API vulnerabilities surged in Q3 2025, with researchers identifying 1,602 API-related flaws—a 20% increase from the previous quarter. The most common issues included security misconfigurations, broken authorization, and broken authentication, with a notable rise in AI-API and Model Context Protocol (MCP) vulnerabilities. Attackers increasingly exploited business logic flaws and partner integrations, shifting their focus from traditional code-level weaknesses to more complex attack paths, particularly in AI-powered APIs.
Simultaneously, threat actors aggressively targeted software supply chains, especially by compromising npm package maintainers through phishing campaigns. These attacks enabled adversaries to upload malicious packages, impacting thousands of developers. The quarter saw a spike in compromised legitimate packages, highlighted by the S1ngularity campaign and the emergence of the Shai-Hulud npm worm. Attackers used advanced phishing techniques, including adversary-in-the-middle attacks, to bypass traditional multi-factor authentication, underscoring the need for phishing-resistant authentication methods.

Trace attribution and downstream blast radius.
6 events from the most recent confirmed update back to the earliest known activity.
Wallarm publicly released its Q3 2025 API ThreatStats report, warning that API sprawl, AI integration, and business logic flaws were creating systemic risk that outpaced traditional application security measures. The report urged organizations to prioritize unified API governance, shadow API discovery, and protection for AI pipelines.
By the time of the Q3 2025 reporting, CISA's Known Exploited Vulnerabilities catalog had added eight new API-related exploited flaws. The additions were cited as evidence that API weaknesses were being actively exploited in real-world attacks.
The Q3 2025 Wallarm report said eight major API-related breaches were confirmed, affecting industries including fintech, hospitality, SaaS, and AI. One cited example was the Salesloft/Drift OAuth compromise, which reportedly impacted multiple enterprises.
During Q3 2025, business logic abuse was identified as a mainstream attack path, with traditional security tools described as inadequate for detecting or preventing many of these attacks. The trend underscored the need for context-driven testing and active monitoring.
The Q3 2025 reporting highlighted a sharp increase in vulnerabilities affecting AI-connected APIs and Model Context Protocol implementations. This reflected a broader shift toward attacks on AI pipelines and API-driven integrations.
Wallarm's Q3 2025 ThreatStats report found a 20% quarter-over-quarter increase in API vulnerabilities, while average severity remained persistently high. The report said attackers were increasingly exploiting business logic flaws, AI-powered APIs, and partner integrations rather than only traditional code-level weaknesses.
Vulnerabilities, threat actors, malware, products, organizations, breaches, and observables Mallory has linked to this story. Indicator values are masked here and available in full in the app.
Indicator values are masked on this page. See the values in Mallory Domains, IPs, hashes, and URLs are exportable to your SIEM.
See attribution and downstream blast radius, and whether this package or vendor reaches your builds.
2 references tracked. Mallory keeps watching after this page renders.
Map indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.