DigitalCIO
No Result
View All Result
  • Home
  • Tech News
  • Market Insights
  • CIO Interviews
  • Events and Conferences
  • Opinion and Analysis
  • Resources
DigitalCIO
  • Home
  • Tech News
  • Market Insights
  • CIO Interviews
  • Events and Conferences
  • Opinion and Analysis
  • Resources
No Result
View All Result
Digitalcio
No Result
View All Result
Home Tech News

Total Unique Malware Increases By 171%: WatchGuard

DigitalCIO Bureau by DigitalCIO Bureau
July 9, 2025
in Tech News
0
OpenText Names LockBit  Nastiest Malware Of 2024
74
SHARES
1.2k
VIEWS
Share on FacebookShare on Twitter
New WatchGuard research reveals 171% increase in total unique malware as attackers defy traditional defenses.
Other key findings show an increase in email-borne malware threats, a rise in unique and evasive endpoint threats, and a decline in ransomware—shifts shaped by the AI boom.

The report’s key findings reveal a 171% (quarter-over-quarter) increase in total unique malware detections, the highest the Threat Lab has recorded. Pair this with a significant increase in “zero day malware,” and this signals a sharp rise in evasive threats designed to bypass signature-based detection—that is, traditional security systems that rely on patterns to detect threats. Notably, proactive machine learning (ML) detection offered by IntelligentAV (IAV) surged 323%, highlighting its critical role in detecting advanced malware. Gateway AntiVirus (GAV) hits increased by 30%, and Transport Layer Security (TLS) malware increased by 11 points, underscoring encrypted channels as a primary attack vector. The dramatic surge in IAV and heightened TLS malware emphasizes attackers’ reliance on obfuscation and encryption, challenging conventional defenses. The findings stress the need for enhanced visibility and adaptive security to combat these sophisticated, concealed threats at scale.

The Threat Lab also observed a 712% increase in new malware threats on endpoints. To underscore the severity of this figure, new malware threats have seen a consistent decline over the past three quarters. The top malware threat on the endpoint was LSASS dumper, a credential stealer used for tasks such as logging onto systems, managing passwords, and creating access tokens. Attackers exploit LSASS to access system components by bypassing user mode and performing direct kernel-mode instructions.

“The latest findings in the Q1 2025 Internet Security Report seem to support a larger cybersecurity industry trend: the AI war is here. Attackers are increasingly relying on social engineering and phishing techniques supercharged by AI tools,” said Corey Nachreiner, chief security officer, WatchGuard Technologies. “Attackers now have the capabilities to launch highly targeted campaigns at scale using automated pipelines, emphasizing the need for organizations to adopt robust, precise, and powerful security measures to stay ahead of the advancements in AI and the evolving cyber risks.”

Additional key findings from WatchGuard’s Q1 2025 Internet Security Report include:

  • Ransomware declined 85% from the previous quarter, although the second most detected malware threat was a ransomware payload: Termite ransomware. This supports the industry trend of a decrease in crypto ransomware, the malware that encrypts files. Attackers are now shifting toward data theft instead of encryption, as improvements in data backups and recovery have been made.
  • Scripts, files derived from or using a scripting programming language, are down by about half this quarter, the lowest they’ve ever been. Historically, the Threat Lab has observed scripts as the number one attack vector for malware detection on endpoints. Other Living off The Land (LoTL) techniques, such as Windows, saw the highest increase from quarter to quarter at 18%, filling the gap left by scripts.
  • The top malware detected over encrypted connections was Trojan.Agent.FZPI, a new malicious HTML file that merges legitimate-looking files with encrypted communication. This threat combines several techniques that threat actors have employed over the last few years into one super phishing attachment. Organizations must implement robust TLS inspection, behavioral analysis, and endpoint protection to detect and neutralize this threat.
  • In Q1 2025, the most widespread malware was Application.Cashback.B.0835E4A4, a newly identified threat and among the most prevalent malware families ever recorded, with the highest impact in Chile at 76% and Ireland in second at 65%. The prevalence of Application.Cashback variants signal the need for region-specific defenses to address these sophisticated threats.
  • The unique number of network signatures triggered, or known attacks detected on networks, decreased by 16% from last quarter as attackers focused on a narrower set of exploits. The network attack landscape highlights that while new exploits do emerge, attackers continue to heavily exploit unpatched legacy vulnerabilities at scale, forcing organizations to address both fronts simultaneously.
  • Malware threats are continuing to emerge via email rather than the web, suggesting that threat actors are targeting users with traditional phishing techniques, as AI makes it easier to compose believable spear phishing messages. However, AI and machine learning-based tools are detecting significantly more threats at the network and endpoint perimeter in Q1 2025.

Consistent with WatchGuard’s Unified Security Platform approach and the WatchGuard Threat Lab’s previous quarterly research updates, the data analyzed in this quarterly report is based on anonymized, aggregated threat intelligence from active WatchGuard network and endpoint products whose owners have opted to share in direct support of WatchGuard’s research efforts.

Tags: WatchGuard
Share30Tweet19
DigitalCIO Bureau

DigitalCIO Bureau

Recommended For You

Meta to Borrow $30 Billion for AI Data Centers

by DigitalCIO Bureau
November 1, 2025
0
Meta to Borrow $30 Billion for AI Data Centers

Even the richest tech companies need external financing to realize their ambitious plans. Meta, the parent company of Facebook, WhatsApp, and Instagram, has launched a massive $30 billion...

Read moreDetails

DXC Unveils Xponential to Simplify Large-Scale AI Adoption

by DigitalCIO Bureau
November 1, 2025
0
DXC Unveils Xponential to Simplify Large-Scale AI Adoption

DXC Technology has announced Xponential, a next-generation AI orchestration blueprint. Already a proven framework utilized by leading global enterprises, Xponential simplifies the complexity that often stalls large-scale AI...

Read moreDetails

by DigitalCIO Bureau
October 31, 2025
0
Cybercrime AI experimentation in the dark web – new Kaspersky study

At the Security Analyst Summit 2025, Kaspersky presented the results of a security audit that has exposed a significant security flaw enabling unauthorized access to all connected vehicles...

Read moreDetails

Akamai and NVIDIA Launch AI Inferencing Platform

by DigitalCIO Bureau
October 31, 2025
0
Akamai and NVIDIA Launch AI Inferencing Platform

Akamai Technologies has launched Akamai Inference Cloud, a platform that redefines where and how AI is used by expanding inference from core data centers to the edge of the...

Read moreDetails

Datamatics Business Solutions Appoints Kartik Nagarajan as CEO

by DigitalCIO Bureau
October 30, 2025
0
Datamatics Business Solutions Appoints Kartik Nagarajan as CEO

Datamatics Business Solutions Ltd (DBSL), a global partner in data-driven marketing, managed outsourcing services for CPA firms and finance and accounting (F&A) solutions, has announced the appointment of Kartik Nagarajan as its Chief...

Read moreDetails
Next Post
Okaya Power Group Appoints Prakash Dharmani as CIO

Okaya Power Group Appoints Prakash Dharmani as CIO

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Related News

GoTo Releases New Integrations Across Their IT Solutions Suite

GoTo Releases New Integrations Across Their IT Solutions Suite

August 28, 2024
Tenable and Siemens Energy Expand Collaboration on OT Cybersecurity

Tenable and Siemens Energy Expand Collaboration on OT Cybersecurity

October 30, 2023
LogRhythm Expands R&D Investment in India

LogRhythm Expands R&D Investment in India

November 9, 2023

Browse by Category

  • Acquisition
  • Appointment
  • Archive
  • Artificial Intelligence
  • CIO Interviews
  • Cloud
  • Datacenter
  • Events and Conferences
  • Market Insights
  • News
  • Opinion and Analysis
  • Products
  • Resources
  • Security
  • Storage
  • Tech News
  • Telecom
Digitalcio

Welcome to DigitalCIO, your ultimate source for staying ahead in the ever-evolving world of technology and business.

BROWSE BY TAG

Acquisition AI Appointment artificial intelligence Artificial Intelligence and Machine Learning AWS Barracuda Big Data and Analytics Blockchain CISCO Cloud Computing Cloudflare Commvault CrowdStrike Cybersecurity Digital Transformation Dynatrace E-books Fortinet Gartner GenAI Generative AI Google Cloud Honeywell IBM Infographics Internet of Things (IoT) Kaspersky Microsoft Netskope New Relic NTT DATA Palo Alto Networks Panel Discussion Qlik Salesforce Sophos Tenable Trend Micro Veeam Veeam Software Vertiv Webinars Whitepaper Zscaler

CATEGORIES

  • Tech News
  • Market Insights
  • CIO Interviews
  • Events and Conferences
  • Opinion and Analysis
  • Resources
  • Archive

NAVIGATION

  • Home
  • About Us
  • Advertise with Us
  • Contact Us

© 2024 digitalcio.in - All rights reserved.

No Result
View All Result
  • Home
  • Tech News
  • Market Insights
  • CIO Interviews
  • Events and Conferences
  • Opinion and Analysis
  • Resources

© 2024 digitalcio.in - All rights reserved.

Are you sure want to unlock this post?
Unlock left : 0
Are you sure want to cancel subscription?