{"id":127585,"date":"2025-03-04T18:07:53","date_gmt":"2025-03-04T16:07:53","guid":{"rendered":"https:\/\/10guards.com\/?p=127585"},"modified":"2025-03-05T02:18:28","modified_gmt":"2025-03-05T00:18:28","slug":"crowdstrikes-2025-threat-report-genai-powers-social-engineering-attacks-chinese-cyber-espionage-jumps-150","status":"publish","type":"post","link":"https:\/\/10guards.com\/en\/blog\/2025\/03\/04\/crowdstrikes-2025-threat-report-genai-powers-social-engineering-attacks-chinese-cyber-espionage-jumps-150\/","title":{"rendered":"CrowdStrike\u2019s 2025 Threat Report: GenAI Powers Social Engineering Attacks, Chinese Cyber Espionage Jumps 150%"},"content":{"rendered":"<p>CrowdStrike&#8217;s 2025 Global Threat Report highlights a sharp increase in cyber activity linked to China, alongside a rising adoption of GenAI and escalating attacks on cloud infrastructure. The report delivers a stark warning to business leaders: underestimating adversaries comes at a significant cost.<\/p>\n<p>&nbsp;<\/p>\n<p>Threat actors are evolving, becoming more sophisticated and methodical, leveraging advanced technologies like AI and machine learning not only to bolster their attacks but to commodify these tools for cybercriminal networks.<\/p>\n<p>&nbsp;<\/p>\n<p>GenAI, for instance, is now widely exploited by state-sponsored actors, eCrime groups, and hacktivists. They weaponize commonly used enterprise tools \u2014 like chatbots \u2014 to execute highly effective social engineering campaigns.<\/p>\n<p>&nbsp;<\/p>\n<p>Among nation-states in particular, China\u2013nexus activity has surged by 150% overall, says CrowdStrike \u2013 one of many rapidly growing threats businesses must work hard to stay ahead of by reinforcing and fortifying their cybersecurity postures as we move through 2025.<\/p>\n<p>&nbsp;<\/p>\n<p><span style=\"color: #afcf60;\"><strong>China&#8217;s Cyber Expansion<\/strong><\/span><\/p>\n<p>&nbsp;<\/p>\n<p>CrowdStrike reveals a significant escalation in China-linked cyber operations, with state-sponsored attacks increasing by 150%. Targeted intrusions into sectors like finance, media, manufacturing, and industry spiked by as much as 300%.<\/p>\n<p>&nbsp;<\/p>\n<p>The research identified seven new China-linked advanced persistent threat (APT) groups in 2024, five of which displayed unique, highly specialized tactics. This evolution signals a shift from the so-called &#8220;smash-and-grab&#8221; attacks to highly targeted, mission-driven intrusions.<\/p>\n<p>&nbsp;<\/p>\n<blockquote><p>\u201cChina\u2019s increasingly aggressive cyber espionage, combined with the rapid weaponisation of AI-powered deception, is forcing organisations to rethink their approach to security,\u201d says Adam Meyers, head of counter-adversary operations at CrowdStrike.<\/p><\/blockquote>\n<p>&nbsp;<\/p>\n<blockquote><p>\u201cAdversaries exploit identity gaps, leverage social engineering and move across domains undetected\u2014rendering legacy defences ineffective. Stopping breaches requires a unified platform powered by real-time intelligence and threat hunting, correlating identity, cloud and endpoint activity to eliminate the blind spots where adversaries hide.\u201d<\/p><\/blockquote>\n<p>&nbsp;<\/p>\n<p><strong><span style=\"color: #afcf60;\">Multi-faceted threat landscape<\/span><\/strong><\/p>\n<p>&nbsp;<\/p>\n<p>Beyond nation-state activity, CrowdStrike&#8217;s findings reveal growing vulnerabilities in cloud environments. Unattributed cloud intrusions rose by 26% in 2024, with attackers exploiting valid credentials to gain internal access and move laterally within systems. Misconfigurations, weak access controls, and cloud infrastructure flaws remain prime entry points.<\/p>\n<p>&nbsp;<\/p>\n<p>Identity-based attacks surged as well, with 75% of breaches now malware-free. Adversaries increasingly leverage stolen credentials to impersonate legitimate users, navigating networks undetected. Underground forums saw a 20% increase in the trade of valid credentials, while AI-fueled phishing and voice scams surged by 442%.<\/p>\n<p>&nbsp;<\/p>\n<p><strong><span style=\"color: #afcf60;\">GenAI Accelerating Attack Speed<\/span><\/strong><\/p>\n<p>&nbsp;<\/p>\n<p>Attackers are moving faster than ever. CrowdStrike reports that the average breakout time \u2014 the window before adversaries start lateral movement \u2014 dropped to just 48 minutes in 2025, with the fastest observed time at 51 seconds.<\/p>\n<p>&nbsp;<\/p>\n<p>GenAI played a pivotal role in this acceleration. Notable examples include fake IT job candidates infiltrating companies and AI-powered disinformation campaigns orchestrated by Chinese, Russian, and Iranian groups to disrupt elections.<\/p>\n<p>&nbsp;<\/p>\n<p><strong><span style=\"color: #afcf60;\">Preparing for 2025 and Beyond<\/span><\/strong><\/p>\n<p>&nbsp;<\/p>\n<p>In light of these evolving threats, business leaders must adopt a proactive, holistic approach to cybersecurity. This includes:<\/p>\n<p>&nbsp;<\/p>\n<ul>\n<li>Unified security platforms: Integrating identity, endpoint, and cloud security with real-time threat intelligence.<\/li>\n<li>Enhanced IAM practices: Implementing multi-factor authentication (MFA), regularly auditing user privileges, and continuously monitoring for anomalous access.<\/li>\n<li>AI-powered defense tools: Investing in security technologies capable of identifying and neutralizing AI-driven attacks.<\/li>\n<li>Employee training &amp; response planning: Equipping teams to recognize evolving threats and rehearsing incident response strategies.<\/li>\n<\/ul>\n<p>&nbsp;<\/p>\n<p>CrowdStrike\u2019s 2025 Threat Report makes one thing clear: the cyber threat landscape is more dynamic than ever, and organizations must stay vigilant to outpace increasingly adaptive adversaries.<\/p>\n<p>&nbsp;<\/p>\n<p>Source: <a href=\"file:\/\/\/C:\/Users\/Admin\/OneDrive%20-%2010guards\/%D0%A0%D0%B0%D0%B1%D0%BE%D1%87%D0%B8%D0%B9%20%D1%81%D1%82%D0%BE%D0%BB\/CrowdStrikeGlobalThreatReport2025.pdf\" target=\"_blank\" rel=\"noopener\">CrowdStrike<\/a><\/p>","protected":false},"excerpt":{"rendered":"<p>CrowdStrike&#8217;s 2025 Global Threat Report highlights a sharp increase in cyber activity linked to China, alongside a rising adoption of GenAI and escalating attacks on cloud infrastructure. The report delivers a stark warning to business leaders: underestimating adversaries comes at a significant cost. &nbsp; Threat actors are evolving, becoming more sophisticated and methodical, leveraging advanced [&hellip;]<\/p>\n","protected":false},"author":7,"featured_media":127591,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[7],"tags":[],"class_list":["post-127585","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-articles"],"aioseo_notices":[],"jetpack_featured_media_url":"https:\/\/10guards.com\/wp-content\/uploads\/csr-2.png","_links":{"self":[{"href":"https:\/\/10guards.com\/en\/wp-json\/wp\/v2\/posts\/127585","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/10guards.com\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/10guards.com\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/10guards.com\/en\/wp-json\/wp\/v2\/users\/7"}],"replies":[{"embeddable":true,"href":"https:\/\/10guards.com\/en\/wp-json\/wp\/v2\/comments?post=127585"}],"version-history":[{"count":11,"href":"https:\/\/10guards.com\/en\/wp-json\/wp\/v2\/posts\/127585\/revisions"}],"predecessor-version":[{"id":127589,"href":"https:\/\/10guards.com\/en\/wp-json\/wp\/v2\/posts\/127585\/revisions\/127589"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/10guards.com\/en\/wp-json\/wp\/v2\/media\/127591"}],"wp:attachment":[{"href":"https:\/\/10guards.com\/en\/wp-json\/wp\/v2\/media?parent=127585"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/10guards.com\/en\/wp-json\/wp\/v2\/categories?post=127585"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/10guards.com\/en\/wp-json\/wp\/v2\/tags?post=127585"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}