Traceable Releases 2025 State of API Security Report: API Breaches Persist as Fraud, Bot Attacks, and Generative AI Increase Risks
Traceable AI, the industry's leading API security company, today released its second annual research report—the 2025 Global State of API Security. The findings demonstrate that organizations are failing to protect their APIs despite persistent breaches and increased awareness of security risks. This comprehensive study, incorporating insights from over 1,500 IT and cybersecurity experts across the US, UK, and EMEA, reveals fundamental weaknesses in API security strategies and tracks how these issues have shifted since our inaugural report.
Key findings examine the most pressing API security issues organizations face today: increasing bot attacks and fraud, risks from third-party APIs, and the new security implications of generative AI applications.
Download the full report for in-depth analysis.
Key Findings Include:
- API-Related Data Breaches Continue to Wreak Havoc: 57% of organizations suffered an API-related data breach in the past two years, with a staggering 73% of these experiencing three or more incidents. Even more concerning, 41% endured five or more breaches, revealing a systemic failure in API defenses and a clear need for investment in purpose-built API security solutions.
- Traditional Security Solutions Fail to Deliver API Protection: Despite deploying an array of security tools—from legacy WAFs to CDNs and Gateways—only 19% of organizations rate their defenses as highly effective. Moreover, 53% admit that traditional solutions like WAFs and WAAPs are ineffective at identifying or preventing fraud at the API layer.
- Generative AI Applications Create New Risks: 65% of organizations state that generative AI applications pose a serious to extreme risk to APIs. 60% state that the additional API integrations required for generative AI applications expand their organization’s attack surface; the same percentage cite concerns about sensitive data exposure and unauthorized access.
- Bot Attacks and Fraud are Rampant: 53% of organizations have experienced one or more bot attacks involving their APIs, and 44% say that bot mitigation is a top challenge. Fraud is equally concerning, emerging as the second most prevalent cause of API-related data breaches among survey respondents.
- Third-Party APIs Are a Hidden Danger: Organizations now use an average of 131 third-party APIs, up slightly from last year's 127. Yet, only 16% have a “high ability” to mitigate these external risks, leaving a vast attack surface greatly exposed.
"API breaches are rampant, and the industry is in denial,” said Richard Bird, Chief Security Officer of Traceable. “Organizations keep deploying the same solutions—Web Application Firewalls, API gateways, and lifecycle tools—yet only a small percentage report any real success. This cognitive dissonance is a ticking time bomb. The truth is, these traditional defenses are failing, and the more companies rely on them, the more they expose themselves to devastating attacks. We’re also seeing a surge in bot attacks, increasing instances of API fraud, and new vulnerabilities emerging from the rapid adoption of generative AI applications. Companies must confront the uncomfortable truth: their current strategies are inadequate. Without a fundamental shift in how they secure APIs, breaches and their consequences will continue to escalate.”
Traceable conducts this annual research to provide organizations with an objective assessment of API security risks and trends. By tracking these patterns and emerging threats, we aim to offer security leaders the knowledge needed to make informed decisions and prioritize the most important security challenges. Our commitment is to ensure that as APIs continue to be central to business operations, organizations have the insights they need to protect their critical assets.
Download the full 2025 State of API Security report today.
About Traceable
Traceable’s intelligent and context-aware solution powers complete API security, API discovery and posture management, API security testing, attack detection and threat hunting, and attack protection anywhere your APIs live. Traceable enables organizations to minimize risk and maximize the value that APIs bring their customers. To learn more about how API security can help your business, book a demo with a security expert.
View source version on businesswire.com: https://www.businesswire.com/news/home/20241030645718/en/
Contacts
Ryan Romana
Touchdown PR
traceable@touchdownpr.com
About Business Wire
For more than 50 years, Business Wire has been the global leader in press release distribution and regulatory disclosure.
www.businesswire.com

Subscribe to releases from Business Wire
Subscribe to all the latest releases from Business Wire by registering your e-mail address below. You can unsubscribe at any time.
Latest releases from Business Wire
Cooler Master Launches FreeForm 2.0, Reinventing Customization for a New Generation20.5.2025 01:12:00 EEST | Press release
Cooler Master, a global leader in innovative thermal solutions and PC hardware, today announced FreeForm 2.0, a comprehensive design initiative built upon the company's legacy of personalization, modularity, and innovation. Inspired by Cooler Master's iconic "Make It Yours" heritage, FreeForm 2.0 emphasizes customization and adaptability across its range of products, empowering people to build systems that reflect their personal style. Custom. Open. Personal. These words define the future of how Cooler Master is designing products—and how users can expect to interact with them. "At Cooler Master, we believe technology should reflect the user, not the other way around," said Jimmy Sha, CEO of Cooler Master. "FreeForm 2.0 embodies this belief, giving our community the tools to customize, adapt, and reimagine their tech like never before." Customization Wherever Possible FreeForm 2.0 is more than a product series—it's an evolving ecosystem. The initiative spans multiple Cooler Master prod
Cooler Master Unveils the Future of Cooling During Computex 202520.5.2025 01:10:00 EEST | Press release
Cooler Master, a global leader in innovative thermal solutions and PC hardware, today announced its plans for its “One Cooler Master — Where Cooling Drives the Future” showcase at its headquarters during Computex. By pairing its vertically integrated enterprise arm with its consumer division, the company is demonstrating how innovations perfected for business quickly translate into more powerful, and more customizable hardware for consumer use. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20250519802170/en/ One Cooler Master — Where Cooling Drives the Future “Our structure allows ideas to flow in both directions — from the most demanding servers to the most expressive desktop rigs,” said Jimmy Sha, CEO of Cooler Master. “Everything on display at our headquarters began as a problem we solved for an enterprise partner or a creator. ‘One Cooler Master’ is about turning those lessons into products for everyone.” Visitors to Cool
Loomis Sayles Announces Changes to Disciplined Alpha Team19.5.2025 22:19:00 EEST | Press release
Loomis, Sayles & Company, the global investment manager with nearly $390 billion in assets under management as of 31 March 2025, has announced that Lynne Royer, co-head and portfolio manager of the Disciplined Alpha Team, will retire at the end of 2025 following a remarkable investment career spanning four decades. Additionally, longtime portfolio manager Brad Stevens, CFA, has been promoted to co-head of the team alongside Lynne and Seth Timen, who has co-led the team since 2021. Known for an intense focus on relative value investing and a proprietary risk-adjusted framework for making security selection decisions, the Disciplined Alpha Team manages over $22 billion in assets as of 31 March 2025. Lynne will step down from her portfolio management and team co-head roles in October 2025 and will serve as senior advisor to the team through the end of December. Brad and Seth will work closely together on the oversight of Disciplined Alpha portfolios, as well as management of the team, lev
Ruler Attends Signing of MoU Between Ras Al Khaimah and Miami to Enhance Cooperation Across Sectors19.5.2025 16:50:00 EEST | Press release
His Highness Sheikh Saud bin Saqr Al Qasimi, UAE Supreme Council Member and Ruler of Ras Al Khaimah, today witnessed the signing of a Memorandum of Understanding (MoU) between Ras Al Khaimah and Miami, Florida, with a view to strengthening and promoting exchange and cooperation across a number of sectors of mutual interest. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20250519654773/en/ Ras Al Khaimah Ruler attends signing of MoU between Ras Al Khaimah and Miami to enhance cooperation across sectors (Photo: AETOSWire) The agreement was signed by Senior Advisor to HH Sheikh Saud, His Excellency Mohammed Hassan Omran Alshamsi, and the Mayor of Miami, Francis Suarez. HH Sheikh Saud said: “This agreement marks the beginning of a new era of collaboration for Ras Al Khaimah and Miami, though it is a continuation of the long-standing friendship and strategic partnership between the United Arab Emirates and the United States. By enc
Media Release: Allianz Celebrates “Unsung Heroes of Sport” who Bridge Social Divides to Create Connection19.5.2025 15:46:00 EEST | Press release
The role of sports in our society extends beyond just physical activity or competition. Sport teams foster social cohesion by bringing together people from a wide range of backgrounds around a shared passion. Allianz is proud to celebrate the unifying power of sport with the Unity Awards. This initiative shines a light on the everyday champions who use sport to shape values, build character and bridge social and cultural divides. Allianz invites local sports clubs, trainers, teammates or parents to share their personal “unity through sport” story in a video by the end of June. The winners will receive public recognition and financial support to strengthen their community-building efforts. A recent study by Allianz and the International Olympic Committee (IOC), which surveyed 5,000 people aged 12 to 24 years, and 2,000 parents of 12- to 18-year-olds across 10 countries, showed that sport can provide a vital sense of belonging, joy, and hope. A total of 77% said sports help them to make
In our pressroom you can read all our latest releases, find our press contacts, images, documents and other relevant information about us.
Visit our pressroom