logo
DirectDefense Releases Annual Security Operations Threat Report Identifying Top Attack Tactics and Emerging Threats for 2025

DirectDefense Releases Annual Security Operations Threat Report Identifying Top Attack Tactics and Emerging Threats for 2025

Business Wire21-04-2025

DENVER--(BUSINESS WIRE)-- DirectDefense, Inc., an information security services company, today released its ' 2025 Security Operations Threat Report' which identifies the type and frequency of threats, offers insight into attacker behavior and the evolution of security threats, and forecasts the biggest threats to be aware of for the remainder of 2025.
In 2024, DirectDefense processed more than 10 million log events, ensuring rapid detection, response, and mitigation of potential cyber threats. The company discovered that adversaries have refined their techniques, blending social engineering with AI and automation to evade detection. DirectDefense mapped these alerts to the MITRE ATT&CK® framework to identify these top five tactics:
1. Initial Access – The Gateway to Compromise
Most Observed Technique: Valid Accounts – leveraging stolen credentials for unauthorized access.
Alerts Triggered: First Ingress Authentication from Country, Multiple Country Ingress Authentications, Multiple Wireless Country Authentications.
2. Persistence – Remaining Hidden in the Environment
Most Observed Technique: MFA Interception – attackers manipulating MFA settings to maintain access.
Alerts Triggered: New MFA Authenticator App Added, Account Manipulation.
3. Lateral Movement – Expanding Control Across the Network
Most Observed Technique: Valid Accounts – using stolen credentials to escalate privileges.
Alerts Triggered: Lateral Movement – Local Credentials.
4. Execution – Deploying Malicious Payloads
Most Observed Technique: Malicious File Execution – tricking users into running malware via phishing and social engineering.
Alerts Triggered: Malicious File Detected.
5. Credential Access – Harvesting Sensitive Authentication Data
Most Observed Technique: Brute Force – automated attacks on authentication systems.
Alerts Triggered: Account Lockout Events.
These attack tactics highlight a growing focus on identity compromise by bad actors, which requires organizations to enforce zero trust principles and employ strong identity verification for all access requests. Additionally, organizations should:
monitor identity-based events rigorously to detect anomalous MFA registrations and account modifications
restrict lateral movement by implementing network segmentation and least privilege access
enhance endpoint defenses through behavior-based detections and real-time anomaly detection
strengthen password policies and enforce MFA with phishing-resistant methods
Emerging threats for 2025
Based on these attack tactics, the DirectDefense team identified emerging threats that top the list for security concerns:
Faster and more sophisticated attacks: The average time from initial access to domain control has shrunk to under two hours, while ransomware deployment occurs in as little as six hours.
AI's double-edged sword: While AI helps cut through security alert noise, attackers are also leveraging AI to craft more convincing phishing attempts, deepfake scams, and automated attacks.
Security vendor consolidation risks: Major vendors like Fortinet and Cisco faced security vulnerabilities in 2024, highlighting the risks of relying on broad, one-size-fits-all security solutions.
Cloud environment threats: Companies struggle to secure multi-cloud environments, making cloud posture assessment and monitoring more critical than ever.
Remote work and third-party risks: Attackers continue to exploit vulnerabilities in remote access tools and third-party vendors, necessitating stricter access controls and monitoring.
The report also highlights the growing threat to critical industries and the shift from ransomware to extortion tactics. The types of attack tactics vary year to year, but DirectDefense's report reflects how the techniques and executions attackers use evolve over time.
'Attackers have honed their techniques to become faster and more powerful against a company's defenses; conversely, security solutions are less able to withstand attacks on their own and need constant monitoring and tuning,' said Jim Broome, President and Chief Technology Officer for DirectDefense. 'As adversaries refine their techniques, organizations need to stay ahead by adapting their security posture. It's not just about responding to threats—it's about anticipating and mitigating them before they cause harm.'
The full report can be found here.
About DirectDefense, Inc.
DirectDefense provides enterprise risk assessments, penetration testing, ICS/SCADA security services, and 24/7 managed security services for companies of all sizes. Focused on building security resiliency, the firm offers comprehensive security testing services with specialization in application security, vulnerability assessments, penetration testing, and compliance assurance testing. Its team of highly talented consultants has worked with the majority of the Fortune 100 companies, in industries such as power and utility, gaming, retail, financial, media, travel, aerospace, healthcare, and technology. More information can be found at www.directdefense.com.

Orange background

Try Our AI Features

Explore what Daily8 AI can do for you:

Comments

No comments yet...

Related Articles

BMO Lifts CrowdStrike (CRWD) Price Target to $500, Cites Long-Term Growth Strength
BMO Lifts CrowdStrike (CRWD) Price Target to $500, Cites Long-Term Growth Strength

Yahoo

time3 hours ago

  • Yahoo

BMO Lifts CrowdStrike (CRWD) Price Target to $500, Cites Long-Term Growth Strength

We recently published a list of . In this article, we are going to take a look at where CrowdStrike Holdings, Inc. (NASDAQ:CRWD) stands against other buzzing AI stocks on latest news and ratings. On June 4th, BMO Capital raised the firm's price target on CrowdStrike Holdings, Inc. (NASDAQ:CRWD) to $500 from $405 and kept an 'Outperform' rating on the shares. Firm analysts cited CrowdStrike's 'solid if unspectacular' quarterly performance and comprehensive security portfolio as reasons behind the rating affirmation. The analysts also told investors in a research note how the company boasts one of the most comprehensive and effective security portfolios. Security personnel at their consoles, monitoring a global network of threats in real-time. Analysts also added that they are optimistic about the company's ability to sustain 20% top-line growth into fiscal year 2027. This growth projection aligns with its current revenue growth of 26% and projected 21% growth for the next fiscal year. Moreover, CrowdStrike's customer commitment packages anniversary is expected to boost annual recurring revenue growth in the second half of fiscal year 2026. Even though the analysts acknowledge the stock's high valuation, they are optimistic about its future performance. CrowdStrike Holdings, Inc. (NASDAQ:CRWD) is a leader in AI-driven endpoint and cloud workload protection. Overall, CRWD ranks 8th on our list of buzzing AI stocks on latest news and ratings. While we acknowledge the potential of CRWD as an investment, our conviction lies in the belief that some AI stocks hold greater promise for delivering higher returns and have limited downside risk. If you are looking for an extremely cheap AI stock that is also a major beneficiary of Trump tariffs and onshoring, see our free report on the best short-term AI stock. READ NEXT: 20 Best AI Stocks To Buy Now and 30 Best Stocks to Buy Now According to Billionaires. Disclosure: None. This article is originally published at Insider Monkey.

Micron (MU) Ships World's First 1-Gamma LPDDR5X to Power Faster, Smarter AI Smartphones
Micron (MU) Ships World's First 1-Gamma LPDDR5X to Power Faster, Smarter AI Smartphones

Yahoo

time3 hours ago

  • Yahoo

Micron (MU) Ships World's First 1-Gamma LPDDR5X to Power Faster, Smarter AI Smartphones

We recently published a list of . In this article, we are going to take a look at where Micron Technology, Inc. (NASDAQ:MU) stands against other buzzing AI stocks on latest news and ratings. On June 3rd, Micron Technology, Inc. (NASDAQ:MU) announced shipping of the world's first 1γ (1-gamma) node-based low-power double data rate 5X (LPDDR5X) memory. Known to be a game-changer for the mobile industry, it has the ability to accelerate AI applications on flagship smartphones. The Micron LPDDR5X delivers faster, smoother mobile experiences and longer battery life for users. This is true even when operating data-intensive workloads such as AI-powered translation or image generation. A close-up view of a computer motherboard with integrated semiconductor chips. Next-generation smartphone designs are competing to be as compact as possible, and the LPDDR5X package size boasts to be the industry's thinnest package of 0.61 millimeters. This makes it 6% thinner compared to competitive offerings, and marks a 14% height reduction from the previous generation. As such, Micron's latest offering offers users a whopping 20% power savings, offering users the ability to enjoy their favorite AI applications, games, and video content longer on a single charge. Moreover, data center servers, intelligent vehicles, and AI PCs may also adopt the LPDDR5X for achieving optimized power efficiency and high performance. 'Micron's 1-gamma node-based LPDDR5X memory is a game-changer for the mobile industry. This breakthrough technology delivers lightning-fast speeds and remarkable power efficiency — all within the industry's thinnest LPDDR5X package — paving the way for exciting new smartphone designs. This solution demonstrates our commitment to empowering the ecosystem to create extraordinary mobile experiences.' Micron Technology, Inc. (NASDAQ:MU) develops and sells memory and storage products for data centers, mobile devices, and various industries worldwide. Overall, MU ranks 5th on our list of buzzing AI stocks on latest news and ratings. While we acknowledge the potential of MU as an investment, our conviction lies in the belief that some AI stocks hold greater promise for delivering higher returns and have limited downside risk. If you are looking for an extremely cheap AI stock that is also a major beneficiary of Trump tariffs and onshoring, see our free report on the best short-term AI stock. READ NEXT: 20 Best AI Stocks To Buy Now and 30 Best Stocks to Buy Now According to Billionaires. Disclosure: None. This article is originally published at Insider Monkey. Error in retrieving data Sign in to access your portfolio Error in retrieving data Error in retrieving data Error in retrieving data Error in retrieving data

Why AST SpaceMobile, Inc. (ASTS) Soared On Thursday
Why AST SpaceMobile, Inc. (ASTS) Soared On Thursday

Yahoo

time4 hours ago

  • Yahoo

Why AST SpaceMobile, Inc. (ASTS) Soared On Thursday

We recently published a list of . In this article, we are going to take a look at where AST SpaceMobile, Inc. (NASDAQ:ASTS) stands against other best-performing stocks on Thursday. AST SpaceMobile extended its winning streak to a fourth straight day on Thursday, jumping 7.53 percent to close at $30.85 apiece as investors scrambled to ride on the growth opportunities from a potential tie-up with billionaire Jeff Bezos. Earlier this week, speculations surfaced about a potential tie-up between AST SpaceMobile Inc. (NASDAQ:ASTS) and Blue Origin following an Instagram post by the former's board member, Adriana Cisneros, showing herself alongside CEO Abel Avellan and Bezos, in a photo. An aerial view of a communications satellite in orbit, beaming its signal down to Earth. She also captioned: 'Amazing things are happening at AST & Science + Blue Origin.' Prior to the Instagram post, Blue Origin executives visited the AST SpaceMobile, Inc. (NASDAQ:ASTS) headquarters in Texas, with speculations that discussions may have gone beyond launch logistics to cover broader strategic and financial matters. AST SpaceMobile, Inc. (NASDAQ:ASTS) already holds a major commercial agreement with Blue Origin for the launch of up to 45 BlueBird Block 2 satellites, with the option to add 15 more. Overall, ASTS ranks 10th on our list of best-performing stocks on Thursday. While we acknowledge the potential of ASTS as an investment, our conviction lies in the belief that some AI stocks hold greater promise for delivering higher returns and have limited downside risk. If you are looking for an extremely cheap AI stock that is also a major beneficiary of Trump tariffs and onshoring, see our free report on the best short-term AI stock. READ NEXT: 20 Best AI Stocks To Buy Now and 30 Best Stocks to Buy Now According to Billionaires. Disclosure: None. This article is originally published at Insider Monkey. Error in retrieving data Sign in to access your portfolio Error in retrieving data Error in retrieving data Error in retrieving data Error in retrieving data

DOWNLOAD THE APP

Get Started Now: Download the App

Ready to dive into the world of global news and events? Download our app today from your preferred app store and start exploring.
app-storeplay-store