API gateways, and lifecycle tools—yet only a small percentage report any real success. This cognitive dissonance is a ticking time bomb. The truth is, these traditional defenses are failing, and the more companies rely on them, the more they expose themselves to devastating attacks. We’re also seeing a surge in bot attacks, increasing instances of API fraud, and new vulnerabilities emerging from the rapid adoption of generative AI applications. Companies must confront the uncomfortable truth: their current strategies are inadequate. Without a fundamental shift in how they secure APIs, breaches and their consequences will continue to escalate.”
Traceable conducts this annual research to provide organizations with an objective assessment of API security risks and trends. By tracking these patterns and emerging threats, we aim to offer security leaders the knowledge needed to make informed decisions and prioritize the most important security challenges. Our commitment is to ensure that as APIs continue to be central to business operations, organizations have the insights they need to protect their critical assets.
Download the full 2025 State of API Security report today.
About Traceable
Traceable’s intelligent and context-aware solution powers complete API security, API discovery and posture management, API security testing, attack detection and threat hunting, and attack protection anywhere your APIs live. Traceable enables organizations to minimize risk and maximize the value that APIs bring their customers. To learn more about how API security can help your business, book a demo with a security expert.
View source version on businesswire.com: https://www.businesswire.com/news/home/20241030645718/en/
Subscribe to releases from Business Wire
Subscribe to all the latest releases from Business Wire by registering your e-mail address below. You can unsubscribe at any time.
Latest releases from Business Wire
Kioxia Receives IEEE Corporate Innovation Award9.5.2025 09:00:00 CEST | Press release
Kioxia Corporation, a world leader in memory solutions, today announced that it has received the IEEE Corporate Innovation Award from the Institute of Electrical & Electronics Engineers (IEEE), the world’s largest technical professional organization dedicated to advancing technology for the benefit of humanity. This award recognizes Kioxia's outstanding contribution in the field of electrical and electronics engineering through its BiCS FLASH™ technology, a low-cost, high-capacity 3D flash memory innovation. The award ceremony was held on April 24 in Tokyo. The IEEE Corporate Innovation Award is a globally-recognized honor bestowed upon organizations that have developed innovative technologies, products or services that have made a substantial contribution to the advancement of electrical and electronics engineering. Since its inception in 1985, the award has been presented to leading electronics manufacturers and IT companies worldwide, and Kioxia is proud to be the seventh Japanese c
Suzano Reports Record First-Quarter Revenue9.5.2025 02:12:00 CEST | Press release
Suzano, the world’s largest pulp producer, announces its first quarter results for 2025 (1Q25) with record net revenue of R$11.6 billion, up 22% on the same quarter last year (1Q24). The result was driven by the exchange rates, increased pulp sales volumes from the new Ribas do Rio Pardo mill, higher paper volume and prices and the positive contribution from our paperboard mills recently acquired in the U.S. The record revenues occurred despite a series of planned downtimes in the quarter, including production lines of the Três Lagoas Unit, Mucuri Unit, and Aracruz Unit, and the Ribas do Rio Pardo Unit’s first scheduled maintenance downtime. Sales exceeded 3 million tonnes in the quarter, a rise of 12% compared to 1Q24, comprising 2.7 million tonnes of pulp and 390 thousand tonnes of paper, up 10% and 25%, respectively, on the same quarter last year. Adjusted EBITDA totaled R$4.9 billion, a 7% increase over 1Q24. Operating cash generation totaled R$2.6 billion, rising 5% on 1Q24. Net p
Andersen Consulting udvider platformen i Asien og Stillehavsområdet med tilføjelsen af Sertis8.5.2025 23:13:00 CEST | Pressemeddelelse
Andersen Consulting udvider sin dækning i Thailand og Indonesien med sin nyeste medlemsvirksomhed, Sertis, et førende konsulentfirma, der leverer datadrevne AI-løsninger til virksomheder i og uden for Sydøstasien. Dette strategiske skridt styrker Andersen Consultings tilstedeværelse i regionen og styrker organisationens kompetencer inden for AI-området. Sertis blev grundlagt i 2014 af Tee Vachiramon og har specialiseret sig i konsulenttjenester inden for AI og teknologitransformation, herunder udvikling af AI-strategi, tilpassede AI-løsninger, dataanalyse og digital omstilling. Firmaet arbejder med kunder i forskellige sektorer, herunder finans, detailhandel, energi, sundhedspleje og produktion, og sætter dem i stand til at optimere driften, træffe bedre beslutninger og forbedre kundeoplevelsen. "At blive medlem af Andersen Consulting er en milepæl for vores firma, da det giver os mulighed for at trække på en enestående platform med brancheførende løsninger til vores kunder," siger Tee
GC Aesthetics® Strengthens Board of Directors with Strategic Appointments8.5.2025 17:10:00 CEST | Press release
GC Aesthetics® (GCA), a privately-held medical technology company providing aesthetic and reconstruction solutions for global healthcare markets is pleased to announce the appointment of Mr. Luigi Ferrari as Chairman of the Board (non-executive) and Mr. Patrick Lee as Board Director, reinforcing the company’s strategic direction and long-term growth plans. These appointments follow the renewed phase of partnership initiated in early 2024 with Hayfin Capital Management, a longstanding investor in GCA. This collaboration has brought fresh momentum to the company’s commitment to innovation, safety, and global expansion in aesthetic and reconstructive breast surgery. Luigi Ferrari, a seasoned executive and investor with a proven track record in the healthcare sector, brings deep leadership experience, commercial growth expertise and industry insight. From 2012 to 2022 he was CEO of Lima Corporate, a global medical device company in the joint replacement market, acquired then by Enovis Corp
PPG to invest $380 million to buildnew U.S. manufacturing facility in Shelby, N.C. for aerospace coatings and sealants8.5.2025 16:30:00 CEST | Press release
PPG (NYSE: PPG) today announced that it will invest $380 million to build a new aerospace coatings and sealants manufacturing facility in Shelby, N.C. Construction on the 62-acre site, which will initially include manufacturing and warehousing units, is set to commence in October 2025 and is expected to be completed in the first half of 2027. The 198,000-square-foot facility will enable the company to continue meeting the growing demands of the aerospace industry. It will employ more than 110 people and produce the full line of PPG’s aerospace coatings and sealants. The additional capacity of this new plant, combined with nearby transport links that improve supply chain and shipping logistics, will help improve service levels for customers. “PPG’s investment in this new manufacturing facility demonstrates the significant demand growth for our world-class technologies and our continued commitment to serving our aerospace customers,” said Tim Knavish, PPG chairman and chief executive off
In our pressroom you can read all our latest releases, find our press contacts, images, documents and other relevant information about us.
Visit our pressroom