Radware's 2025 Cyber Survey reveals critical vulnerabilities in application security measures, with only 8% using AI-based protection and 6% having complete API documentation. API usage has surged 42% compared to 2023, with an average of 19 third-party APIs per application. Business logic attacks are a growing threat, with only 29% of security personnel fully trained to mitigate them. The financial consequences are severe, with application DDoS attacks averaging $6,100 per minute and potential losses of $366,000 per hour of downtime.
Radware's latest 2025 Cyber Survey reveals significant vulnerabilities in application security measures, underscoring the urgent need for improved defenses against evolving cyber threats. The survey, conducted in collaboration with Osterman Research, highlights critical gaps in AI-based protection and API documentation, as well as the growing threat of business logic attacks.
Key findings from the survey include:
- Only 8% of organizations currently use AI-based security solutions, despite 70% expressing concern about AI-enabled hacking [1].
- API usage has surged by 42% compared to 2023, with an average of 19 third-party APIs per application, yet only 6% of organizations have complete API documentation [1].
- Business logic attacks, a growing threat, are only fully trained to mitigate by 29% of security personnel [1].
- Application DDoS attacks cost organizations an average of $6,100 per minute or $366,000 per hour in downtime [1].
The survey underscores a critical lack of preparedness in cybersecurity defenses amidst increasing regulatory pressures and the rising risks associated with third-party code vulnerabilities. As organizations face a surge in API usage and related security concerns, the findings emphasize the need for enhanced application security solutions tailored to these challenges.
Radware, a global leader in application security and delivery solutions, is well-positioned to address these gaps. The company's AI-driven algorithms and real-time protection solutions can help organizations better defend against sophisticated web, application, and DDoS attacks, API abuse, and bad bots.
References:
[1] https://www.nasdaq.com/articles/radwares-2025-cyber-survey-reveals-serious-gaps-api-security-and-ai-threat-preparedness
Comments
No comments yet