Agentic AI Will Revolutionize Cybercrime in 2025 According to New Report

Malwarebytes, a provider in real-time cyber protection, recently released its 2025 State of Malware report, which reveals insight into the emergence of agentic artificial intelligence (AI), plus the year’s most prominent threats and cybercrime tactics. The report details a significant uptick in the number of known ransomware attacks, the total value of ransoms paid in 2024, and how IT teams can address them.

“Our research shows that ransomware will continue to be a potent threat to businesses this year,” said Marcin Kleczynski, Founder and CEO, Malwarebytes. “The shift from large ransomware groups to smaller, unpredictable threat actors, combined with the increasing role of AI, means businesses must increase their cybersecurity vigilance and make holistic endpoint security a priority.”

Emerging agentic AI models—which can reason, plan, and act autonomously—will further revolutionize cybercriminal tactics, making attacks more scalable and efficient in 2025. Just as businesses are beginning to explore AI for productivity and security, cybercriminals are leveraging it to improve phishing campaigns, evade detection, and fine-tune attacks. This marks a turning point: the arms race between AI-powered attackers and AI-enhanced cybersecurity tools is rapidly escalating, forcing businesses to rethink traditional defense strategies. With AI rapidly evolving, security teams must integrate AI-driven threat detection and response to keep up and counteract the increasing speed and sophistication of AI-driven cyberattacks.

Known ransomware attacks increased by 13% year-over-year, despite two of the most prominent ransomware groups, LockBit and ALPHV, losing their supremacy. This can be attributed to the rise of smaller, less well-known “dark horse” ransomware gangs posing threats to small and medium-sized businesses. Additionally, 2024 saw the largest known ransomware payment ever recorded when an unknown victim paid $75 million into a crypto wallet.

“If 2024 has taught us anything, it’s that ransomware purveyors aren’t resting on their laurels,” said Lee Wei, SVP, Customer & Product, Corporate Unit at Malwarebytes. “The full attack cycle has gone from weeks to hours and in some cases minutes. Organizations need eyes on their endpoints 24/7 to stay on top of threats and that often means deploying managed services, like Managed Detection and Response (MDR) that can assist teams in filling the gaps.” To read the full report, visit http://threatdown.com/2025-State-of-Malware.

Featured

  • Leveraging IoT and Open Platform VMS for a Connected Future

    The evolution of urban environments is being reshaped by the convergence of Internet of Things (IoT) technology and open platform VMS. As cities worldwide grapple with growing populations and increasing operational complexities, these integrated technologies are emerging as powerful tools for creating more livable, efficient, and secure urban spaces. Read Now

  • Securing the Future

    Two security experts sit down with Security Today’s editor in chief Ralph C. Jensen to discuss what they see emerging and changing over the next several years along with how security stakeholders can harness these innovations into opportunities. Read Now

  • Collaboration Made Easy Using a Work Management Platform

    Effective collaboration between security operators, teams and other departments is critical to the smooth functioning of organizations. Yet, as organizations grow in complexity, it becomes more difficult for teams to coordinate with each other. This is compounded by staffing shortages, turnover and ineffective collaboration tools. Read Now

  • Creating a Safer World

    Managing and supporting locks and door hardware within a facility is a big responsibility. A building’s security needs to change over time as occupancy and use demands evolve, which can make it even more challenging. Read Now

New Products

  • Compact IP Video Intercom

    Viking’s X-205 Series of intercoms provide HD IP video and two-way voice communication - all wrapped up in an attractive compact chassis.

  • ComNet CNGE6FX2TX4PoE

    The ComNet cost-efficient CNGE6FX2TX4PoE is a six-port switch that offers four Gbps TX ports that support the IEEE802.3at standard and provide up to 30 watts of PoE to PDs. It also has a dedicated FX/TX combination port as well as a single FX SFP to act as an additional port or an uplink port, giving the user additional options in managing network traffic. The CNGE6FX2TX4PoE is designed for use in unconditioned environments and typically used in perimeter surveillance.

  • AC Nio

    AC Nio

    Aiphone, a leading international manufacturer of intercom, access control, and emergency communication products, has introduced the AC Nio, its access control management software, an important addition to its new line of access control solutions.