AI-driven attacks to become faster, more sophisticated, and harder to detect

Delinea has released its inaugural Cybersecurity and the AI Threat Landscape report. The report, based on exclusive Delinea Labs research and an analysis of several third-party studies and real-world cyber incidents, reveals critical insights into the rapidly evolving threat landscape. With AI reshaping both attack and defence strategies, the findings underscore the urgent need for organizations to adapt their security measures to counter AI-driven threats.

  • Saturday, 5th April 2025 Posted 9 months ago in by Phil Alsop

The report uncovers a sharp rise in attacks targeting non-human identities (NHIs), such as service accounts, APIs, and machine identities. Delinea’s research reveals that for every human identity, there are currently 46 NHIs, a number expected to exceed 45 billion by 2025. Alarmingly, over 70% of NHIs are not rotated within recommended timeframes, with an average cycle of 627 days, far exceeding security best practices. Additionally, 97% of organizations expose their NHIs to third-party vendors, significantly increasing the risk of unauthorized access.

“One of the biggest challenges identified in the report is the increasing targeting of non-human identities,” said Jon Kuhn, SVP of Product Management at Delinea. “For organizations, this shift means they are facing a massive and often ignored security gap. With the number of these machine identities expected to grow exponentially in the coming years as enterprises continue to rapidly adopt AI, the lack of proper credential management and the exposure of these identities to third parties creates serious vulnerabilities that cyber attackers can exploit to gain unauthorized access to critical systems and data."

The resurgence of ransomware

The report also reveals a disturbing trend in ransomware attacks, which in 2024 became more sophisticated with the rise of double extortion tactics. Cybercriminals not only encrypt but also exfiltrate sensitive data, threatening to release it publicly unless a ransom is paid. Five ransomware groups — RansomHub, LockBit, Play, Akira, and Hunters — were responsible for over 36% of all ransomware incidents monitored by Delinea in 2024, totalling more than 5,700 attacks. Looking ahead, the report anticipates a surge in AI-driven phishing attacks, with cybercriminals using AI to craft increasingly convincing phishing emails, making it harder to distinguish legitimate communications from malicious ones.

“The rise in ransomware sophistication and the increasing prevalence of AI-driven attacks are undeniable trends in today’s cybersecurity landscape,” said Gal Diskin, Vice President of Threat & Research at Delinea. “Our research reveals that cybercriminals are increasingly using AI and powerful Ransomware-as-a-Service (RaaS) tools to launch more targeted and scalable attacks, particularly around phishing and machine identities. To stay ahead, organizations must adapt their security strategies, focusing not just on advanced threat detection, but also foundational security controls and strengthening multi-factor authentication (MFA) to combat the growing threat of credential phishing.”

Identity security meets real-time threat response

Posted 2 weeks ago by Sophie Milburn
SailPoint announces new integrations with CrowdStrike to bolster identity-based threat response, advancing security operations and decision-making...

Small businesses face rising cybersecurity attacks

Posted 2 weeks ago by Sophie Milburn
Nearly half of US SMBs faced cyberattacks, yet many remain underprepared and reliant on untrained staff for security, Guardz study finds.
TCS strengthens its alliance with Aviva by expanding its policy administration services, embracing advanced digital solutions for customer-focused...
Hammer teams up with Nexsan to offer storage solutions across EMEA, enhancing modern data management capabilities.

Nordic security expertise expands in Europe

Posted 2 weeks ago by Sophie Milburn
MetaCompliance expands its foothold in Europe by acquiring Nordic leader Junglemap, enhancing its capacity to offer advanced security and compliance...

CrowdStrike launches Falcon AIDR for AI security

Posted 2 weeks ago by Sophie Milburn
CrowdStrike unveils Falcon AIDR, a unified platform to secure AI interactions, marking a new era in enterprise AI security.

Storage platform receives HPE validation for integration

Posted 2 weeks ago by Sophie Milburn
StorONE's platform meets HPE's standards, enabling organisations to efficiently leverage HPE ProLiant Gen11 servers.
Keepit partners with Ingram Micro to extend its data protection solution to French resellers and MSPs, enhancing reach and robustness.