REST API — Cyber Threats, Attacks & Incidents

Threat entity extracted from intelligence sources

Frequency
2
occurrences
First Seen
December 24, 2025
Last Seen
June 10, 2026

REST API is a technology platform tracked across 2 threat clusters and 2 intelligence report mentions on ThreatCluster. First observed December 24, 2025; most recent activity June 10, 2026.

Overview

REST API is an architectural style that exposes HTTP-based endpoints for programmatic access to services and data. It underpins modern web and automation platforms, enabling machine-to-machine communication, integrations, and remote interactions; however, insecure, misconfigured, or exposed REST endpoints can enable remote actions, data exposure, or code execution, making REST APIs a critical cybersecurity risk surface. The recent n8n vulnerability demonstrates how a high-severity RCE flaw in a REST API-enabled automation tool can threaten a large number of servers.

Related Threat Clusters

  • Critical RCE Vulnerability in n8n Affects Over 100K Servers

    A critical remote code execution vulnerability (CVE-2025-68613) in the n8n workflow automation platform has been disclosed, potentially impacting over 100,000 servers, primarily in the United States. The flaw, which has…

    4 articles · Updated December 24, 2025
  • ServiceNow Data Breach Exposes Customer Data via API Vulnerability

    ServiceNow confirmed a data breach on June 9, 2026, after attackers exploited an unauthenticated API endpoint, allowing access to sensitive customer data. The vulnerability, found in the endpoint…

    18 articles · Updated June 10, 2026

Recent Intelligence Reports

  • Triskele Labs — www.triskelelabs.com · June 10, 2026
  • CVSS 9.9 RCE vulnerability in n8n potentially impacts more than 100K servers — Scworld · December 24, 2025

CVSS v3.1 Breakdown