Third, in the data for the Asia Pacific and Japan region, insecure APIs had resulted in up to US$4.6bn of losses per year. Also

  • Up to US$12.8bn of losses in the APJ region were attributed to automated attacks by bots and the widespread availability of attack tools and generative AI models for enhancing bot evasion techniques and democratizing sophisticated bot attacks.
  • In the multi-year data, API-related security incidents in 2022 had risen by 40% year on year, and bot-related security incidents had spiked by 88% year on year, assumed to be linked to increases in digital transactions, the expanding use of APIs, and geopolitical tensions like the Russia-Ukraine war. In 2023 data, the frequency of these incidents had moderated: API-related security incidents had grown by 9%, while bot-related security incidents had jumped by just 28% year on year.
  • 17.7% of global incidents were attributed to API and bot-related security incidents in the APJ region, comprising 14% of API-related, and up to 24% bot-related attacks.
  • In the data, Brazil experienced the highest percentage of events related to insecure APIs or bot attacks, accounting for up to 32% of all observed security incidents. This was closely followed by attacks in France (up to 28%) and three markets in APJ – Japan (up to 28%), India (up to 26%) and Australia (up to 23%).