44% Rise in public-facing application exploitation as vulnerability-led incidents dominated 2025
Target Trend
Summary
Hide ▲
Show ▼
Attacks against public-facing applications jumped 44%, widening exposure for internet-facing services and increasing intrusion risk. Vulnerability exploitation became the leading cause of incidents in 2025, accounting for 40% of cases, while missing authentication controls helped drive the surge. The trend matters because AI-enabled vulnerability scanning is speeding up reconnaissance and exploitation across exposed systems.
Related Happenings
Vulnerability exploitation overtakes credentials as top breach entry path
Target Trend
First: 20.05.2026 11:40
Last: 20.05.2026 11:40
Sources 1
About this happening:
**Vulnerability exploitation** became the top initial access vector for **data breaches** over the past year, displacing **compromised credentials** and signaling a major shift in...
Vulnerability exploitation overtakes credentials as top breach entry path
Target TrendAbout this happening: **Vulnerability exploitation** became the top initial access vector for **data breaches** over the past year, displacing **compromised credentials** and signaling a major shift in...
Verizon 2026 DBIR shows vulnerability exploitation as the top breach access trend in 2025
Target Trend
First: 20.05.2026 03:04
Last: 20.05.2026 03:04
Sources 1
About this happening:
**Vulnerability exploitation** became the leading breach access vector in **2025**, increasing compromise risk across **31,000 incidents** and **22,000+ confirmed breaches**. **Un...
Verizon 2026 DBIR shows vulnerability exploitation as the top breach access trend in 2025
Target TrendAbout this happening: **Vulnerability exploitation** became the leading breach access vector in **2025**, increasing compromise risk across **31,000 incidents** and **22,000+ confirmed breaches**. **Un...
AI-driven attack surge against customer-facing mobile apps in 2026
Target Trend
First: 19.05.2026 15:00
Last: 19.05.2026 15:00
Sources 1
About this happening:
**Customer-facing mobile apps** faced a sharp rise in attacks in **2026**, with **87%** of monitored apps hit versus **55% in 2022**. The trend matters because **agentic AI** is l...
AI-driven attack surge against customer-facing mobile apps in 2026
Target TrendAbout this happening: **Customer-facing mobile apps** faced a sharp rise in attacks in **2026**, with **87%** of monitored apps hit versus **55% in 2022**. The trend matters because **agentic AI** is l...
Mistral AI hit by network compromise
Incident
First: 15.05.2026 01:50
Last: 15.05.2026 01:50
Sources 1
About this happening:
Mistral AI disclosed a **codebase management system compromise** tied to the **Mini Shai-Hulud** supply-chain attack, and the intrusion briefly contaminated some **SDK packages**....
Mistral AI hit by network compromise
IncidentAbout this happening: Mistral AI disclosed a **codebase management system compromise** tied to the **Mini Shai-Hulud** supply-chain attack, and the intrusion briefly contaminated some **SDK packages**....
AI-assisted cyber trend driving more malicious packages, faster exploit development, and slower remediation
Target Trend
First: 04.05.2026 14:58
Last: 04.05.2026 14:58
Sources 1
About this happening:
**AI-assisted cybercrime** is lowering the barrier to entry while **malicious package counts**, **exploit speed**, and **remediation lag** all worsen across software supply chains...
AI-assisted cyber trend driving more malicious packages, faster exploit development, and slower remediation
Target TrendAbout this happening: **AI-assisted cybercrime** is lowering the barrier to entry while **malicious package counts**, **exploit speed**, and **remediation lag** all worsen across software supply chains...
Timeline
-
25.02.2026 16:30 2 articles · 3mo ago
IBM X-Force reports 44% rise in public-facing application attacks
Initial DisclosureIBM X-Force says cyber-attacks exploiting public-facing applications rose 44%, with vulnerability exploitation accounting for 40% of observed incidents in 2025. The assessment links the increase to missing authentication controls and AI-enabled vulnerability scanning, and says threat actors are using AI to conduct research, analyse large data sets, and refine attack paths faster.
Show sources
- 44% Surge in App Exploits as AI Speeds Up Cyberattacks, IBM Finds — www.infosecurity-magazine.com — 25.02.2026 16:30
- The Blast Radius Problem: Stolen Credentials are Weaponizing Agentic AI — www.securityweek.com — 25.02.2026 18:16