Report by Wallarm

AI Security Is API Security

8 FINDINGSPublished Jan 1, 2025
View Original Report →

Key Findings

In 2024, there was an average of three monthly API-related breach incidents—and, at times, as many as five to seven breaches each month.

WallarmAI Security Is API Security·Jan 1, 2025

Wallarm's researchers tracked 439 AI-related CVEs, a 1,025% increase from the prior year. Nearly all (99%) were directly tied to APIs.

WallarmAI Security Is API Security·Jan 1, 2025

Legacy APIs in web applications represent over 18% of exploited vulnerabilities.

WallarmAI Security Is API Security·Jan 1, 2025

57% of AI-powered APIs were externally accessible, and 89% relied on insecure authentication mechanisms.

WallarmAI Security Is API Security·Jan 1, 2025

Over 53% of enterprise leaders surveyed reported engaging in multiple AI deployments.

WallarmAI Security Is API Security·Jan 1, 2025

More than 50% of all recorded CISA exploited vulnerabilities were API-related for the first time, a 30% increase from the year before.

WallarmAI Security Is API Security·Jan 1, 2025

Only 11% of AI-powered APIs had robust security measures in place, leaving most endpoints vulnerable.

WallarmAI Security Is API Security·Jan 1, 2025

Modern APIs represent over 33% of exploited vulnerabilities in CISA KEV.

WallarmAI Security Is API Security·Jan 1, 2025