{"id":14686,"date":"2025-08-28T06:50:09","date_gmt":"2025-08-28T06:50:09","guid":{"rendered":"http:\/\/localhost\/?p=14686"},"modified":"2025-08-28T06:50:09","modified_gmt":"2025-08-28T06:50:09","slug":"the-api-security-reality-check-key-takeaways-from-q2-2025-api-threatstats-report","status":"publish","type":"post","link":"https:\/\/zero.redgem.net\/?p=14686","title":{"rendered":"The API Security Reality Check: Key Takeaways from Q2 2025 API ThreatStats Report_WALLARMLAB:B062E0F312B9C144C7C1F8156096ACBB"},"content":{"rendered":"<p>{&#8220;lastseen&#8221;:&#8221;2025-08-28T11:02:23&#8243;,&#8221;description&#8221;:&#8221;API security has never been more crucial. Vulnerabilities are growing in volume and severity. AI integrations are a burgeoning attack vector. Increasing GraphQL adoption presents hidden dangers. To protect your organization, you must secure your APIs. \\n\\nKeep reading for our key takeaways from the Wallarm Q2 2025 API ThreatStats report \u2013 and find out what you need to do to protect yourself. \\n\\n## The Hidden Risk of GraphQL\\n\\n70% of organizations now use GraphQL. And yet, there were no GraphQL-specific breaches reported in Q2 2025. If that sounds suspicious, it\u2019s because it is. \\n\\nGraphQL slashes payload sizes by up to 99% and offers clients powerful, flexible control over data. However, that same flexibility opens the door to excessive data exposure, denial of service from nested queries, and resolver-level authorization bypasses. \\n\\n![](https:\/\/i0.wp.com\/lab.wallarm.com\/wp-content\/uploads\/2025\/08\/GraphQL-Risks.png?resize=706%2C305\\u0026ssl=1)GraphQL Risks\\n\\nWhat\u2019s more, considering that its single dynamic endpoint obscures visibility for traditional security controls, it\u2019s safe to assume that attackers are already exploiting introspection, deep nesting, and injection flaws in poorly secured GraphQL deployments. \\n\\nSo why were there no GraphQL breaches in Q2 2025? \\n\\nIt\u2019s not because GraphQL is safe; it\u2019s likely because organizations are failing to accurately detect and attribute breaches. Traditional API security tools often fail to support GraphQL, and, as such, organizations should treat it as a unique class of API architecture requiring specialized protections. That includes: \\n\\n  *     Disabling or secure introspection in production. \\n  *     Enforcing query cost analysis and depth limiting. \\n  *     Authenticating and authorizing at the field and resolver level. \\n  *     Monitoring query patterns for abnormal complexity or access attempts\\n\\n\\n\\n## API Flaws are Rising Fast \u2013 And Attackers are Exploiting Them\\n\\nAPIs security is growing more important by the day. In the second quarter of 2025, we saw a 9.8% increase in API-related CVEs compared to Q1, with 639 vulnerabilities disclosed between April and June up from 582 in Q1. \\n\\nOf course, we can attribute much of this rise to the increasing volume of APIs in production, but the real story is that attackers are becoming more aware of their inherent vulnerabilities &#8211; particularly in the way they integrate with tools and AI systems. \\n\\nAI-specific API vulnerabilities rocketed again from Q1 to Q2: we identified 34 CVEs tied directly to AI APIs this quarter, up from just 19 in Q1. It\u2019s a drum we\u2019ve been banging for a while now, but the key takeaway here is that **AI security is API security****.**\\n\\n![](https:\/\/i0.wp.com\/lab.wallarm.com\/wp-content\/uploads\/2025\/08\/API-CVEs.png?resize=770%2C377\\u0026ssl=1)\\n\\nBut it\u2019s not just that API vulnerabilities are more becoming more common, they\u2019re also becoming more severe: \\n\\n  * Roughly one-third of all CVEs were Critical, typically enabling remote code execution, token leakage, or insecure deserialization.\\n  * Another one-third were classified as High, involving issues like authorization bypass and sensitive data exposure.\\n  * The remaining vulnerabilities were Medium or Low severity but still pose risk when combined in chained exploits or business logic abuse scenarios.\\n\\n\\n\\nAnd, although the total number of API-related Known Exploited Vulnerabilities (KEVs) fell from Q1 to Q2 2025, they proportionally increased from 20% to 22% of all confirmed in-the-wild exploits in the quarter. But how are attackers exploiting these vulnerabilities? \\n\\n## The API Flaws Attackers Can\u2019t Stop Exploiting\\n\\nThe most exploited API flaws in Q2 reveal a familiar pattern of weak access controls, token mishandling, and injection risks: \\n\\n  * **Unauthenticated Access Points:** Several API vulnerabilities exploited in the wild allowed access without requiring credentials highlighting the risks of exposed endpoints and default configurations.\\n  * **Broken Authorization:** A majority of API-related KEVs exploited BOLA (Broken Object Level Authorization), where APIs validated identity but failed to restrict object-level access.\\n  * **Token Abuse and Session Hijacking:** Some APIs exposed token mechanisms that could be reused or escalated to higher privileges.\\n  * **Injection and Execution Flaws:** KEVs involving GraphQL resolvers and shell-exposed endpoints revealed command injection or insufficient query sanitization.\\n\\n\\n\\nWhat, then, should organizations do to protect themselves? \\n\\n## Key Takeaways for Security Leaders \\n\\nIn light of these findings, organizations should take the following steps to secure their APIs:\\n\\n### Get Complete API Visibility\\n\\nYou can\u2019t defend blind spots. Continuously uncover every API \u2013 internal, external, AI-drivem, or shadow \u2013 and pair discovery with schema ownership and real-time usage monitoring. \\n\\n### Lock Down Your AI Stack\\n\\nSecure every stage of your AI pipeline, from ingestion to inference. Disable default endpoints, enforce fine-grained access controls, and keep orchestration pipelines under watch. \\n\\n### Strengthen Auth at Every Layer \\n\\nGranular access policies aren\u2019t optional. Many of Q2\u2019s biggest breaches happened because exposed APIs lacked proper authentication or authorization. \\n\\n### Test Beyond the Schema\\n\\nStatic checks like schema validation are no longer sufficient. You must simulate misuse to catch logic flaws, sequence abuse, and role escalation through behavior-based testing. \\n\\n## Protect the Full API Lifecycle\\n\\nSecurity doesn\u2019t work if it\u2019s bolted on. Integrate testing early in development and pair it with real-time runtime protection to safeguard APIs from code to production.   \\n\\n\\nThe post The API Security Reality Check: Key Takeaways from Q2 2025 API ThreatStats Report appeared first on Wallarm.&#8221;,&#8221;published&#8221;:&#8221;2025-08-28T11:00:00&#8243;,&#8221;modified&#8221;:&#8221;2025-08-28T11:00:00&#8243;,&#8221;type&#8221;:&#8221;wallarmlab&#8221;,&#8221;title&#8221;:&#8221;The API Security Reality Check: Key Takeaways from Q2 2025 API ThreatStats Report&#8221;,&#8221;source&#8221;:&#8221;&#8221;,&#8221;references&#8221;:&#8221;&#8221;,&#8221;id&#8221;:&#8221;WALLARMLAB:B062E0F312B9C144C7C1F8156096ACBB&#8221;,&#8221;bulletinFamily&#8221;:&#8221;blog&#8221;,&#8221;cwe&#8221;:null,&#8221;cvelist&#8221;:[],&#8221;sourceData&#8221;:&#8221;&#8221;,&#8221;sourceHref&#8221;:&#8221;&#8221;,&#8221;cvss&#8221;:{&#8220;score&#8221;:0,&#8221;severity&#8221;:&#8221;NONE&#8221;,&#8221;vector&#8221;:&#8221;NONE&#8221;,&#8221;version&#8221;:&#8221;NONE&#8221;},&#8221;cvss2&#8243;:{},&#8221;cvss3&#8243;:{&#8220;version&#8221;:&#8221;&#8221;,&#8221;vectorString&#8221;:&#8221;&#8221;,&#8221;baseScore&#8221;:0,&#8221;baseSeverity&#8221;:&#8221;&#8221;,&#8221;attackVector&#8221;:&#8221;&#8221;,&#8221;attackComplexity&#8221;:&#8221;&#8221;,&#8221;privilegesRequired&#8221;:&#8221;&#8221;,&#8221;userInteraction&#8221;:&#8221;&#8221;,&#8221;scope&#8221;:&#8221;&#8221;,&#8221;confidentialityImpact&#8221;:&#8221;&#8221;,&#8221;integrityImpact&#8221;:&#8221;&#8221;,&#8221;availabilityImpact&#8221;:&#8221;&#8221;,&#8221;cvssV3&#8243;:{&#8220;version&#8221;:&#8221;&#8221;,&#8221;vectorString&#8221;:&#8221;&#8221;,&#8221;baseScore&#8221;:0,&#8221;baseSeverity&#8221;:&#8221;&#8221;,&#8221;attackVector&#8221;:&#8221;&#8221;,&#8221;attackComplexity&#8221;:&#8221;&#8221;,&#8221;privilegesRequired&#8221;:&#8221;&#8221;,&#8221;userInteraction&#8221;:&#8221;&#8221;,&#8221;scope&#8221;:&#8221;&#8221;,&#8221;confidentialityImpact&#8221;:&#8221;&#8221;,&#8221;integrityImpact&#8221;:&#8221;&#8221;,&#8221;availabilityImpact&#8221;:&#8221;&#8221;}},&#8221;href&#8221;:&#8221;https:\/\/lab.wallarm.com\/api-security-reality-check-key-takeaways-from-q2-2025-api-threatstats-report\/&#8221;,&#8221;category_name&#8221;:&#8221;News&#8221;,&#8221;post_link&#8221;:&#8221;&#8221;,&#8221;product&#8221;:&#8221;&#8221;,&#8221;version&#8221;:&#8221;&#8221;,&#8221;vendor&#8221;:&#8221;&#8221;,&#8221;ai_description&#8221;:&#8221;&#8221;,&#8221;ai_severity&#8221;:&#8221;&#8221;,&#8221;ai_vendor&#8221;:&#8221;&#8221;,&#8221;ai_product&#8221;:&#8221;&#8221;,&#8221;ai_version&#8221;:&#8221;&#8221;,&#8221;ai_score&#8221;:0}<\/p>\n","protected":false},"excerpt":{"rendered":"<p>{&#8220;lastseen&#8221;:&#8221;2025-08-28T11:02:23&#8243;,&#8221;description&#8221;:&#8221;API security has never been more crucial. Vulnerabilities are growing in volume and severity. AI integrations are a burgeoning attack vector. Increasing GraphQL adoption presents&#8230;<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[4],"tags":[6,8,12,13,33,7,11,5,105],"class_list":["post-14686","post","type-post","status-publish","format-standard","hentry","category-category_news","tag-cve","tag-cvss","tag-exploit","tag-news","tag-none","tag-security","tag-tapic","tag-vulnerability","tag-wallarmlab"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v27.5 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>The API Security Reality Check: Key Takeaways from Q2 2025 API ThreatStats Report_WALLARMLAB:B062E0F312B9C144C7C1F8156096ACBB - zero redgem<\/title>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/zero.redgem.net\/?p=14686\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"The API Security Reality Check: Key Takeaways from Q2 2025 API ThreatStats Report_WALLARMLAB:B062E0F312B9C144C7C1F8156096ACBB - zero redgem\" \/>\n<meta property=\"og:description\" content=\"{&#8220;lastseen&#8221;:&#8221;2025-08-28T11:02:23&#8243;,&#8221;description&#8221;:&#8221;API security has never been more crucial. Vulnerabilities are growing in volume and severity. AI integrations are a burgeoning attack vector. Increasing GraphQL adoption presents...\" \/>\n<meta property=\"og:url\" content=\"https:\/\/zero.redgem.net\/?p=14686\" \/>\n<meta property=\"og:site_name\" content=\"zero redgem\" \/>\n<meta property=\"article:published_time\" content=\"2025-08-28T06:50:09+00:00\" \/>\n<meta name=\"author\" content=\"invoker\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"invoker\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"5 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/?p=14686#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/?p=14686\"},\"author\":{\"name\":\"invoker\",\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/#\\\/schema\\\/person\\\/fbfeae8dfad117ac08a7621bee1a1dca\"},\"headline\":\"The API Security Reality Check: Key Takeaways from Q2 2025 API ThreatStats Report_WALLARMLAB:B062E0F312B9C144C7C1F8156096ACBB\",\"datePublished\":\"2025-08-28T06:50:09+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/?p=14686\"},\"wordCount\":1028,\"commentCount\":0,\"publisher\":{\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/#organization\"},\"keywords\":[\"CVE\",\"CVSS\",\"exploit\",\"news\",\"NONE\",\"Security\",\"tapic\",\"Vulnerability\",\"wallarmlab\"],\"articleSection\":[\"category_news\"],\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"CommentAction\",\"name\":\"Comment\",\"target\":[\"https:\\\/\\\/zero.redgem.net\\\/?p=14686#respond\"]}]},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/?p=14686\",\"url\":\"https:\\\/\\\/zero.redgem.net\\\/?p=14686\",\"name\":\"The API Security Reality Check: Key Takeaways from Q2 2025 API ThreatStats Report_WALLARMLAB:B062E0F312B9C144C7C1F8156096ACBB - zero redgem\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/#website\"},\"datePublished\":\"2025-08-28T06:50:09+00:00\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/?p=14686#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/zero.redgem.net\\\/?p=14686\"]}]},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/?p=14686#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/zero.redgem.net\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"The API Security Reality Check: Key Takeaways from Q2 2025 API ThreatStats Report_WALLARMLAB:B062E0F312B9C144C7C1F8156096ACBB\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/#website\",\"url\":\"https:\\\/\\\/zero.redgem.net\\\/\",\"name\":\"zero redgem\",\"description\":\"\",\"publisher\":{\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/#organization\"},\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/zero.redgem.net\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Organization\",\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/#organization\",\"name\":\"zero redgem\",\"url\":\"https:\\\/\\\/zero.redgem.net\\\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/#\\\/schema\\\/logo\\\/image\\\/\",\"url\":\"\",\"contentUrl\":\"\",\"width\":191,\"height\":188,\"caption\":\"zero redgem\"},\"image\":{\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/#\\\/schema\\\/logo\\\/image\\\/\"}},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/#\\\/schema\\\/person\\\/fbfeae8dfad117ac08a7621bee1a1dca\",\"name\":\"invoker\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/f17c01d7338e6932bcde121cf83569393df3374625d25afd62677cfb528f2e3e?s=96&d=mm&r=g\",\"url\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/f17c01d7338e6932bcde121cf83569393df3374625d25afd62677cfb528f2e3e?s=96&d=mm&r=g\",\"contentUrl\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/f17c01d7338e6932bcde121cf83569393df3374625d25afd62677cfb528f2e3e?s=96&d=mm&r=g\",\"caption\":\"invoker\"},\"sameAs\":[\"https:\\\/\\\/zero.redgem.net\"],\"url\":\"https:\\\/\\\/zero.redgem.net\\\/?author=1\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"The API Security Reality Check: Key Takeaways from Q2 2025 API ThreatStats Report_WALLARMLAB:B062E0F312B9C144C7C1F8156096ACBB - zero redgem","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/zero.redgem.net\/?p=14686","og_locale":"en_US","og_type":"article","og_title":"The API Security Reality Check: Key Takeaways from Q2 2025 API ThreatStats Report_WALLARMLAB:B062E0F312B9C144C7C1F8156096ACBB - zero redgem","og_description":"{&#8220;lastseen&#8221;:&#8221;2025-08-28T11:02:23&#8243;,&#8221;description&#8221;:&#8221;API security has never been more crucial. Vulnerabilities are growing in volume and severity. AI integrations are a burgeoning attack vector. Increasing GraphQL adoption presents...","og_url":"https:\/\/zero.redgem.net\/?p=14686","og_site_name":"zero redgem","article_published_time":"2025-08-28T06:50:09+00:00","author":"invoker","twitter_card":"summary_large_image","twitter_misc":{"Written by":"invoker","Est. reading time":"5 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/zero.redgem.net\/?p=14686#article","isPartOf":{"@id":"https:\/\/zero.redgem.net\/?p=14686"},"author":{"name":"invoker","@id":"https:\/\/zero.redgem.net\/#\/schema\/person\/fbfeae8dfad117ac08a7621bee1a1dca"},"headline":"The API Security Reality Check: Key Takeaways from Q2 2025 API ThreatStats Report_WALLARMLAB:B062E0F312B9C144C7C1F8156096ACBB","datePublished":"2025-08-28T06:50:09+00:00","mainEntityOfPage":{"@id":"https:\/\/zero.redgem.net\/?p=14686"},"wordCount":1028,"commentCount":0,"publisher":{"@id":"https:\/\/zero.redgem.net\/#organization"},"keywords":["CVE","CVSS","exploit","news","NONE","Security","tapic","Vulnerability","wallarmlab"],"articleSection":["category_news"],"inLanguage":"en-US","potentialAction":[{"@type":"CommentAction","name":"Comment","target":["https:\/\/zero.redgem.net\/?p=14686#respond"]}]},{"@type":"WebPage","@id":"https:\/\/zero.redgem.net\/?p=14686","url":"https:\/\/zero.redgem.net\/?p=14686","name":"The API Security Reality Check: Key Takeaways from Q2 2025 API ThreatStats Report_WALLARMLAB:B062E0F312B9C144C7C1F8156096ACBB - zero redgem","isPartOf":{"@id":"https:\/\/zero.redgem.net\/#website"},"datePublished":"2025-08-28T06:50:09+00:00","breadcrumb":{"@id":"https:\/\/zero.redgem.net\/?p=14686#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/zero.redgem.net\/?p=14686"]}]},{"@type":"BreadcrumbList","@id":"https:\/\/zero.redgem.net\/?p=14686#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/zero.redgem.net\/"},{"@type":"ListItem","position":2,"name":"The API Security Reality Check: Key Takeaways from Q2 2025 API ThreatStats Report_WALLARMLAB:B062E0F312B9C144C7C1F8156096ACBB"}]},{"@type":"WebSite","@id":"https:\/\/zero.redgem.net\/#website","url":"https:\/\/zero.redgem.net\/","name":"zero redgem","description":"","publisher":{"@id":"https:\/\/zero.redgem.net\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/zero.redgem.net\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Organization","@id":"https:\/\/zero.redgem.net\/#organization","name":"zero redgem","url":"https:\/\/zero.redgem.net\/","logo":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/zero.redgem.net\/#\/schema\/logo\/image\/","url":"","contentUrl":"","width":191,"height":188,"caption":"zero redgem"},"image":{"@id":"https:\/\/zero.redgem.net\/#\/schema\/logo\/image\/"}},{"@type":"Person","@id":"https:\/\/zero.redgem.net\/#\/schema\/person\/fbfeae8dfad117ac08a7621bee1a1dca","name":"invoker","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/secure.gravatar.com\/avatar\/f17c01d7338e6932bcde121cf83569393df3374625d25afd62677cfb528f2e3e?s=96&d=mm&r=g","url":"https:\/\/secure.gravatar.com\/avatar\/f17c01d7338e6932bcde121cf83569393df3374625d25afd62677cfb528f2e3e?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/f17c01d7338e6932bcde121cf83569393df3374625d25afd62677cfb528f2e3e?s=96&d=mm&r=g","caption":"invoker"},"sameAs":["https:\/\/zero.redgem.net"],"url":"https:\/\/zero.redgem.net\/?author=1"}]}},"_links":{"self":[{"href":"https:\/\/zero.redgem.net\/index.php?rest_route=\/wp\/v2\/posts\/14686","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/zero.redgem.net\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/zero.redgem.net\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/zero.redgem.net\/index.php?rest_route=\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/zero.redgem.net\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=14686"}],"version-history":[{"count":0,"href":"https:\/\/zero.redgem.net\/index.php?rest_route=\/wp\/v2\/posts\/14686\/revisions"}],"wp:attachment":[{"href":"https:\/\/zero.redgem.net\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=14686"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/zero.redgem.net\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=14686"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/zero.redgem.net\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=14686"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}