Sony Pixel Power calrec Sony

Vulnerable APIs and Bot Attacks Costing Businesses up to $186 Billion Annually

18/09/2024

Facebook

Twitter

LinkedIn

API insecurity and automated abuse by bots responsible for up to 11.8% of cyber events and losses globally

Bot-related security incident count rose 88% in 2022 and 28% in 2023

Insecure APIs result in up to $12 billion more in losses than they did in 2021

@Thales Imperva, a Thales company, the cybersecurity leader that protects critical applications, APIs, and data, anywhere at scale, releases the Economic Impact of API and Bot Attacks report. The analysis of more than 161,000 unique cybersecurity incidents and investigates the rising global costs of vulnerable or insecure APIs and automated abuse by bots, two security threats that are increasingly interconnected and prevalent. The report estimates that API insecurity and bot attacks result in up to $186[1] billion for businesses around the world.

The report is based on a study conducted by the Marsh McLennan Cyber Risk Intelligence Center which found that larger organizations were statistically more likely to have a higher percentage of security incidents that involved both insecure APIs and bot attacks. Enterprises with revenues of more than $1 billion were 2-3x more likely to experience automated API abuse by bots than small or mid-size businesses. The study suggests that large companies are particularly vulnerable to security risks associated with automated API abuse by bots because of complex and widespread API ecosystems that often contain exposed or insecure APIs.

Enterprises rely heavily on APIs to enable seamless communication between diverse applications and services. Data from Imperva Threat Research finds that the average enterprise managed 613 API endpoints in production last year. That number is growing rapidly as businesses face mounting pressure to deliver digital services with greater agility and efficiency.

Due to this increased reliance and their direct access to sensitive data, APIs have become attractive targets for bot operators. In 2023, automated threats accounted for 30% of all API attacks, according to data from Imperva Threat Research. Today, automated API abuse by bots costs organizations up to $17.9 billion of losses annually. As the number of APIs in production multiplies, cybercriminals will increasingly use automated bots to find and exploit API business logic, circumvent security measures, and exfiltrate sensitive data.



It's imperative that businesses across the world address the security risks posed by insecure APIs and bot attacks, or they face a substantial economic burden, says Nanhi Singh, General Manager of Application Security at Imperva, a Thales company. The interconnected nature of these threats necessitates that companies take a holistic approach, integrating comprehensive security strategies for both bot and API attacks.

Some of the key trends identified in the report include:

Increased API adoption and usage is growing the attack surface: The rapid adoption of APIs, inexperience of many API developers, and lack of collaboration between security and development teams has led insecure APIs to now result in up to $87 billion of losses annually, a $12 billion increase from 2021.



Bots negatively impact organizations' bottom line: The widespread availability of attack tools and generative AI models has enhanced bot evasion techniques and enabled even low-skilled attackers to launch sophisticated bot attacks. Up to $116 billion of losses annually can be attributed to automated attacks by bots.



API and bot-related security incidents are becoming more frequent: In 2022, API-related security incidents rose by 40%, and bot-related security incidents spiked by 88%. These increases were fueled by a rise in digital transactions, the expanding use of APIs, and geopolitical tensions like the Russia-Ukraine conflict. In the following year 2023, as digital traffic began to stabilize and the pandemic-driven surge in internet activity subsided, the frequency of these incidents moderated. API-related security incidents grew by 9%, while bot-related security incidents jumped by 28%. The overall upward trend in attacks highlights the growing persistence and frequency of these threats.



Insecure APIs and bot attacks pose a significant threat to large enterprises: Companies with revenue of at least $100 billion are most likely to suffer security incidents related to insecure APIs or bot attacks. These threats constitute up to 26% of all security incidents experienced by such businesses.



Countries around the globe are vulnerable to API and bot attacks: Brazil experienced the highest percentage of events related to insecure APIs or bot attacks, with the threats accounting for up to 32% of all observed security incidents. This was closely followed by France (up to 28%), Japan (up to 28%), and India (up to 26%). While the percentage of events attributed to API and bot-related security incidents was lower in the United States, 66% of all reported events related to vulnerable APIs or automated abuse by bots occurred within the country.

Reliance on APIs will continue to grow exponentially, driving connections to generative AI applications and large language models, adds Singh. At the same time, generative AI will also empower cybercriminals to create sophisticated bots at an accelerated and alarming rate. As API ecosystems expand and bots become more advanced, organizations should anticipate a significant rise in the economic impact of automated API abuse by bots unless proactive measures are taken.



Additional Information:

Download a copy of the The Economic Impact of API and Bot Attacks report for additional insights on the business impact of API and bot-related security incidents.

See how Imperva Advanced Bot Protection and API Security can protect websites, applications, and APIs from automated attacks and without affecting the flo
LINK: https://www.thalesgroup.com/en/worldwide/defence-and-security/press_re...
See more stories from thales

Europe Stories

05/01/2027

Worlds first 802.15.4ab-UWB chip verified by Calterah and Rohde & Schwarz to be demoed at CES 2026

Worlds first 802.15.4ab-UWB chip verified by Calterah and Rohde & Schwarz to be ...

04/08/2026

Dalet Announces Commercial Availability of Dalia, Bringing Media-Aware Agentic AI to Enterprise Productions

Dalet, a leading technology and service provider for media-rich organizations, t...

04/07/2026

Detective Conan: Fallen Angel of the Highway Opens in Dolby Cinemas Across Japan, Presented in Dolby Atmos and Dolby ...

April 7 2026, 19:00 (PDT) Detective Conan: Fallen Angel of the Highway Opens in...

01/06/2026

Dolby Sets the New Standard for Premium Entertainment at CES 2026

January 6 2026, 05:30 (PST) Dolby Sets the New Standard for Premium Entertainment at CES 2026 Throughout the week, Dolby brings to life the latest innovatio...

02/05/2026

Dalet Flex LTS Delivers Smarter Search, Faster Editing, and an AI-Ready Foundation for Modern Media

Dalet, a leading technology and service provider for media-rich organizations, t...

01/05/2026

NBCUniversal's Peacock to Be First Streamer to Integrate Dolby's Full Suite of Premium Picture and Sound Innovations

January 5 2026, 18:30 (PST) NBCUniversal's Peacock to Be First Streamer to ...

25/04/2026

Spotify and Vogue Celebrate Music and Culture in Mexico City

In the heart of Mexico City, music, culture, and fashion converged last night as Spotify and Vogue Latin America welcomed guests to an intimate gathering at Soh...

25/04/2026

Brainworx introduce bx_tonebox

New modular multi-effects plug-in revealed The latest plug-in from Brainworx delivers a modular set of effects designed to offer a convenient alternative to...

24/04/2026

Audiobooks About Climate, Conservation, and the Stories They Inspire

Earth Day is a chance to reflect on our connection to the natural world. To mark the 57th Earth Day on April 22, Spotify's editors have pulled together a co...

24/04/2026

From Page to Stage: Spotify Celebrates Storytelling at the LA Times Festival of Books

This past weekend, Spotify was at the heart of the largest literary event in the...

24/04/2026

What 20 Years of Spotify Data Reveals About Our Listeners

All data tells a story, and in our case, that story is written by you. To celebrate 20 years of Spotify, we're sharing bite sized moments that capture how t...

24/04/2026

The Look Behind the Sound

Over the past 20 years, Spotify's look and feel has evolved with the way people use our platform, while ensuring we preserve an intuitive, personal, and fam...

24/04/2026

Spotify at 20: The Most Streamed Music, Podcasts, and Audiobooks of All Time

It's been 20 years since Spotify began, but the real story is what the world chose to play. For the first time, we're unveiling the most streamed artist...

24/04/2026

Spotify Brings Music and Podcast Recommendations to Claude

Whether you're relaxing at home or on the go, Spotify is there across more than 2,000 devices, ready with your favorites or something new to discover. Now, ...

24/04/2026

Nintendo and Spotify Bring Nostalgia with New Super Mario Galaxy' Playlists

Nintendo and Spotify are welcoming fans to the Super Mario Bros. 40th anniversary and the release of The Super Mario Galaxy Movie with new playlists and a speci...

24/04/2026

AES Show moves to Nashville

30 October - 1 November 2026 The Audio Engineering Society (AES) have announced that the AES Show 2026 will be held on Halloween weekend - Friday 30 October...

24/04/2026

Sennheiser introduce the HD 480 Pro

New closed-back design promises honest' low end Sennheiser have just announced the launch of a new pair of flagship closed-back headphones which they s...

24/04/2026

Cre8audio unveil the Programm

Powerful 12-channel hardware sequencer announced Cre8audio are renowned for their innovative, and often visually striking, designs and although their latest...

24/04/2026

IK Multimedia ARC X Immersive arrives

Room correction now supports full 9.1.6 Dolby Atmos setups The software element of IK Multimedia's room-correction system has just received an update th...

24/04/2026

VSL announce free Big Bang Orchestra expansions

New content for BBO Tutti & BBO Riffs VSL have recently introduced some new free content expansions for two of their most popular Big Bang Orchestra Packs: ...

24/04/2026

Rohde & Schwarz to highlight its R&S EVSD1000 UAV-based navigation analyzer at IFIS 2026

Rohde & Schwarz to highlight its R&S EVSD1000 UAV-based navigation analyzer at I...

24/04/2026

Andrea Riseborough & Ashley Walters To Star In ITV Thriller First Woman' About Race To Find Missing Astronaut

ITV's Director of Drama Polly Hill has commissioned six part propulsive, lun...

24/04/2026

AgileTV showcases its TV solutions at NAB Show and wins Best of Show Award

AgileTV presents in Las Vegas its technological proposition to power safer, more scalable and efficient TV ecosystems for telecom operators, ISPs and entertainm...

24/04/2026

Canada's Cgep de Jonquire chooses Brio

Canada's C gep de Jonqui re and Calrec take five with a substantial TV studio upgrade Underscoring its global reputation as one of Canada's most renowne...

24/04/2026

NAB 2026: 5 Reasons to Join Calrec at NAB

Redefining Broadcast Workflows at NAB 2026 with our Most Powerful Hardware, Virtual and Hybrid Audio Lineup Yet We're looking forward to meeting up with you...

24/04/2026

VEON Boosts Accessibility for Investors by Waiving Depositary Service Fees on American Depositary Shares

24 Apr 2026 VEON Boosts Accessibility for Investors by Waiving Depositary Servi...

24/04/2026

All episodes of espionage thriller series Ponies starring Emilia Clarke and Haley Lu Richardson coming to Sky and NOW on 22 May

Friday 24 April 2026 All episodes of espionage thriller series Ponies starring ...

24/04/2026

Dolby Elevates In-Car Entertainment to New Heights at Auto China 2026

April 24 2026, 00:00 (PDT) Dolby Elevates In-Car Entertainment to New Heights at Auto China 2026 More Automakers, More Models: Dolby-enabled Vehicles Drive...

24/04/2026

Dolby Cinema Arrives in Tamil Nadu: Dolby Laboratories and LA Cinema Launch the State's First Dolby Cinema in Trichy

April 24 2026, 06:48 (PDT) Dolby Cinema Arrives in Tamil Nadu: Dolby Laboratori...

23/04/2026

VEON 2025 Integrated Annual Report: Record Digital Growth, Sovereign AI and Kyivstar Listing Define a Transformative Year

23 Apr 2026 VEON 2025 Integrated Annual Report: Record Digital Growth, Sovereig...

23/04/2026

FOX Advertising Launches FOX AdStudio, Unifying Audience Intelligence Across Its Premium Portfolio

FOX Advertising Launches FOX AdStudio, Unifying Audience Intelligence Across Its...

23/04/2026

Dalet Takes Home The Best in Show Award for Dalia at 2026 NAB

Dalet, a leading technology and service provider for media-rich organizations, today announced that Dalia, its agentic AI solution for media & entertainment, ha...

23/04/2026

New RT series Masters: Keepers of Tradition delves into the remarkable world of rare skills and crafts

Six crafts. Six lives. Six reasons to believe that making things by hand still...

23/04/2026

AMATEUR DRAMA TAKES CENTRE STAGE AS THE 2026 RT ALL IRELAND DRAMA FESTIVAL LAUNCHES IN THE ABBEY THEATRE

The festival programme promises a feast of drama, a bumper packed fringe festiva...

22/04/2026

Spotify and WNBA's New York Liberty Bring Basketball and Music Together With New Partnership

Spotify and the New York Liberty are teaming up to give music and basketball fan...

22/04/2026

The story of the Focusrite ISA preamp

New 20-minute documentary explores iconic design The Focusrite Room in Mesa, Arizona, where John Aquilino hosts the Studio Console 005. In 2025, Focusrite co...

22/04/2026

EverSync SP-10 wireless from Cloudvocal

Offers compact wireless solution for pedalboards Taiwanese audio brand Cloudvocal have announced the availability of a new pedalboard-friendly wireless syst...

22/04/2026

Arturia release Augmented Persia

Latest hybrid sampling/synthesis instrument arrives Arturia's Augmented series offerings rely on a mixture of sampling and synthesis, allowing users to ...

22/04/2026

Acustica Audio launch Salt 2

Combines three distinct analogue EQ emulations The latest addition to Acustica Audio's ever-expanding collection of analogue-emulation plug-ins combines...

22/04/2026

Analog Empire: Bass & Lead from Melda Production

Final instalment in vintage-inspired instrument series Analog Empire: Bass & Lead marks the final instalment in Melda Production's vintage hardware-insp...

22/04/2026

Strymon reveal the Canoga

Fuzz pedal joins all-analogue Series A line Given that Strymons reputation was built on unapologetically digital pedals, it was a little surprising to see t...

22/04/2026

VEON's Banglalink to Bring Starlink Mobile to Customers in Bangladesh

22 Apr 2026 VEON's Banglalink to Bring Starlink Mobile to Customers in Bangladesh Bangladesh becomes the third market where VEON and Starlink Mobile partne...

22/04/2026

FIRST LOOK FOR NEW U DRAMA SERIES HIT POINT

U have unveiled exclusive first-look images for their six-part police thriller Hit Point, starring Nick Blood (Day of the Jackal) and BAFTA nominee Saffron Hock...

22/04/2026

UKTV Highlights: Saturday May 9th -15th 2026

What can I watch on UKTV and stream on U this week? This week on UKTV and the free streaming service U, viewers can watch a range of new and returning programm...

22/04/2026

Sky announces fifth year of WNT Fund with 30,000 bursary supporting players and grassroots football

Wednesday 22 April 2026 Sky announces fifth year of WNT Fund with 30,000 bursa...

22/04/2026

Retail Media Standards Are Expanding Into Commerce Media - Here's Why That Matters for Measurement

The move from Retail Media to Commerce Media is about broadening the scope of th...

22/04/2026

Dolby and BMW Bring Dolby Atmos to the BMW 7 Series, Expanding Immersive Audio Across Future Models

April 22 2026, 07:00 (PDT) Dolby and BMW Bring Dolby Atmos to the BMW 7 Series,...

22/04/2026

RT Licenses Stolen Sister to Pushkin

RT Documentary On One 7-part series breaks US market for first time RT Programme Sales has announced its first deal with a US distribution partner for its 7-...

21/04/2026

5 Years of Spotify in Pakistan: The Trends Shaping the Country's Music Scene

Five years ago, Spotify arrived in Pakistan, opening a new chapter in the country's music scene. Since then, local listeners have explored across genres, ge...