
Facebook
Twitter
LinkedIn
Rise in accessible AI tools significantly lowered the barrier to entry for cyber attackers, enabling them to create and deploy malicious bots at scale.
For the first time in a decade, automated traffic surpassed human activity, accounting for 51% of all web traffic.
API-directed attacks surged to 44% of advanced bot traffic, with the travel sector topping the list for bot attacks overall.
Thales, the leading global technology and security provider, today announced the release of the 2025 Imperva Bad Bot Report, a global analysis of automated bot traffic across the internet. This year's report, the 12th annual research study, reveals that generative artificial intelligence (AI) is revolutionizing the development of bots, allowing less sophisticated actors to launch a higher volume of bot attacks with increased frequency. Today's attackers are also leveraging AI to scrutinize their unsuccessful attempts and refine techniques to evade security measures with heightened efficiency, amidst a growing Bots-As-A-Service (BaaS) ecosystem of commercialized bot services.
Automated bot traffic surpassed human-generated traffic for the first time in a decade, constituting 51% of all web traffic in 2024. This shift is largely attributed to the rise of AI and Large Language Models (LLMs), which have simplified the creation and scaling of bots for malicious purposes. As AI tools become more accessible, cyber criminals are increasingly leveraging these technologies to create and deploy malicious bots which now account for 37% of all internet traffic - a significant increase from 32% in 2023. This is the sixth consecutive year of growth in bad bot activity, posing security challenges for organizations striving to safeguard their digital assets.
Both the Travel and the Retail sectors face an advanced bot problem, with bad bots making up 41% and 59% of their traffic respectively. In 2024, the travel industry became the most attacked sector, accounting for 27% of all bot attacks, up from 21% in 2023. The most notable shift in 2024 is the decline in advanced bot attacks targeting the travel industry (41%, down from 61% in 2023) and the sharp increase in simple bot attacks (52%, up from 34%). This shift indicates that AI-powered automation tools have lowered the barriers to entry for attackers, allowing less sophisticated actors to initiate more basic bot attacks. Rather than relying exclusively on sophisticated techniques, cybercriminals are increasingly utilizing high volumes of simpler bots to inundate travel sites, resulting in more frequent and widespread attacks.
The Rise of AI-Driven Bots: A New Era of Cybersecurity Challenges
The emergence of advanced AI tools, including ChatGPT, ByteSpider Bot, ClaudeBot, Google Gemini, Perplexity AI, and Cohere AI, are transforming not just user interactions but also the methods by which attackers execute cyber threats. According to the Imperva Threat Research team, widely used AI tools are being leveraged for cyberattacks, with ByteSpider Bot alone responsible for 54% of all AI-enabled attacks. Other significant contributors include AppleBot at 26%, ClaudeBot at 13%, and ChatGPT User Bot at 6%.
The surge in AI-driven bot creation has serious implications for businesses worldwide, said Tim Chang, General Manager of Application Security, Thales Cybersecurity Products. As automated traffic accounts for more than half of all web activity, organizations face heightened risks from bad bots, which are becoming more prolific every day.
As attackers become more adept at utilizing AI, they can execute a variety of cyber threats-ranging from DDoS attacks to custom rules exploitation and API violations. While bot-driven attacks have become increasingly sophisticated, they pose significant challenges for detection efforts.
This year's report sheds light on the evolving tactics and techniques utilized by bot attackers. What were once deemed advanced evasion methods have now become standard practice for many malicious bots, Chang said. In this rapidly changing environment, businesses must evolve their strategies. Its crucial to adopt an adaptive and proactive approach, leveraging sophisticated bot detection tools and comprehensive cybersecurity management solutions to build a resilient defense against the ever-shifting landscape of bot-related threats.
Bad Bots Targeting API Business Logic Pose Increased Threat to Modern Enterprises
Recent findings from the Imperva Threat Research team reveal a significant surge in API-directed attacks, with 44% of advanced bot traffic targeting APIs. These attacks arent just limited to overwhelming API endpoints; rather, they target the intricate business logic that defines how APIs operate. Attackers deploy bots specifically designed to exploit vulnerabilities in API workflows, engaging in automated payment fraud, account hijacking, and data exfiltration.
Analysis in the report reveals a deliberate strategy by cyber attackers to exploit API endpoints that manage sensitive and high-value data. Implications of this trend are especially impactful for industries that rely on APIs for their critical operations and transactions. Financial services, healthcare, and e-commerce sectors are bearing the brunt of these sophisticated bot attacks, making them prime targets for malicious actors seeking to breach sensitive information.
APIs serve as the backbone of modern applications, enabling connectivity across services, streamlining operations, and delivering personalized customer experiences at scale. They underpin essential functions such as payment processing, supply chain management, and AI-driven analytics, making them indispensable for enhancing efficiency, accelerating product development, and unlocking new revenue streams.
The business logic inherent to APIs is powerful, but it also
Europe Stories
04/09/2025
Monumental Sports & Entertainment (MSE), in collaboration with Dalet, has been a...
08/05/2025
As expected, continued weak demand from key sales markets and declining economic...
08/05/2025
A new three-part series is coming to BBC iPlayer and BBC One
(Image: The Christie Archive Trust)
The BBC has announced Agatha Christie's Endless Night, a...
08/05/2025
08 May 2025
VEON Shareholders Re-elect Board at 2025 AGM, Founder Augie Fabela ...
08/05/2025
Comedy and entertainment channel U&Dave bring back their #1 ranked programme of ...
08/05/2025
Expect even more chaos this July with Harriet Webb leading the returning cast, p...
08/05/2025
TenneT relies on Arvato Systems for market communication
Energy industry: Impressive market communication know-how and system integration expertise
G tersloh...
08/05/2025
When Taiki Hamamoto, 22, came across a Hanafuda deck at his local game shop, he was intrigued. He had grown up playing the traditional Japanese card game with f...
08/05/2025
The Liveline is now open , said Joe Duffy earlier today, as he previewed this af...
08/05/2025
RT , in association with the BBC, Screen Ireland and Cineflix Rights has reveale...
07/05/2025
Discovering music should feel effortless and fun. That's why Spotify continu...
07/05/2025
FOX Doubles Down on the Laughs Renewing Comedies Animal Control, Starring Joel M...
07/05/2025
07 May 2025
VEON's QazCode Signs MoU with Seekr to Develop AI-Powered Solut...
07/05/2025
UKTV has ordered a feature length documentary celebrating the life of Britain...
07/05/2025
Wednesday 7 May 2025
Shaun the Sheep fans are in for a baaaarilliant treat in 2...
07/05/2025
Rohde & Schwarz to highlight innovative broadcast technologies at CABSAT 2025 Rohde & Schwarz will showcase its latest energy-efficient transmitters and 5G Br...
07/05/2025
The Importance of Workflow Efficiencies in Post-Production Wednesday, 14 May
14:40
FilmLight sits down with Sam Lempp, head of business development for Nara, ...
07/05/2025
RT News is pleased to announce the appointment of RT journalist, Fergal O'Brien, as its new Business Correspondent.
In his new role, Fergal will be repor...
06/05/2025
In Colombia, music isn't just background noise-it's center stage. It'...
06/05/2025
En Colombia, la m sica no suena de fondo: es el centro del escenario. Es el cora...
06/05/2025
At Spotify, we always seek ways to connect users with their next favorite podcas...
06/05/2025
Since Spotify's 2019 launch in India, the growth of the country's local ...
06/05/2025
eds3_5_jq(document).ready(function($) { $(#eds_sliderM519).chameleonSlider_2_1({...
06/05/2025
Comscore Reports First Quarter 2025 ResultsRESTON, Va., May 6, 2025 Comscore, Inc. (Nasdaq: SCOR), a trusted partner for planning, transacting and evaluating ...
06/05/2025
Live from Studio 1 at 7pm, Tuesday May 6
Iconic trad-fusion group K LA will be ...
06/05/2025
Rohde & Schwarz hosts RF Testing Innovations Forum 2025, helping design engineer...
06/05/2025
LONDON, UK, May 6, 2025 /PRNewswire/ -- Today at the company s annual THINK event, IBM (NYSE: IBM) is unveiling new hybrid technologies that break down the long...
06/05/2025
Apple today introduced Tap to Pay on iPhone in Bulgaria, Finland, Hungary, Liechtenstein, Poland, Portugal, Slovakia, Slovenia, and Switzerland, enabling millio...
06/05/2025
Ahead of Pride Month, Apple is introducing a new Apple Watch Pride Edition Sport Band, watch face, and iPhone and iPad wallpaper to celebrate the strength and b...
06/05/2025
First episode airs this Friday at 8pm on RT One and RT Player with Doireann N Ghlac in presenting
Guests include Barry Murphy, Brooke Scullion, Bryan Dobso...
05/05/2025
As Europe gears up for the Eurovision Song Contest 2025, Spotify is celebrating the spirit of unity and musical legacy with a new series of Spotify Singles. Fiv...
05/05/2025
As part of the restructuring of its loss-making Carbon Fibers business unit, SGL Carbon has decided to close its production site in Lavradio (Portugal). Lavradi...
05/05/2025
Comscore Launches Certified Deal IDs in Magnite's SSP, Bringing Trusted Cont...
02/05/2025
Updated May 2: In a victory for consumers, artists, creators, and authors, Apple...
02/05/2025
Since 2022, Spotify and FC Barcelona have brought the worlds of music and footba...
02/05/2025
With more than 678 million users worldwide tuned in to Spotify, we're at the heart of music and culture. Our unrivaled global community of artists, songwrit...
02/05/2025
Data Communications Company has announced its partnership with IBM to modernise ...
02/05/2025
Comscore at the 20th Annual Needham Technology, Media, & Consumer Conference RESTON, Va., May 2 2025: Comscore (Nasdaq: SCOR), a trusted partner for planning, t...
02/05/2025
02 May 2025
VEON to release 1Q25 trading update on May 15, 2025 Dubai, May 2, 2025 - VEON Ltd. (NASDAQ: VEON), a global digital operator, today confirms that t...
02/05/2025
CUPERTINO, CALIFORNIA Apple today announced financial results for its fiscal 2025 second quarter ended March 29, 2025. The Company posted quarterly revenue of $...
02/05/2025
Well-known faces pushed to their limits in Uncharted with Ray Goggins...
01/05/2025
As Tanzania approaches a pivotal election year marked by both promise and concern over the impact of artificial intelligence (AI) on media, more than 300 journa...
01/05/2025
After four years of lectures, study sessions, exams, and parties, college senior...
01/05/2025
Prochazka knows the power of relationships, so it has always been important to him that ATEC Pro be renowned for more than just supplying great equipment. Becom...
01/05/2025
Munster and Connacht Football Finals onThe Sunday Game Live
Final two days of t...
01/05/2025
Voice actor and producer Mark Yoshimoto Nemcoff shares his first impressions of the DPA 2017 Shotgun Microphone, from real-world auditions to side-by-side compa...
01/05/2025
With my previous console, Freeman recalls, I always had to run a Waves server for EQ and compression, but when I switched to DiGiCo, I found it was such an op...
01/05/2025
Stream all episodes ofLook Who's Hangry from April 29
An RT Player Original in partnership with Heinz...
01/05/2025
Here is your host, Patrick Kielty!
T naiste, Minister for Foreign Affairs and T...