AI-driven bot attacks increased significantly in 2025, surging 12.5 times compared to the previous year, according to the 2026 Bad Bot Report released by French technology and defense group Thales (https://www.thalesgroup.com/en). The report indicates a fundamental shift in internet traffic dynamics, with automated activity now surpassing human interaction.
In 2025, bots comprised over 53% of all web traffic, an increase from 51% in the preceding year, while human activity accounted for 47%. This trend signifies a continued escalation of machine interactions as the dominant force online. Approximately 40% of all bot traffic was identified as malicious, underscoring an expanding threat landscape.
Table of Contents
AI Redefines Internet Traffic and Security Challenges
The report highlights that the integration of artificial intelligence is fundamentally altering the nature of bot activity. AI agents are emerging as a distinct category of internet traffic, interacting directly with applications and APIs to perform tasks and retrieve data. This evolution blurs the distinction between legitimate and malicious automation, complicating security efforts for organizations.

Tim Chang, Global Vice President and General Manager, Application Security at Thales, commented, “AI is transforming automation from something organizations try to block into something they must also manage. The challenge is no longer identifying bots. It’s understanding what the bot, agent, or automation is doing, whether it aligns with business intent, and how it interacts with critical systems.” This shift creates a visibility gap, as much AI-driven activity remains unverified or indistinguishable from legitimate traffic.
APIs and Identity Systems Become Primary Targets
Attackers are increasingly targeting Application Programming Interfaces (APIs) and identity systems, which form the backbone of modern digital services. The report found that 27% of bot attacks now focus on APIs, enabling bots to bypass traditional user interfaces and interact with backend systems at machine speed. These attacks frequently exploit business logic, extract sensitive data, or manipulate workflows at scale. The financial services sector was particularly impacted, experiencing 24% of all bot attacks and 46% of account takeover incidents, demonstrating how automation is being leveraged for direct monetization of cyberattacks.
Confronting the Rise of Automated Interaction
The findings suggest that traditional security approaches, primarily focused on identifying and blocking malicious bots, may no longer be sufficient. The report recommends that organizations adopt a governance-based model, integrating visibility, policy enforcement, and behavioral analysis to manage and differentiate between acceptable and harmful automation. This approach is crucial for maintaining security, performance, and trust in an increasingly machine-driven internet. For further insights into these critical latest cybersecurity developments (https://technosports.co.in/), TechnoSports continues to monitor industry trends.





