Workflow
Akamai马俊:AI是网络安全的双刃剑,驱动攻击与防护并进
AkamaiAkamai(US:AKAM) Huan Qiu Wang·2025-04-24 02:39

Core Insights - The report by Akamai highlights the significant impact of AI technology on internet security, particularly in the context of web and API attacks [1][3] Web and API Attacks - In 2024, global web attack incidents are projected to reach 311 billion, marking a 33% year-on-year increase [3] - In the Asia-Pacific region, web attacks surged by 73% to 51 billion [3] - API attacks are also on the rise, with a monthly growth rate of 32% for OWASP API Top 10 related attacks, and API risk losses expected to exceed $100 billion by 2026 [3][4] Security Risks and Compliance - Unauthorized or improper authorization is identified as a primary cause of sensitive data leaks and system penetrations [4] - The report outlines four major risks in API security: API abuse, decreased testing frequency, lack of pre-testing, and the presence of zombie and shadow APIs [4] - Compliance with OWASP and MITRE frameworks is becoming increasingly critical as API security incidents escalate, leading to heightened compliance risks for businesses [4] Industry-Specific Insights - Different industries face unique and common API security risks, with e-commerce experiencing heightened attack levels during shopping and promotional seasons, while the financial sector may face targeted attacks due to geopolitical events [4] - AI technology is being utilized by attackers for strategic target selection, attack automation, traffic-based attacks, and behavior-based attacks [4][5] Regional Attack Trends - In the Asia-Pacific region, the total number of web and API attacks increased by 73% to 51 billion, with the financial sector being a primary target, showing a growth rate exceeding 52% [5] - Singapore experienced severe DDoS attacks, with 47 trillion incidents in 2024, ranking it among the top globally [5] Security Strategies - Akamai proposes six security strategies to help businesses build a comprehensive defense system, including integrating security requirements into the development process and utilizing AI to counter AI attacks [5] - The company emphasizes the need for proactive defense strategies to mitigate API vulnerabilities and ransomware threats [5] Future Outlook - AI technology is expected to continue influencing API security protection models, with Akamai planning to release an AI firewall capable of defending against attacks targeting AI systems [5] - Companies are encouraged to proactively develop AI security capabilities and foster a collaborative model of shared responsibility among security vendors, cloud service providers, and users [5]