• Latest
  • Trending
2025 IBM X-Force Threat Index: Credential theft rises, cyberattacks get stealthier

2025 IBM X-Force Threat Index: Credential theft rises, cyberattacks get stealthier

The return of the king: Middle East fires ignite coal’s massive comeback

India’s three-front push to keep urea flowing amid the gas crisis

Hindustan Unilever reports 21% jump in Q4FY26 profit

Hindustan Unilever reports 21% jump in Q4FY26 profit

Reliance Industries and Bajaj Finance identified as top picks in Prabhudas Lilladher’s BEAT Report

Bajaj Finserv posts steady Q4FY26 performance

Federal Bank stock at 52-week high: Know its Q2FY26 performance

Federal Bank likely to improve earnings in coming quarter

Accel backs Sahi with $33M to expand retail trading platform

Accel backs Sahi with $33M to expand retail trading platform

Waaree Renewable to acquire majority stake in Associated Power for Rs 1,225 crore

Waaree Energies stock down 10% despite strong Q4FY26 profit growth

Indian Bank sees lending rates easing further as RBI holds policy steady

Indian Bank reports steady growth, improved asset quality in Q4FY26

U.S. expands Caribbean energy partnerships as geopolitical concerns rise

Indian market tumbles as fears of Iran war return

Nippon Life AMC posts 29% net profit growth to Rs 385 crore

Nippon Life AMC posts 29% net profit growth to Rs 385 crore

Honeywell declares $1.19 quarterly dividend, sets June 5 payout date

Honeywell declares $1.19 quarterly dividend, sets June 5 payout date

Dollar index outlook: Weakness persists, structural support intact

Dollar index outlook: Weakness persists, structural support intact

Why Bandhan Group acquired Genisys? Will it set a new trend for Indian banks!

Bandhan Bank reports strong Q4FY26 results; stock up 11% in morning trade

  • Market
  • Commodity
  • Personal Finance
  • Data Story
  • News
  • Contact Us
Friday, May 1, 2026
  • Login
Data Biz Times
No Result
View All Result
Data Biz Times
No Result
View All Result

2025 IBM X-Force Threat Index: Credential theft rises, cyberattacks get stealthier

in Media Release
Reading Time: 4 mins read
0
2025 IBM X-Force Threat Index: Credential theft rises, cyberattacks get stealthier
Share on FacebookShare on Twitter

DBT Bureau

Pune, 21 April 2025

IBM released the 2025 X-Force Threat Intelligence Index highlighting that cybercriminals continued to pivot to stealthier tactics, with lower-profile credential theft spiking, while ransomware attacks on enterprises declined. IBM X-Force observed an 84% increase in emails delivering infostealers in 2024 compared to the prior year, a method threat actors relied heavily on to scale identity attacks.

The 2025 report tracks new and existing trends and attack patterns – pulling from incident response engagements, dark web and other threat intelligence sources.

Some key findings in the 2025 report include:

  • Critical infrastructure organizations accounted for 70% of all attacks that IBM X-Force responded to last year, with more than one quarter of these attacks caused by vulnerability exploitation.
  • More cybercriminals opted to steal data (18%) than encrypt it (11%) as advanced detection technologies and increased law enforcement efforts pressure cybercriminals to adopt faster exit paths.
  • Nearly one in three incidents observed in 2024 resulted in credential theft, as attackers invest in multiple pathways to quickly access, exfiltrate and monetize login information.


“Cybercriminals are most often breaking in without breaking anything – capitalizing on identity gaps overflowing from complex hybrid cloud environments that offer attackers multiple access points,” said Mark Hughes, Global Managing Partner of Cybersecurity Services at IBM. “Businesses need to shift away from an ad-hoc prevention mindset and focus on proactive measures such as modernizing authentication management, plugging multi-factor authentication holes and conducting real-time threat hunting to uncover hidden threats before they expose sensitive data.”

Patching Challenges Expose Critical Infrastructure Sectors to Sophisticated Threats
Reliance on legacy technology and slow patching cycles prove to be an enduring challenge for critical infrastructure organizations as cybercriminals exploited vulnerabilities in more than one-quarter of incidents that IBM X-Force responded to in this sector last year.

In reviewing the common vulnerabilities and exposures (CVEs) most mentioned on dark web forums, IBM X-Force found that four out of the top ten have been linked to sophisticated threat actor groups, including nation-state adversaries, escalating the risk of disruption, espionage and financial extortion. Exploit codes for these CVEs were openly traded on numerous forums —fueling a growing market for attacks against power grids, health networks and industrial systems. This sharing of information between financially motivated and nation-state adversaries highlights the increasing need for dark web monitoring to help inform patch management strategies and detect potential threats before they are exploited.

Automated Credential Theft Sparks Chain Reaction
In 2024, IBM X-Force observed an uptick in phishing emails delivering infostealers and early data for 2025 reveals an even greater increase of 180% compared to 2023. This upward trend fueling follow-on account takeovers may be attributed to attackers leveraging AI to create phishing emails at scale.

Credential phishing and infostealers have made identity attacks cheap, scalable and highly profitable for threat actors. Infostealers enable the quick exfiltration of data, reducing their time on target and leaving little forensic residue behind. In 2024, the top five infostealers alone had more than eight million advertisements on the dark web and each listing can contain hundreds of credentials. Threat actors are also selling adversary-in-the-middle (AITM) phishing kits and custom AITM attack services on the dark web to circumvent multi-factor authentication (MFA). The rampant availability of compromised credentials and MFA bypass methods indicates a high-demand economy for unauthorized access that shows no signs of slowing down.

Ransomware Operators Shift to Lower-Risk Models
While ransomware made up the largest share of malware cases in 2024 at 28%, IBM X-Force observed a reduction in ransomware incidents overall compared to the prior year, with identity attacks surging to fill the void.

International takedown efforts are pushing ransomware actors to restructure high-risk models towards more distributed, lower-risk operations. For example, IBM X-Force observed previously well-established malware families including ITG23 (aka Wizard Spider, Trickbot Group) and ITG26 (QakBot, Pikabot) to either completely shut down operations or turn to other malware, including the use of new and short-lived families, as cybercrime groups attempt to find replacements for the botnets that were taken down last year.

Additional findings from the 2025 report include:

  • Evolving AI threats. While large-scale attacks on AI technologies didn’t materialize in 2024, security researchers are racing to identify and fix vulnerabilities before cybercriminals exploit them. Issues like the remote code execution vulnerability that IBM X-Force discovered in a framework for building AI agents will become more frequent. With adoption set to grow in 2025, so will the incentives for adversaries to develop specialized attack toolkits targeting AI, making it imperative that businesses secure the AI pipeline from the start, including the data, the model, the usage, and the infrastructure surrounding the models.
  • Asia and North America most attacked regions. Collectively accounting for nearly 60% of all attacks that IBM X-Force responded to globally, Asia (34%) and North America (24%) experienced more cyberattacks than any other region in 2024.
  • Manufacturing felt the brunt of ransomware attacks. For the fourth consecutive year, manufacturing was the most attacked industry. Facing the highest number of ransomware cases last year, the return on investment for encryption holds strong for this sector due to its extremely low tolerance for downtime.
  • Linux threats. In collaboration with Red Hat Insights, IBM X-Force found that more than half of Red Hat Enterprise Linux customers’ environments had not deployed a patch for at least one critical CVE in their environment, and 18% had not patched five or more. At the same time, IBM X-Force found the most active ransomware families (e.g., Akira, Clop, Lockbit and RansomHub) are now supporting both Windows and Linux versions of their ransomware.

Related Posts

AstraZeneca backs ICC 2026 to strengthen cardiac care training

AstraZeneca backs ICC 2026 to strengthen cardiac care training

0

DBT Bureau Pune, 22 April 2026 AstraZeneca Pharma India Ltd., in collaboration with STEMI India announces the launch of India...

Doshaheen Solutions champions an appraisal system rooted in ‘Kaizen’

Doshaheen Solutions champions an appraisal system rooted in ‘Kaizen’

0

DBT Bureau Bengaluru, 16 April 2026 Doshaheen Solutions, which optimizes software development and testing for over a hundred enterprises, has...

BonV Aero to set up Odisha’s first drone park in Khordha at Rs 300 cr investment

BonV Aero to set up Odisha’s first drone park in Khordha at Rs 300 cr investment

0

DBT Bureau Bengaluru, 11 April 2026 Leading drone startup, BonV Aero has officially broken ground for a Rs 300 crore...

Hindustan Copper records strong operational performance in FY 2025–26

Hindustan Copper records strong operational performance in FY 2025–26

0

DBT Bureau Pune, 4 April 2026 Hindustan Copper Limited (HCL), the only Copper Miner of India, has reported a robust...

The return of the king: Middle East fires ignite coal’s massive comeback
Opinion

India’s three-front push to keep urea flowing amid the gas crisis

0

By Sadananda Mohapatra, Senior Business Journalist Lead Story From Chokepoint to Kharif: India's Fight to Keep Urea Flowing India’s state-owned...

Read moreDetails
Hindustan Unilever reports 21% jump in Q4FY26 profit
Market

Hindustan Unilever reports 21% jump in Q4FY26 profit

0

Athira Sethu Kochi, 1 May 2026 Hindustan Unilever Ltd (HUL) reported a strong performance for the March quarter of FY26,...

Read moreDetails
Reliance Industries and Bajaj Finance identified as top picks in Prabhudas Lilladher’s BEAT Report
Finance

Bajaj Finserv posts steady Q4FY26 performance

0

Athira Sethu Kochi, 1 May 2026 Bajaj Finserv, a diversified non-banking financial company, announced its Q4 FY26 results on April...

Read moreDetails
Federal Bank stock at 52-week high: Know its Q2FY26 performance
Finance

Federal Bank likely to improve earnings in coming quarter

0

Debasis Mohapatra Bengaluru, 30 April 2026 Private sector lender, Federal Bank is expected to report better earnings in coming quarters...

Read moreDetails
DBT Bureau

Data Biz Times © 2024. All Rights Reserved.

Navigate Site

  • Media Release
  • Blog
  • Contact Us
  • Privacy Policy

Follow Us

Welcome Back!

Login to your account below

Forgotten Password?

Retrieve your password

Please enter your username or email address to reset your password.

Log In

Add New Playlist

No Result
View All Result
  • Market
  • News
  • Data Story
  • Business
  • Media Release
  • Tech
  • Contact Us

Data Biz Times © 2024. All Rights Reserved.