Welcome to March 2025 Threat Highlight Report.
This month report provides a comprehensive overview of current cybersecurity threats and incident trends. Overall, the report emphasizes evolving attack vectors, increased exploitation of network infrastructure, and the North American and European sectors.
March report covers
The report details a surge in email-based malware, ongoing exploitation of edge devices and supply chain vulnerabilities, and record ransomware activity, with European and manufacturing sectors heavily targeted. It also highlights increased identity attacks, credential compromises, and sophisticated threat campaigns leveraging cloud services and network infrastructure for espionage and data theft.
The key findings in the March 2025 Threat Highlight Report include:
- A 268% surge in email-delivered malware, dominated by Snake Keylogger and Formbook campaigns, with regional differences in sightings and lure themes.
- Continued mass exploitation of edge devices, with Chinese actor UNC5337 targeting Ivanti devices using SPAWN malware variants, illustrating ongoing supply chain vulnerabilities.
- A record month for ransomware victims, notably Cl0p exploiting zero-day vulnerabilities, with threat actors also misusing OAuth apps for infiltration.
- Widespread cloud misconfigurations, with 40% of networks allowing unrestricted access to major cloud providers, enabling malware spread and cloud-based resource abuse.
- Cyber espionage campaigns leveraging cloud services and exploiting public-facing infrastructure, including incidents involving Microsoft's AI services and ISP routers.
- The year 2024 was characterized by dominant threats such as edge exploitation, software supply chain attacks, and increased identity and credential attacks, emphasizing evolving attack surfaces.
Be Ahead of the Game!
Stay informed about the latest cybersecurity threats and trends by subscribing to WithSecure's monthly threat highlights report!
Our comprehensive report provides an overview of last month's cybersecurity news, the changing threat landscape, and relevant advice.
Don't miss out on valuable insights - fill out the form to receive our report now!