44% Rise in public-facing application exploitation as vulnerability-led incidents dominated 2025
Trend
Summary
Hide ▲
Show ▼
Attacks against public-facing applications jumped 44%, widening exposure for internet-facing services and increasing intrusion risk. Vulnerability exploitation became the leading cause of incidents in 2025, accounting for 40% of cases, while missing authentication controls helped drive the surge. The trend matters because AI-enabled vulnerability scanning is speeding up reconnaissance and exploitation across exposed systems.
Related Happenings
Enterprise browser users face a rising shadow AI, credential abuse, and browser-native attack trend
Trend
H score22
First: 05.06.2026 17:00
Last: 05.06.2026 17:00
Sources 1
About this happening:
Enterprise users are showing a sharp rise in shadow AI, credential abuse, and browser-native attack exposure, increasing risk at the browser layer. The trend matte...
Enterprise browser users face a rising shadow AI, credential abuse, and browser-native attack trend
TrendAbout this happening: Enterprise users are showing a sharp rise in shadow AI, credential abuse, and browser-native attack exposure, increasing risk at the browser layer. The trend matte...
Vulnerability exploitation overtakes credentials as top breach entry path
Trend
H score24
First: 20.05.2026 11:40
Last: 20.05.2026 11:40
Sources 1
About this happening:
Vulnerability exploitation became the top initial access vector for data breaches over the past year, displacing compromised credentials and signaling a major shift in...
Vulnerability exploitation overtakes credentials as top breach entry path
TrendAbout this happening: Vulnerability exploitation became the top initial access vector for data breaches over the past year, displacing compromised credentials and signaling a major shift in...
Verizon 2026 DBIR shows vulnerability exploitation as the top breach access trend in 2025
Trend
H score39
First: 20.05.2026 03:04
Last: 20.05.2026 03:04
Sources 1
About this happening:
Vulnerability exploitation became the leading breach access vector in 2025, increasing compromise risk across 31,000 incidents and 22,000+ confirmed breaches. Un...
Verizon 2026 DBIR shows vulnerability exploitation as the top breach access trend in 2025
TrendAbout this happening: Vulnerability exploitation became the leading breach access vector in 2025, increasing compromise risk across 31,000 incidents and 22,000+ confirmed breaches. Un...
AI-driven attack surge against customer-facing mobile apps in 2026
Trend
H score43
First: 19.05.2026 15:00
Last: 19.05.2026 15:00
Sources 1
About this happening:
Customer-facing mobile apps faced a sharp rise in attacks in 2026, with 87% of monitored apps hit versus 55% in 2022. The trend matters because agentic AI is l...
AI-driven attack surge against customer-facing mobile apps in 2026
TrendAbout this happening: Customer-facing mobile apps faced a sharp rise in attacks in 2026, with 87% of monitored apps hit versus 55% in 2022. The trend matters because agentic AI is l...
Mistral AI hit by network compromise
Incident
H score36
First: 15.05.2026 01:50
Last: 15.05.2026 01:50
Sources 1
About this happening:
Mistral AI disclosed a codebase management system compromise tied to the Mini Shai-Hulud supply-chain attack, and the intrusion briefly contaminated some SDK packages....
Mistral AI hit by network compromise
IncidentAbout this happening: Mistral AI disclosed a codebase management system compromise tied to the Mini Shai-Hulud supply-chain attack, and the intrusion briefly contaminated some SDK packages....
Timeline
-
25.02.2026 16:30 2 articles · 4mo ago
IBM X-Force reports 44% rise in public-facing application attacks
Initial DisclosureIBM X-Force says cyber-attacks exploiting public-facing applications rose 44%, with vulnerability exploitation accounting for 40% of observed incidents in 2025. The assessment links the increase to missing authentication controls and AI-enabled vulnerability scanning, and says threat actors are using AI to conduct research, analyse large data sets, and refine attack paths faster.
Show sources
- 44% Surge in App Exploits as AI Speeds Up Cyberattacks, IBM Finds — www.infosecurity-magazine.com — 25.02.2026 16:30
- The Blast Radius Problem: Stolen Credentials are Weaponizing Agentic AI — www.securityweek.com — 25.02.2026 18:16