Skip to main content
VendorsLevelBlue

LevelBlue

Cybersecurity reports and statistics published by LevelBlue

8 categories6 reports

Recent Statistics & Reports

56% of organizations noted preparedness for business email compromise.

8/27/2025
BEC

38% of organizations admit to being underprepared for AI-driven social engineering threats such as automated attacks, deepfake-based videos, and voice scams.

8/27/2025
AISocial engineeringDeepfakes

Only 13% of organizations are investing significantly in Zero Trust Architecture (ZTA).

8/27/2025
Zero trustInvestment

44% of organizations are prepared for insider threats or account takeover.

8/27/2025
Insider threatAccount takeover

Approximately one-quarter (24%) of organizations say they are highly effective at implementing and using AI to enhance cybersecurity.

8/27/2025
AI

57% of organizations are prepared for personal information exfiltration.

8/27/2025
Personal informationExfiltration

32% of organizations reported being prepared for deepfake and synthetic identity attacks.

8/27/2025
DeepfakesSynthetic identity

41% of organizations are prepared for quishing.

8/27/2025
Quishing

Only 20% of organizations feel confident they are implementing a strategy to educate their workforce.

8/27/2025
Security training

Just 20% of organizations describe themselves as highly effective in defending against cyber adversaries using AI techniques.

8/27/2025
AI

Social engineering attacks accounted for 39% of initial access incidents observed during the first half of 2025.

7/30/2025
Social engineering

The average breakout time for attackers (how quickly they move laterally after initial access) is under 60 minutes, and in some cases, less than 15 minutes.

7/30/2025
Breakout time

Non-Business Email Compromise (BEC) incidents rose by 214%.

7/30/2025
BEC

The number of cybersecurity incidents observed between January 1 and May 31 2025 nearly tripled.

7/30/2025
Cybersecurity incidents

Fake CAPTCHA social engineering attacks, particularly ClickFix campaigns, jumped 1,450% from the second half of 2024 to the first half of 2025.

7/30/2025
Social engineeringCAPTCHA

67% of European organizations are investing in enhanced software supply chain security, which is the highest of all regions.

7/9/2025
Software supply chainEurope

80% of organizations with low visibility of their software supply chain view critical factors like custom code, commercial off-the-shelf software, and API integrations as "very risky" or "somewhat risky".

7/9/2025
Software supply chain

About half (49%) of companies say they lack the visibility to fully understand – or even identify – software supply chain risks.

7/9/2025
Software supply chain

Despite high investment in enhanced software supply chain security, Europe ranks lowest at 23% in prioritizing engaging with software suppliers about security credentials

7/9/2025
Software supply chainEurope

In Latin America, 50% say they are prepared for software supply chain attacks.

7/9/2025
Software supply chainLatin America

Showing 21-40 of 83 results