Skip to main content
HomeTopicsAPI

API

We've curated 260 cybersecurity statistics about API to help you understand how vulnerabilities in application programming interfaces are being exploited and secured in 2025. Discover the trends and best practices shaping this crucial technology landscape!

Showing 21-40 of 260 results

2% of respondents identified 'Other' as their biggest concern about their company’s overall API program.

Salt Security10/8/2025

15% of organizations were not very confident in their ability to detect and respond to attacks leveraging Generative AI.

Salt Security10/8/2025
GenAI

80% of security leaders lack continuous, real-time API monitoring.

Salt Security10/8/2025
API monitoring

96% of attack attempts originate from authenticated entities (compromised users, insiders, or rogue agents).

Salt Security10/8/2025

98% of attack attempts target external-facing APIs.

Salt Security10/8/2025

10% of dominant attack vectors map to OWASP API1 Broken Object Level Authorization (BOLA).

Salt Security10/8/2025
OWASP

78% of dominant attack vectors map to OWASP API8 Security Misconfiguration.

Salt Security10/8/2025
OWASP

28% of organizations identify partner enablement as a main driver behind the use of APIs.

Salt Security10/8/2025

48% of organizations identify platform or system integrations as a main driver behind the use of APIs.

Salt Security10/8/2025

25% of organizations identify monetization of functionality or data as a main driver behind the use of APIs.

Salt Security10/8/2025

A small but notable 6% of organizations indicated their API volume more than tripled (301%+) in just 12 months.

Salt Security10/8/2025

41% of organizations cited vulnerabilities as the most common API security problem.

Salt Security10/8/2025
Vulnerabilities

6% of organizations do not know by how much the number of APIs has increased over the past 12 months.

Salt Security10/8/2025

34% of organizations reported sensitive data exposure and privacy incidents as the most common API security problem.

Salt Security10/8/2025
Data exposure

18% of organizations cited brute forcing or credential stuffing as the most common API security problem.

Salt Security10/8/2025
Brute froceCredential stuffing

13% of organizations cited enumeration and scraping as the most common API security problem.

Salt Security10/8/2025
EnumerationScraping

9% of organizations have no formal API security strategy in place.

Salt Security10/8/2025

31% of organizations adhere to GDPR for API development and deployment.

Salt Security10/8/2025
GDPR

3% of organizations do not know if Generative AI is perceived as a growing API security concern/risk within their organization.

Salt Security10/8/2025
GenAI

49% of developers are concerned about AI systems accessing sensitive data they shouldn't see.

Postman10/8/2025
AI