Report by Salt Security

The State of AI and API Security: Navigating the Agentic Era

11 FINDINGSPublished Apr 8, 2026
View Original Report →

Key Findings

66% of organizations report API growth of more than 50% in the past year

API UsageAPI Growth

24% of organizations have a fully automated API inventory

API InventoryAPI Security

32% of organizations experienced an API security incident in the past year

API SecurityAPI Security Incidents

Nearly 90% of organizations are already using or planning to use GenAI in API development

Gen AIAPI Development

18% of boards and executive teams are extremely confident in their ability to detect API attacks leveraging Generative AI

Gen AIAPI AttacksAPI Attack Detection

65% of API attacks exploit Security Misconfiguration (OWASP API8)

Security MisconfigurationOWASP API8API Security

79% of boards and executive teams have increased scrutiny of AI security risks

Board OversightAI Security Risks

8% of organizations report advanced API security maturity

API Security MaturityAPI Security

92% of organizations lack the advanced security maturity required to defend agentic AI environments

Security MaturityAI AgentsAPI Security

99% of API attack attempts originate from authenticated sources

API AttacksAuthentication AbuseAPI Security

47% of organizations have delayed production releases due to API security concerns

API Security