Global cyber attacks jumped 44% last year
A new report from Check Point Software warns of new tactics from threat actors
The number of cyber attacks worldwide rose by 44% last year, fueled by evolving nation-state attacks and the increasing prevalence of generative AI.
In its annual report, Check Point Software said nation-states are changing their strategy, shifting from acute attacks to chronic campaigns aimed at eroding trust and destabilizing systems.
AI-powered disinformation and influence campaigns targeted a third of global elections between September 2023 and February 2024, researchers said.
The Russian-linked APT group CopyCop, for example, targeted the June 2024 US primary elections with fabricated news segments featuring deepfake portrayals of political figures, and the Islamic Revolutionary Guard Corps (IRGC) using 'hack-and-leak' tactics during the presidential elections.
"Cybersecurity in 2025 is not only about protecting networks; it’s about safeguarding trust in our systems and institutions," said Maya Horowitz, Check Point's VP of research.
"The State of Global Cyber Security 2025 highlights the rapid evolution of threats and reinforces the need for resilience in the face of persistent and complex adversaries."
The evolution of ransomware
Ransomware is also evolving, according to the report, with data exfiltration and extortion overtaking encryption-based attacks as the primary ransomware tactic, simplifying operations and maximizing payouts.
Sign up today and you will receive a free copy of our Future Focus 2026 report - the leading resource for IT decision-maker insight on priorities and investment areas in AI, security and more.
The little-known ransomware group Dark Angels, for example, reportedly extracted a $75 million payment from one Fortune 50 company in 2024.
Healthcare became the second most targeted industry for ransomware, with a 47% increase in attacks year-over-year, highlighting a move away from any 'ethical' approach from ransomware groups.
Meanwhile, compromised routers, VPNs, and other edge devices served as key entry points for attackers last year, with more than 200,000 devices controlled by advanced botnets like Raptor Train, operated by state-sponsored actors.
The report highlights the rising tide of infostealers, with stolen data traded on platforms like Telegram or underground criminal marketplaces such as the Russian Market.
RELATED WHITEPAPER
"Following the decline of the big botnets, infostealers have become a significant and wide-scale threat. They offer cyber criminals efficient ways to steal credentials and session tokens, contributing to financial fraud and identity theft and acting as an entry point to corporate networks," said Check Point threat intelligence group manager Sergey Shykevich.
"As companies increasingly adopt remote work and bring-your-own-device policies, it is essential that they implement protective strategies."
AI attacks gain traction
A key talking point in the Check Point annual report centered around AI-powered financial crime. The security firm recorded a sharp increase in this regard across 2024 alongside supply chain attacks on open source projects.
Researchers warned that organizations will face increasing pressure this year thanks to new cyber security regulations, including the EU IoT Regulations, SEC Cyber Security Rules, the Digital Operational Resilience Act (DORA) and the NIS2 Directive.
CISOs, Check Point recommended, should strengthen BYOD Security, implementing strict policies and deploying endpoint protection.
They should also invest in threat intelligence and enhance patch management to address known vulnerabilities proactively and limit exposure to widespread exploits.
Edge devices should be secured, with robust security measures for routers, VPNs, and IoT devices; and they should focus on resilience, preparing for persistent threats with comprehensive incident response plans and continuous monitoring.
Emma Woollacott is a freelance journalist writing for publications including the BBC, Private Eye, Forbes, Raconteur and specialist technology titles.
-
Anthropic suspends Fabel and Mythos systems "for all users"News Despite complying with the government, Anthropic suggests it's only a "potential narrow, non-universal jailbreak"
-
UK and Japan to collaborate on frontier technologiesNews The Frontier Technology Partnership (FTP) will include the development of quantum technologies and closer cooperation on AI semiconductors
-
Hackers are turning up at law firms to gain physical access to machinesNews The FBI is warning companies to look out for fake IT staff
-
UK wants an AI-powered anti-hacking systemNews GCHQ is building a national cyber defence capability powered by AI – though it may take five years
-
GitHub internal repositories exfiltrated via malicious VS Code extensionNews The breach has been claimed by the TeamPCP hacking group, which said it is offering the data for sale
-
UK government calls on firms to sign Cyber Resilience Pledge as security sector boomsNews With new figures showing a boom in the country's cybersecurity sector, the government calling on businesses to make the most of the industry’s expertise
-
‘We’re not investing as much as we should in their skills and development’: Skills shortages remain a key factor in security breaches — and things could get worse with AI in the equationNews Skills capabilities remain a key factor in security breaches, according to a new study
-
Pay up or expect attrition: 77% of cyber professionals missed out on pay rises last year – and almost half now plan to switch rolesNews Organizations are overlooking cyber pros when it comes to pay increases, and it could cost them dearly
-
The rise of teen hackers ‘makes for a good headline’, but cyber crime activities peak later in lifeNews With family responsibilities and mortgages to pay, it's not teenagers dishing out malware or carrying out cyber extortion
