Find notable cyber news and cases, enriched with sources, timelines, and signals.

2025 Global cybercrime surge across credentials, ransomware, DDoS, and KEV exploitation

Target Trend
First reported
Last updated
Happening score
H score 39
1 unique sources, 1 articles

Summary

Hide ▲

In 2025, global cybercrime activity intensified across compromised credentials, ransomware, DDoS, and KEV exploitation, raising risk for organizations worldwide. The trend matters because it shows a broader shift toward mass exploitation and stolen-access abuse rather than isolated attacks.

Related Happenings

CISA KEV remediation lag is widening as exploit timelines shrink

Target Trend
First: 10.04.2026 17:01 Last: 10.04.2026 17:01 Sources 1

About this happening: **CISA KEV** remediation lag is widening across **10,000 organizations**, leaving enterprise exposures open longer than attackers need to weaponize them. Critical vulnerabilities...

44% Rise in public-facing application exploitation as vulnerability-led incidents dominated 2025

Target Trend
First: 25.02.2026 16:30 Last: 25.02.2026 16:30 Sources 1

About this happening: Attacks against **public-facing applications** jumped **44%**, widening exposure for internet-facing services and increasing intrusion risk. **Vulnerability exploitation** became...

Manufacturing remained the top ransomware target across 2024-2025 reports

Target Trend
First: 10.10.2025 21:14 Last: 10.10.2025 21:14 Sources 1

About this happening: **Manufacturing** remained **the top ransomware target** across 2025 industry measurements, with one finding showing **22% of reported attacks** and **1,314 of 6,046 attacks** fro...

Timeline

  1. 29.04.2026 16:00 2 articles · 28d ago

    2025 global cybercrime surge in credentials, ransomware, and exploitation

    Initial Disclosure

    A 2025 global cybercrime surge is marked by nearly 2.9 billion compromised credentials, including 347 million credentials obtained by infostealers on around 3.9 million infected machines, 7,549 ransomware victims, 238 vulnerabilities added to CISA's KEV Catalog, 250 new hacktivist groups, and a 400% increase in DDoS attacks to 3,500. The same threat landscape shows rapid growth in macOS infostealer infections, from under 1000 in 2024 to over 70,000 in 2025, along with AI-assisted malware, prompt injection attacks designed to hijack agents, and fully autonomous, agentic malicious workflows.

    Show sources