DigitalCIO
No Result
View All Result
  • Home
  • Tech News
  • Market Insights
  • CIO Interviews
  • Events and Conferences
  • Opinion and Analysis
  • Resources
DigitalCIO
  • Home
  • Tech News
  • Market Insights
  • CIO Interviews
  • Events and Conferences
  • Opinion and Analysis
  • Resources
No Result
View All Result
Digitalcio
No Result
View All Result
Home Tech News

Total Unique Malware Increases By 171%: WatchGuard

DigitalCIO Bureau by DigitalCIO Bureau
July 9, 2025
in Tech News
0
OpenText Names LockBit  Nastiest Malware Of 2024
75
SHARES
1.2k
VIEWS
Share on FacebookShare on Twitter
New WatchGuard research reveals 171% increase in total unique malware as attackers defy traditional defenses.
Other key findings show an increase in email-borne malware threats, a rise in unique and evasive endpoint threats, and a decline in ransomware—shifts shaped by the AI boom.

The report’s key findings reveal a 171% (quarter-over-quarter) increase in total unique malware detections, the highest the Threat Lab has recorded. Pair this with a significant increase in “zero day malware,” and this signals a sharp rise in evasive threats designed to bypass signature-based detection—that is, traditional security systems that rely on patterns to detect threats. Notably, proactive machine learning (ML) detection offered by IntelligentAV (IAV) surged 323%, highlighting its critical role in detecting advanced malware. Gateway AntiVirus (GAV) hits increased by 30%, and Transport Layer Security (TLS) malware increased by 11 points, underscoring encrypted channels as a primary attack vector. The dramatic surge in IAV and heightened TLS malware emphasizes attackers’ reliance on obfuscation and encryption, challenging conventional defenses. The findings stress the need for enhanced visibility and adaptive security to combat these sophisticated, concealed threats at scale.

The Threat Lab also observed a 712% increase in new malware threats on endpoints. To underscore the severity of this figure, new malware threats have seen a consistent decline over the past three quarters. The top malware threat on the endpoint was LSASS dumper, a credential stealer used for tasks such as logging onto systems, managing passwords, and creating access tokens. Attackers exploit LSASS to access system components by bypassing user mode and performing direct kernel-mode instructions.

“The latest findings in the Q1 2025 Internet Security Report seem to support a larger cybersecurity industry trend: the AI war is here. Attackers are increasingly relying on social engineering and phishing techniques supercharged by AI tools,” said Corey Nachreiner, chief security officer, WatchGuard Technologies. “Attackers now have the capabilities to launch highly targeted campaigns at scale using automated pipelines, emphasizing the need for organizations to adopt robust, precise, and powerful security measures to stay ahead of the advancements in AI and the evolving cyber risks.”

Additional key findings from WatchGuard’s Q1 2025 Internet Security Report include:

  • Ransomware declined 85% from the previous quarter, although the second most detected malware threat was a ransomware payload: Termite ransomware. This supports the industry trend of a decrease in crypto ransomware, the malware that encrypts files. Attackers are now shifting toward data theft instead of encryption, as improvements in data backups and recovery have been made.
  • Scripts, files derived from or using a scripting programming language, are down by about half this quarter, the lowest they’ve ever been. Historically, the Threat Lab has observed scripts as the number one attack vector for malware detection on endpoints. Other Living off The Land (LoTL) techniques, such as Windows, saw the highest increase from quarter to quarter at 18%, filling the gap left by scripts.
  • The top malware detected over encrypted connections was Trojan.Agent.FZPI, a new malicious HTML file that merges legitimate-looking files with encrypted communication. This threat combines several techniques that threat actors have employed over the last few years into one super phishing attachment. Organizations must implement robust TLS inspection, behavioral analysis, and endpoint protection to detect and neutralize this threat.
  • In Q1 2025, the most widespread malware was Application.Cashback.B.0835E4A4, a newly identified threat and among the most prevalent malware families ever recorded, with the highest impact in Chile at 76% and Ireland in second at 65%. The prevalence of Application.Cashback variants signal the need for region-specific defenses to address these sophisticated threats.
  • The unique number of network signatures triggered, or known attacks detected on networks, decreased by 16% from last quarter as attackers focused on a narrower set of exploits. The network attack landscape highlights that while new exploits do emerge, attackers continue to heavily exploit unpatched legacy vulnerabilities at scale, forcing organizations to address both fronts simultaneously.
  • Malware threats are continuing to emerge via email rather than the web, suggesting that threat actors are targeting users with traditional phishing techniques, as AI makes it easier to compose believable spear phishing messages. However, AI and machine learning-based tools are detecting significantly more threats at the network and endpoint perimeter in Q1 2025.

Consistent with WatchGuard’s Unified Security Platform approach and the WatchGuard Threat Lab’s previous quarterly research updates, the data analyzed in this quarterly report is based on anonymized, aggregated threat intelligence from active WatchGuard network and endpoint products whose owners have opted to share in direct support of WatchGuard’s research efforts.

Tags: WatchGuard
Share30Tweet19
DigitalCIO Bureau

DigitalCIO Bureau

Recommended For You

Punjab National Bank Appoints Ashwini Pandey as GM and Data Protection Officer

by DigitalCIO Bureau
May 11, 2026
0
Punjab National Bank Appoints Ashwini Pandey as GM and Data Protection Officer

Punjab National Bank (PNB) has appointed Ashwini Pandey as General Manager and Data Protection Officer (DPO), underscoring the state-owned lender’s sharpened focus on cybersecurity, data governance and regulatory...

Read moreDetails

Adobe opens new Noida office as India becomes central to its AI and product strategy

by DigitalCIO Bureau
May 11, 2026
0
Adobe opens new Noida office as India becomes central to its AI and product strategy

New campus in Sector 129 houses more than 700 employees and adds to the company’s growing engineering and customer-facing footprint in India. Adobe has opened a new office...

Read moreDetails

Sumit Chadha Appointed as Chief Technology Officer at IIFL Home Loans

by DigitalCIO Bureau
May 8, 2026
0
Sumit Chadha Appointed as Chief Technology Officer at IIFL Home Loans

IIFL Home Loans has announced the appointment of Sumit Chadha as its new Chief Technology Officer (CTO), reinforcing the company’s commitment to accelerating its digital transformation and enhancing...

Read moreDetails

Airtel Business Launches Airtel Secure Workforce for Protecting Enterprises with a Hybrid Workforce

by DigitalCIO Bureau
May 8, 2026
0
Airtel Business Launches Airtel Secure Workforce for Protecting Enterprises with a Hybrid Workforce

Airtel Business, the B2B arm of Bharti Airtel has launched Airtel Secure Workforce, a fully-managed and unified Zero Trust Architecture (ZTA) security platform with an end-to-end, compliance-ready security...

Read moreDetails

IBM and Yotta Collaborate to Bring Agentic AI Platform to Enterprises in India

by DigitalCIO Bureau
May 7, 2026
0
IBM and Yotta Collaborate to Bring Agentic AI Platform to Enterprises in India

IBM and Yotta Data Services have announced plans to collaborate on a new sovereign Agentic AI platform aimed at enterprises and government organizations in India. The platform is...

Read moreDetails
Next Post
Okaya Power Group Appoints Prakash Dharmani as CIO

Okaya Power Group Appoints Prakash Dharmani as CIO

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Related News

AI, digital marketing key skills to boost growth

October 22, 2019
AWS Announces Five New Amazon SageMaker Capabilities

AWS Announces Five New Amazon SageMaker Capabilities

December 4, 2023
Majority Of EMEA IT Professionals Call For Greater AI Regulation

Majority Of EMEA IT Professionals Call For Greater AI Regulation

November 9, 2024

Browse by Category

  • Acquisition
  • Appointment
  • Archive
  • Artificial Intelligence
  • CIO Interviews
  • Cloud
  • Datacenter
  • Events and Conferences
  • Market Insights
  • News
  • Opinion and Analysis
  • Products
  • Resources
  • Security
  • Storage
  • Tech News
  • Telecom
Digitalcio

Welcome to DigitalCIO, your ultimate source for staying ahead in the ever-evolving world of technology and business.

BROWSE BY TAG

Accenture Acquisition AI Appointment artificial intelligence Artificial Intelligence and Machine Learning AWS Big Data and Analytics Blockchain CISCO Cloud Computing Cloudflare Commvault CrowdStrike Cybersecurity Digital Transformation E-books Fortinet Gartner Generative AI Google Cloud HCLTech IBM Infographics Infosys Internet of Things (IoT) Kaspersky NTT DATA NVIDIA Palo Alto Networks Panel Discussion Qlik Salesforce ServiceNow Sophos Tata Consultancy Services TCS Tenable Trend Micro Veeam Veeam Software Vertiv Webinars Whitepaper Zscaler

CATEGORIES

  • Tech News
  • Market Insights
  • CIO Interviews
  • Events and Conferences
  • Opinion and Analysis
  • Resources
  • Archive

NAVIGATION

  • Home
  • About Us
  • Advertise with Us
  • Contact Us

© 2024 digitalcio.in - All rights reserved.

No Result
View All Result
  • Home
  • Tech News
  • Market Insights
  • CIO Interviews
  • Events and Conferences
  • Opinion and Analysis
  • Resources

© 2024 digitalcio.in - All rights reserved.

Are you sure want to unlock this post?
Unlock left : 0
Are you sure want to cancel subscription?