Skip to main content

Cybersecurity statistics / API Attacks

99% of API attack attempts originate from authenticated sources

PublisherSalt Security
ReportThe State of AI and API Security: Navigating the Agentic Era
Published8 April 2026
TopicsAPI Attacks, Authentication Abuse, API Security

Published by Salt Security in The State of AI and API Security: Navigating the Agentic Era, 8 April 2026. The figure is taken from the report as published; the full methodology is in the source.

View the original report

Compare this across sources

3 sources answer what share of organisations have deployed multi-factor authentication. They report between 40% and 66%, with a median of 60%.

See all 3 sources

Related statistics

18% of boards and executive teams are extremely confident in their ability to detect API attacks leveraging Generative AI
Salt Security, 27/05/2026
87% of surveyed organizations reported experiencing an API-related security incident in 2025.
2026 SOTI Security report Convergence crisis: AI attacks move from web apps to APIs to DDoS, 27/05/2026
The average number of daily API attacks rose 113% year over year.
2026 SOTI Security report Convergence crisis: AI attacks move from web apps to APIs to DDoS, 27/05/2026
API attacks increased by 41% due to the rise of agentic AI relying heavily on APIs.
Palo Alto Networks, 01/01/2026
31% of security and IT leaders identify agentic/API logic failures as security incidents tied to AI systems.
ExtraHop, 28/06/2026
More than 1 in 7 organizations expose API documentation to the internet.
Intruder, 27/05/2026

Get the newsletter

Weekly cybersecurity statistics by email.