Red Canary's Midyear Threat Detection Report: Cloud Techniques & Phishing Evolve.

Tuesday, Aug 5, 2025 3:21 am ET1min read

• Cloud Account detections up 500% in H1 2025 • New cloud techniques emerge: Data from Cloud Storage, Disable or Modify Cloud Firewall • Phishing tactics evolve, but only 16% of emails are genuinely malicious • Identity threats drive cloud technique adoption • Red Canary publishes midyear Threat Detection Report update

Zscaler's Red Canary division has released its midyear 2025 Threat Detection Report, revealing significant shifts in the cybersecurity landscape. The report highlights a dramatic 500% increase in Cloud Account detections compared to 2024, driven by expanded identity-based threat detection capabilities. This surge underscores the growing importance of cloud security in the modern threat environment.

Two new cloud techniques have entered the top 10 detected threats: Data from Cloud Storage and Disable or Modify Cloud Firewall. These techniques reflect the evolving tactics employed by cybercriminals, which are increasingly targeting cloud environments. The report also details the evolution of the Scarlet Goldfinch threat group, which has shifted to using fake CAPTCHA paste-and-run techniques, indicating a sophisticated approach to bypassing security measures.

Phishing attempts have evolved as well, with only 16% of reported phishing emails being genuinely malicious. This highlights the importance of robust email security measures and the need for continuous vigilance against social engineering tactics. The report also emphasizes the value of multi-factor authentication and cloud misconfiguration management in mitigating these risks.

The report serves as market validation for Zscaler's strategic direction in providing integrated security solutions. The company's acquisition of Red Canary has bolstered its identity security capabilities, positioning it well to address the growing demand for comprehensive cloud security platforms.

This midyear update to Red Canary's 2025 Threat Detection Report underscores the need for organizations to stay informed about the latest cybersecurity trends and adapt their security strategies accordingly. The surge in cloud account detections and the emergence of new cloud techniques highlight the importance of proactive, identity-based security measures.

References:
[1] https://www.action1.com/blog/action1-sets-new-records-with-500-enterprise-growth-and-explosive-msp-adoption-in-h1-2025/
[2] https://www.stocktitan.net/news/ZS/red-canary-research-reveals-sharp-rise-in-cloud-and-identity-threats-5utqqujjfzbl.html

Comments



Add a public comment...
No comments

No comments yet