Skip to main content
VendorsReliaQuest

ReliaQuest

Cybersecurity reports and statistics published by ReliaQuest

8 categories5 reports

Recent Statistics & Reports

The average breakout time in 2024 was 48 minutes, which is 22% faster than in 2023.

1/1/2025

Newcomers in Q4 like “SafePay” and “FunkSec” quickly ramped up their activity, claiming 45 and 82 victims, respectively.

1/1/2025

Ransomware attacks reached an all-time high in December 2024.

1/1/2025

In Q4 2024, there was the highest jump of the year with 13 new ransomware groups emerging.

1/1/2025

There was a >50% increase in infostealer logs posted on the dark web in 2024 compared to 2023.

1/1/2025

17% of incidents involved voice phishing for initial access, indicating help-desk scams.

1/1/2025

The number of active ransomware groups increased from 60 in 2022 to almost 100 last year.

1/1/2025

Attack speed increased by 22% in 2024 compared to 2023.

1/1/2025

The median ransom payment rose from $199,000 in 2023 to $1,500,000 in 2024.

1/1/2025

Nearly half of the 1,110 initial access listings collected in Q4 2024 were related to US-based companies.

1/1/2025

"BlackLock" activity rose 1,425% from Q3 to Q4 2024.

1/1/2025

The mean time to contain (MTTC) attacks using manual incident containment strategies is 8 hours and 12 minutes.

1/1/2025

In the breakout phase of attacks using an "assembly line" strategy, threat actors move from one technique to the next in an average of just 7 minutes.

1/1/2025

Approximately 30% of domains registered by Scattered Spider imitated Single Sign-On (SSO) and Identity Providers.

1/1/2025

30% of the domains registered by Scattered Spider imitated hosts for common services such as Binance and Coinbase.

1/1/2025

"Akira" more than doubled its Q3 count and listed 71 organisations on data-leak sites in December alone.

1/1/2025

Threat actors using IABs can achieve breakout times as fast as 27 minutes.

1/1/2025

Vulnerability exploitation accounted for over 17% of initial access incidents among ReliaQuest customers in 2024.

1/1/2025

The mean time between the initial email wave of a help-desk scam and the phishing message was just 4 minutes, with another 4 minutes to establish command and control (C2).

1/1/2025

The time between a vulnerability being discovered and its exploitation by attackers (time to exploitation) decreased by 62%, from 47 days in 2023 to just 18 days in 2024.

1/1/2025

Showing 41-60 of 62 results