DigitalCIO
No Result
View All Result
  • Home
  • Tech News
  • Market Insights
  • CIO Interviews
  • Events and Conferences
  • Opinion and Analysis
  • Resources
DigitalCIO
  • Home
  • Tech News
  • Market Insights
  • CIO Interviews
  • Events and Conferences
  • Opinion and Analysis
  • Resources
No Result
View All Result
Digitalcio
No Result
View All Result
Home Tech News

Total Unique Malware Increases By 171%: WatchGuard

DigitalCIO Bureau by DigitalCIO Bureau
July 9, 2025
in Tech News
0
OpenText Names LockBit  Nastiest Malware Of 2024
74
SHARES
1.2k
VIEWS
Share on FacebookShare on Twitter
New WatchGuard research reveals 171% increase in total unique malware as attackers defy traditional defenses.
Other key findings show an increase in email-borne malware threats, a rise in unique and evasive endpoint threats, and a decline in ransomware—shifts shaped by the AI boom.

The report’s key findings reveal a 171% (quarter-over-quarter) increase in total unique malware detections, the highest the Threat Lab has recorded. Pair this with a significant increase in “zero day malware,” and this signals a sharp rise in evasive threats designed to bypass signature-based detection—that is, traditional security systems that rely on patterns to detect threats. Notably, proactive machine learning (ML) detection offered by IntelligentAV (IAV) surged 323%, highlighting its critical role in detecting advanced malware. Gateway AntiVirus (GAV) hits increased by 30%, and Transport Layer Security (TLS) malware increased by 11 points, underscoring encrypted channels as a primary attack vector. The dramatic surge in IAV and heightened TLS malware emphasizes attackers’ reliance on obfuscation and encryption, challenging conventional defenses. The findings stress the need for enhanced visibility and adaptive security to combat these sophisticated, concealed threats at scale.

The Threat Lab also observed a 712% increase in new malware threats on endpoints. To underscore the severity of this figure, new malware threats have seen a consistent decline over the past three quarters. The top malware threat on the endpoint was LSASS dumper, a credential stealer used for tasks such as logging onto systems, managing passwords, and creating access tokens. Attackers exploit LSASS to access system components by bypassing user mode and performing direct kernel-mode instructions.

“The latest findings in the Q1 2025 Internet Security Report seem to support a larger cybersecurity industry trend: the AI war is here. Attackers are increasingly relying on social engineering and phishing techniques supercharged by AI tools,” said Corey Nachreiner, chief security officer, WatchGuard Technologies. “Attackers now have the capabilities to launch highly targeted campaigns at scale using automated pipelines, emphasizing the need for organizations to adopt robust, precise, and powerful security measures to stay ahead of the advancements in AI and the evolving cyber risks.”

Additional key findings from WatchGuard’s Q1 2025 Internet Security Report include:

  • Ransomware declined 85% from the previous quarter, although the second most detected malware threat was a ransomware payload: Termite ransomware. This supports the industry trend of a decrease in crypto ransomware, the malware that encrypts files. Attackers are now shifting toward data theft instead of encryption, as improvements in data backups and recovery have been made.
  • Scripts, files derived from or using a scripting programming language, are down by about half this quarter, the lowest they’ve ever been. Historically, the Threat Lab has observed scripts as the number one attack vector for malware detection on endpoints. Other Living off The Land (LoTL) techniques, such as Windows, saw the highest increase from quarter to quarter at 18%, filling the gap left by scripts.
  • The top malware detected over encrypted connections was Trojan.Agent.FZPI, a new malicious HTML file that merges legitimate-looking files with encrypted communication. This threat combines several techniques that threat actors have employed over the last few years into one super phishing attachment. Organizations must implement robust TLS inspection, behavioral analysis, and endpoint protection to detect and neutralize this threat.
  • In Q1 2025, the most widespread malware was Application.Cashback.B.0835E4A4, a newly identified threat and among the most prevalent malware families ever recorded, with the highest impact in Chile at 76% and Ireland in second at 65%. The prevalence of Application.Cashback variants signal the need for region-specific defenses to address these sophisticated threats.
  • The unique number of network signatures triggered, or known attacks detected on networks, decreased by 16% from last quarter as attackers focused on a narrower set of exploits. The network attack landscape highlights that while new exploits do emerge, attackers continue to heavily exploit unpatched legacy vulnerabilities at scale, forcing organizations to address both fronts simultaneously.
  • Malware threats are continuing to emerge via email rather than the web, suggesting that threat actors are targeting users with traditional phishing techniques, as AI makes it easier to compose believable spear phishing messages. However, AI and machine learning-based tools are detecting significantly more threats at the network and endpoint perimeter in Q1 2025.

Consistent with WatchGuard’s Unified Security Platform approach and the WatchGuard Threat Lab’s previous quarterly research updates, the data analyzed in this quarterly report is based on anonymized, aggregated threat intelligence from active WatchGuard network and endpoint products whose owners have opted to share in direct support of WatchGuard’s research efforts.

Tags: WatchGuard
Share30Tweet19
DigitalCIO Bureau

DigitalCIO Bureau

Recommended For You

Securonix Introduces Agentic Mesh and the First Productivity-Based AI Model for the SOC

by DigitalCIO Bureau
February 26, 2026
0
Securonix Introduces Agentic Mesh and the First Productivity-Based AI Model for the SOC

Powered by Sam, the AI SOC Analyst, the Securonix Agentic Mesh delivers governed, explainable AI that measurably improves SOC productivity and enables board-ready outcomes. Securonix, Inc., in collaboration...

Read moreDetails

TCS and GitLab partner to bring AI‑powered orchestration to accelerate software innovation at scale

by DigitalCIO Bureau
February 26, 2026
0
TCS and GitLab partner to bring AI‑powered orchestration to accelerate software innovation at scale

Global collaboration to accelerate enterprise innovation through intelligent orchestration and agentic AI automation across the DevSecOps lifecycle Tata Consultancy Services (TCS) has partnered with GitLab Inc., the intelligent...

Read moreDetails

Hexaware to Transform Software Engineering with AI-powered SDLC Solutions

by DigitalCIO Bureau
February 26, 2026
0
Hexaware to Transform Software Engineering with AI-powered SDLC Solutions

Hexaware RapidX to turn AI-assisted coding into production-grade delivery discipline Hexaware Technologies has expanded its collaboration with Amazon Web Services (AWS) to deliver AI-enabled software development lifecycle (SDLC)...

Read moreDetails

TCS and ServiceNow partner to accelerate large-scale AI adoption for enterprises

by DigitalCIO Bureau
February 23, 2026
0
TCS and ServiceNow partner to accelerate large-scale AI adoption for enterprises

The partnership will build industry-specific AI solutions that transform manual, fragmented processes into intelligent, autonomous workflows that learn and improve on their own Tata Consultancy Services and ServiceNow,...

Read moreDetails

TryfactaConnex Announces $7.7 Billion Initial Investment in AI Infrastructure Platform, signs a MOU in Uttar Pradesh, India, and Multi-Gigawatt Expansion Strategy

by DigitalCIO Bureau
February 21, 2026
0
TryfactaConnex Announces $7.7 Billion Initial Investment in AI Infrastructure Platform, signs a MOU in Uttar Pradesh, India, and Multi-Gigawatt Expansion Strategy

TryfactaConnex, an affiliate of Tryfacta, Inc., aims to build the world’s largest AI data energy complex with grid, nuclear, gas, and solar to establish Hyperscale AI Data Centers...

Read moreDetails
Next Post
Okaya Power Group Appoints Prakash Dharmani as CIO

Okaya Power Group Appoints Prakash Dharmani as CIO

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Related News

Athenta Technologies Dedicated Command and Control Centre Platform Manages Surveillance & Security

November 12, 2019

Amazon Pay launches peer-to-peer payments in India

April 29, 2019

Polycom Trio 8500, Smart Conferencing Solution for All Business Meetings

March 12, 2019

Browse by Category

  • Acquisition
  • Appointment
  • Archive
  • Artificial Intelligence
  • CIO Interviews
  • Cloud
  • Datacenter
  • Events and Conferences
  • Market Insights
  • News
  • Opinion and Analysis
  • Products
  • Resources
  • Security
  • Storage
  • Tech News
  • Telecom
Digitalcio

Welcome to DigitalCIO, your ultimate source for staying ahead in the ever-evolving world of technology and business.

BROWSE BY TAG

Acquisition AI Appointment artificial intelligence Artificial Intelligence and Machine Learning AWS Barracuda Big Data and Analytics Blockchain CISCO Cloud Computing Cloudflare Commvault CrowdStrike Cybersecurity Digital Transformation Dynatrace E-books Fortinet Gartner GenAI Generative AI Google Cloud IBM Infographics Internet of Things (IoT) Kaspersky Microsoft NTT DATA NVIDIA Palo Alto Networks Panel Discussion Qlik Salesforce ServiceNow Sophos TCS Tenable Trend Micro Veeam Veeam Software Vertiv Webinars Whitepaper Zscaler

CATEGORIES

  • Tech News
  • Market Insights
  • CIO Interviews
  • Events and Conferences
  • Opinion and Analysis
  • Resources
  • Archive

NAVIGATION

  • Home
  • About Us
  • Advertise with Us
  • Contact Us

© 2024 digitalcio.in - All rights reserved.

No Result
View All Result
  • Home
  • Tech News
  • Market Insights
  • CIO Interviews
  • Events and Conferences
  • Opinion and Analysis
  • Resources

© 2024 digitalcio.in - All rights reserved.

Are you sure want to unlock this post?
Unlock left : 0
Are you sure want to cancel subscription?