Skip to main content

Cybersecurity statistics

54% of attacks observed related to security misconfigurations (API8), while 27% related to broken object-level authorization (API1). In contrast, vulnerabilities such as broken user authentication (API2) and security monitoring and logging failures (API7) only relate to 1% of attacks.

PublisherSalt Security
ReportAPI Security Trends 2025
Published1 February 2025

Published by Salt Security in API Security Trends 2025 , 1 February 2025. The figure is taken from the report as published; the full methodology is in the source.

View the original report

Related statistics

90% of security leaders have active concerns about security risks introduced by AI-generated code.
Salt Security, 06/06/2026
38% of organizations still rely primarily on manual review for AI-generated code.
Salt Security, 06/06/2026
15% of security leaders cite misalignment with internal security policies as a major concern with AI-generated code.
Salt Security, 06/06/2026
29% of security leaders identify insecure coding patterns as the leading risk introduced by AI coding assistants.
Salt Security, 06/06/2026
67% of organizations report that AI coding assistants are now widely adopted across development teams.
Salt Security, 06/06/2026
66% of organizations report API growth of more than 50% in the past year
Salt Security, 27/05/2026

Get the newsletter

Weekly cybersecurity statistics by email.