Skip to main content
VendorsReliaQuest

ReliaQuest

Cybersecurity reports and statistics published by ReliaQuest

8 categories6 reports

Recent Statistics & Reports

Organizations leveraging AI and automation can contain threats within 4 minutes versus up to 16 hours with manual efforts.

5/27/2026
Incident ResponseAI SecurityThreat Containment

The quickest data exfiltration attack in 2025 took just 6 minutes versus over 4 hours in 2024.

5/27/2026
Data Exfiltration

BoaLoader malware is a factor in nearly 20% of incidents observed in the calendar year.

5/27/2026
MalwareBoaLoader

Threat actors utilizing AI and automation tools can achieve lateral movement within an organization in as little as 4 minutes, 85% faster than the previous year.

5/27/2026
Lateral MovementAI in CybercrimeAutomation

80% of ransomware groups use AI, automation, or both in their attacks.

5/27/2026
RansomwareAI in CybercrimeAutomation

On average, lateral movement within an organization takes 34 minutes, 29% quicker than the 48 minutes recorded in 2024.

5/27/2026
Lateral MovementThreat Actor Tactics

33% of raw CSPM alerts were identity-related, contributing to the operational burden on security teams.

11/9/2025
Cloud SecurityIdentity ManagementCSPM

44% of true-positive security alerts from cloud security tools in Q3 2025 were driven by identity-related weaknesses.

11/9/2025
Cloud SecurityIdentity ManagementSecurity alerts

52% of all confirmed identity-based alerts were due to identity-related privilege escalation.

11/9/2025
Cloud SecurityIdentity Management

99% of cloud identities were found to be over-privileged, creating significant security risks.

11/9/2025
Cloud SecurityIdentity Management

As of October 2025, there are over 14,700 Jenkins servers exposed to the internet that remain vulnerable to CVE-2024-23897.

11/9/2025
VulnerabilitiesCloud Security

71% of critical vulnerability alerts in Q3 2025 originated from just four legacy CVEs.

11/9/2025
VulnerabilitiesCloud SecurityCVEs

The US remained the most targeted country by ransomware, accounting for 67% of the total organizations named on ransomware data-leak sites in Q2.

7/3/2025
RansomwareUSData leak site

DragonForce emergence: December 2023.

7/3/2025
RansomwareDragonForce

80% of the organizations named by Qilin in Q2 were based in the US.

7/3/2025
RansomwareQilin

Germany rose to second most targeted country by ransomware in Q2 2025, climbing two spots from fourth in Q1 2025.

7/3/2025
RansomwareGermany

Lynx experienced a 41% drop in activity between Q1 and Q2 2025.

7/3/2025
RansomwareLynx

Qilin emerged as the top ransomware threat in Q2 2025.

7/3/2025
RansomwareQilin

Akira has already listed 15% more victims in the first half of 2025 than it did throughout the entirety of 2024.

7/3/2025
RansomwareAkira

LockBit named just 24 organizations on its data-leak site in Q2 2025. This figure represents only 11% of its Q2 2024 victim count.

7/3/2025
RansomwareLockBit

Showing 1-20 of 68 results