Home
News
Tech Grid
Data & Analytics
Data Processing Data Management Analytics Data Infrastructure Data Integration & ETL Data Governance & Quality Business Intelligence DataOps Data Lakes & Warehouses Data Quality Data Engineering Big Data
Enterprise Tech
Digital Transformation Enterprise Solutions Collaboration & Communication Low-Code/No-Code Automation IT Compliance & Governance Innovation Enterprise AI Data Management HR
Cybersecurity
Risk & Compliance Data Security Identity & Access Management Application Security Threat Detection & Incident Response Threat Intelligence AI Cloud Security Network Security Endpoint Security Edge AI
AI
Ethical AI Agentic AI Enterprise AI AI Assistants Innovation Generative AI Computer Vision Deep Learning Machine Learning Robotics & Automation LLMs Document Intelligence Business Intelligence Low-Code/No-Code Edge AI Automation NLP AI Cloud
Cloud
Cloud AI Cloud Migration Cloud Security Cloud Native Hybrid & Multicloud Cloud Architecture Edge Computing
IT & Networking
IT Automation Network Monitoring & Management IT Support & Service Management IT Infrastructure & Ops IT Compliance & Governance Hardware & Devices Virtualization End-User Computing Storage & Backup
Human Resource Technology Agentic AI Robotics & Automation Innovation Enterprise AI AI Assistants Enterprise Solutions Generative AI Regulatory & Compliance Network Security Collaboration & Communication Business Intelligence Leadership Artificial Intelligence Cloud
Finance
Insurance Investment Banking Financial Services Security Payments & Wallets Decentralized Finance Blockchain
HR
Talent Acquisition Workforce Management AI HCM HR Cloud Learning & Development Payroll & Benefits HR Analytics HR Automation Employee Experience Employee Wellness
Marketing
AI Customer Engagement Advertising Email Marketing CRM Customer Experience Data Management Sales Content Management Marketing Automation Digital Marketing Supply Chain Management Communications Business Intelligence Digital Experience SEO/SEM Digital Transformation Marketing Cloud Content Marketing E-commerce
Consumer Tech
Smart Home Technology Home Appliances Consumer Health AI
Interviews
Think Stack
Press Releases
Articles
Resources
  • AI

Wallarm Q2 2025 API ThreatStats Report Summary


Wallarm Q2 2025 API ThreatStats Report Summary
  • Source: Source Logo
  • |
  • August 26, 2025

Wallarm, a leader in API and agentic AI security, released its Q2 2025 API ThreatStats Report on August 25, 2025, highlighting a significant rise in AI-powered API vulnerabilities. The report, analyzing 639 API-related CVEs, emphasizes the growing attack surface driven by large language models (LLMs) and agent-driven architectures, with real-world breaches exposing risks from insecure defaults and weak authentication.

Key Findings

  • API Vulnerabilities Surge: 639 API-related CVEs disclosed in Q2 2025, mostly Critical or High Severity, continuing a quarter-over-quarter increase.

  • AI-Powered APIs Targeted: 34 vulnerabilities linked to AI-related APIs, including LLMs and agent frameworks, with one public breach involving an AI agent vulnerability.

  • Attack Trends: Attackers exploit logic-layer weaknesses, shifting from outdated libraries to API behavior, especially in AI systems.

  • Recommendations: Adopt runtime-first security, continuous testing, and enhanced visibility to counter dynamic threats.

Strategic Insights

“Attackers are exploiting the way APIs behave, especially those powering AI systems,” said Ivan Novikov, CEO of Wallarm. The report urges proactive runtime protection to address vulnerabilities like prompt injection and data leakage, critical for industries like finance and healthcare. Wallarm’s solutions integrate real-time threat detection and policy enforcement, aligning with trends like the EU AI Act’s focus on application-layer safeguards.

Industry Context

The report aligns with the projected $35.5B generative AI cybersecurity market by 2031, driven by AI adoption. Posts on X note 22% of CISA’s KEV exploits in Q2 2025 were API-related, reinforcing APIs as the top attack vector. Companies like Palo Alto Networks and SentinelOne are embedding AI security, but Wallarm’s focus on runtime visibility sets it apart.

 

About Wallarm

Wallarm is the only unified platform for API and agentic AI security successfully deployed in enterprise production environments. With Wallarm, customers receive the fastest, easiest, and most effective way to stop API attacks. Organizations choose Wallarm to protect their APIs and AI agents because the platform delivers a complete inventory of APIs, real-time blocking, and patented AI/ML-based abuse detection. Wallarm is headquartered in San Francisco, California, and is backed by Toba Capital, Y Сombinator, Partech, and other investors.

  • WallarmAPI Threat StatsAI CybersecurityAPI VulnerabilitiesRuntime Security
News Disclaimer
  • Share