Akamai research: Web attacks against APIs and applications in Asia Pacific grew By 65% in the last year

0

Akamai Technologies, Inc. released a new State of the Internet (SOTI) report that shows how growth in demand for APIs and applications (APPs) has transformed them into lucrative targets for threat actors. In Digital Fortresses Under Siege: Threats to Modern Application Architectures, Akamai notes that it observed more than 26 billion web attacks globally against APIs and Apps in June 2024 alone, with attacks surging by 65% over the last year in the Asia-Pacific and Japan (APJ) region resulting in vulnerability of organisations in particular financial services and commerce sectors.

This surge in attacks is a result of organisations rushing to deploy apps for enhancing customer experience and business growth. This rapid deployment expands the attack surface, exposing vulnerabilities like poor coding and design flaws in web apps. Additionally, the rapid API economy growth also gives cybercriminals more opportunities for exploiting vulnerabilities and abusing business logic.

Securing APIs and applications in APJ: Navigating threats, regulations, and emerging trends

From Q1 2023 to Q1 2024, the APJ region experienced a surge in web attacks against APIs and applications, peaking at 4.8 billion attacks in June 2024. Across industries, the financial services and commerce sectors experienced the most web attacks in the region.

API abuse in particular is a growing concern for businesses that increasingly rely on these gateways to provide access to their capabilities and services. The report notes that API attacks can occur in various forms, including data breaches, unauthorised access, and Distributed Denial-of-Service (DDoS) attacks.

Emerging threat: Layer 7 DDoS attacks and their impact on political elections through social media

In the APJ region, Layer 7 DDoS attacks, which target the application layer of websites and online services, increased five-fold over the past year, totalling 5.1 trillion attacks during this period. These attacks overload websites and services by flooding them with requests, aiming to slow them down or render them inaccessible.

Hacktivists frequently employ this type of attack to disrupt significant political events, such as elections, and to manipulate voter sentiment via social media platforms. They typically flood key social media platforms with a massive volume of seemingly legitimate web requests which overload these servers, hindering access to candidate information, voter registration portals, and even election results updates. This has a direct influence on voter turnout or public perception of the electoral process.

The APJ region is set to witness multiple elections this year, presenting a significant target for hacktivists who may employ this strategy to disrupt these crucial democratic processes through social media platforms and election-related websites. Governments and businesses need to enhance their cybersecurity measures to safeguard against such threats by taking proactive measures such as deploying robust DDoS mitigation technologies, ensuring redundancy in critical infrastructure, and educating the public about potential cyber threats

Other key findings of the report include:

  • From Q1 2023 through Q1 2024, there was a recorded 65% growth in web attacks, with growth continuing through the subsequent quarter. Within APJ, Australia (14.6 billion), India (12.0 billion), and Singapore (10.7 billion ) bore the brunt of API and web application attacks during that period, followed by China (4.3 billion), Japan (4.0 billion), New Zealand (2.1 billion) South Korea (1.6 billion) and Hong Kong SAR (1.5 billion).
  • From April 2023 to February 2024, the social media industry experienced a consistent increase in Layer 7 DDoS attacks. The APJ region ranked only second to North America in terms of threat landscape for web applications. Singapore experienced the highest concentration of attacks at 2.9 trillion, followed by India (959 billion), South Korea (544 billion), Indonesia (260 billion), China (188 billion), Japan  (83  billion),  Australia  (74  billion),  and  Taiwan  (50  billion).
  • Akamai researchers have observed high technology, commerce, and social media to be the top three targeted industries in Layer 7 DDoS attacks, with more than 11 trillion attacks in just 18 months globally. Similarly, the APJ region experienced a five-fold increase in these attacks, totalling 5.1 trillion during the same timeframe.
  • DDoS attacks challenge traffic over all ports and protocols in both the infrastructure and application layers. This includes the Domain Name System (DNS), which Akamai research observed to be a component in nearly 60% of DDoS attack  events.
  • The commerce industry has been victim to the most API and web application attacks, hit with more than double the amount of attacks than any other sector (high technology was second). In the APJ region, this trend aligns with prior reporting, as both the financial services and commerce sectors reported the most web attacks.
  • Local File Inclusion (LFI), Cross-Site Scripting (XSS), SQL injection (SQLi), Command injection (CMDi), and Server-Side Request Forgery (SSRF) attacks remain prevalent vectors targeting business applications and APIs.

“The APJ region frequently experiences web attacks targeting APIs and applications, a trend exacerbated by its rapidly digitising economies. As businesses move operations online more rapidly to meet time-to-market pressures, development and security resources are further strained, often resulting in overlooked security processes. It is therefore extremely important to establish a robust set of best practices to enhance security and resilience in this environment, especially given the high concentration of web attacks observed,” said Reuben Koh, Director of Security Technology & Strategy, APJ, Akamai Technologies.

“Successful attacks against applications and APIs are becoming more common and they can impact an organisation’s revenue and reputation,” said Rupesh Chokshi, Senior Vice President and General Manager, Application Security at Akamai. Digital Fortresses Under Siege: Threats to Modern Application Architectures offers a deep analysis of how attackers target apps and APIs as well as strategies to prevent these dangerous incursions.”

Digital Fortresses Under Siege: Threats to Modern Application Architectures, includes a security spotlight offering advice on mobile app user agreements. It also features snapshots for the Europe, Middle East and Africa (EMEA) and Asian Pacific and Japan (APJ) regions which provide data and case studies particular to those areas.

This year marks the 10th anniversary of Akamai’s State of the Internet (SOTI) reports. The SOTI series provides expert insights on the cybersecurity and web performance landscapes, based on data gathered from Akamai Connected Cloud.

LEAVE A REPLY

Please enter your comment!
Please enter your name here