Security

API Attacks Surge 113% as Attackers Shift to Coordinated Multi-Vector Campaigns | Steve Winterfeld, Akamai

0

Attackers are no longer just getting creative—they’re getting efficient. Enterprises are facing a new threat reality: coordinated, industrial-scale campaigns that combine API abuse, web application exploits, and DDoS attacks. These multi-vector operations quietly drain performance, spike infrastructure costs, and exhaust security teams before defenders realize they’re under attack. By the time they notice, it’s already too late.

The Guest: Steve Winterfeld, Advisory CISO at Akamai

Key Takeaways

  • API attacks surged 113% year-over-year while web application attacks grew only 73%, showing where threat actors are focusing their efforts
  • DDoS attacks increased 104% driven by enhanced IoT botnets like TurboMirai and geopolitical cyber operations
  • 87% of organizations experienced an API security incident in 2025 according to Akamai’s annual survey
  • 85% of observed domains fail foundational DNS security controls including SPF, DMARC, CAA, and DNSSEC
  • AI-powered vibe coding is enabling both low-skill attackers and defenders to develop sophisticated tools at unprecedented speed

***

Read Full Transcript & Technical Deep Dive

AI Code Floods Open Source: How Kusari Inspector Secures CNCF Projects Against Supply Chain Attacks | TFiR

Previous article

Kubernetes Clusters Are Running Inside Commercial Airplanes—Here’s Why | Hong Wang, Akuity

Next article