LevelBlue

83 STATS6 REPORTS

All Statistics

67% of retail executives who reported high-profile breaches indicated that cybersecurity has become a higher priority on the C-suite agenda in 2025.

LevelBlueBuild Cyber Resilience for a Stronger Retail Future·Nov 12, 2025
RetailRetail breachC-suite agenda

60% of retail executives indicated that their cybersecurity team is integrated with lines of business.

LevelBlueBuild Cyber Resilience for a Stronger Retail Future·Nov 12, 2025
RetailCybersecurity team

Only 25% of retailers reported being prepared for AI-powered threats, despite 45% expecting such threats to occur.

LevelBlueBuild Cyber Resilience for a Stronger Retail Future·Nov 12, 2025
RetailAI-powered threat

47% of retail executives reported having very low to moderate visibility into their software supply chain.

LevelBlueBuild Cyber Resilience for a Stronger Retail Future·Nov 12, 2025
RetailSoftware supply chain

34% of retailers stated that their organization has suffered a breach in the past 12 months.

LevelBlueBuild Cyber Resilience for a Stronger Retail Future·Nov 12, 2025
RetailRetail breach

44% of retailers reported experiencing a significantly higher volume of attacks in 2025.

LevelBlueBuild Cyber Resilience for a Stronger Retail Future·Nov 12, 2025
RetailCyber attacks

66% of retailers plan to invest significantly in application security to prepare for evolving threats.

LevelBlueBuild Cyber Resilience for a Stronger Retail Future·Nov 12, 2025
RetailApplication securityBudgetInvestment

65% of retailers intend to invest significantly in cyber-resilience processes across their business.

LevelBlueBuild Cyber Resilience for a Stronger Retail Future·Nov 12, 2025
RetailCyber resilienceBudgetInvestment

63% of retailers plan to invest significantly in generative AI for social engineering attacks.

LevelBlueBuild Cyber Resilience for a Stronger Retail Future·Nov 12, 2025
RetailGen AISocial engineeringBudgetInvestment

63% of retailers aim to invest significantly in machine learning for pattern matching to enhance cybersecurity.

LevelBlueBuild Cyber Resilience for a Stronger Retail Future·Nov 12, 2025
RetailMachine learningBudgetInvestment

Globally, Europe is the most prepared region for AI-driven attacks with 66% saying they are prepared.

LevelBlueData Accelerator: Social Engineering and the Human Element ·Aug 27, 2025
AIAI-powered attackEurope

56% of organizations noted preparedness for business email compromise.

LevelBlueData Accelerator: Social Engineering and the Human Element ·Aug 27, 2025
BEC

38% of organizations admit to being underprepared for AI-driven social engineering threats such as automated attacks, deepfake-based videos, and voice scams.

LevelBlueData Accelerator: Social Engineering and the Human Element ·Aug 27, 2025
AISocial engineeringDeepfakesVoice scams

Just 32% of organizations have enlisted training and awareness experts to help educate their workforce on social engineering attacks over the past 12 months.

LevelBlueData Accelerator: Social Engineering and the Human Element ·Aug 27, 2025
Security training

44% of organizations believe an AI-powered attack is likely to occur within the next 12 months.

LevelBlueData Accelerator: Social Engineering and the Human Element ·Aug 27, 2025
AIAI-powered attack

Only 29% of organizations are prepared for an AI-powered attack.

LevelBlueData Accelerator: Social Engineering and the Human Element ·Aug 27, 2025
AIAI-powered attack

Just 20% of organizations describe themselves as highly effective in defending against cyber adversaries using AI techniques.

LevelBlueData Accelerator: Social Engineering and the Human Element ·Aug 27, 2025
AI

44% of organizations are prepared for insider threats or account takeover.

LevelBlueData Accelerator: Social Engineering and the Human Element ·Aug 27, 2025
Insider threatAccount takeover

57% of organizations are prepared for personal information exfiltration.

LevelBlueData Accelerator: Social Engineering and the Human Element ·Aug 27, 2025
Personal informationExfiltration

43% of organizations are prepared for smishing.

LevelBlueData Accelerator: Social Engineering and the Human Element ·Aug 27, 2025
Smishing

41% of organizations are prepared for quishing.

LevelBlueData Accelerator: Social Engineering and the Human Element ·Aug 27, 2025
Quishing

51% of organizations are prepared for phishing.

LevelBlueData Accelerator: Social Engineering and the Human Element ·Aug 27, 2025
Phishing

32% of organizations reported being prepared for deepfake and synthetic identity attacks.

LevelBlueData Accelerator: Social Engineering and the Human Element ·Aug 27, 2025
DeepfakesSynthetic identity

Only 20% of organizations feel confident they are implementing a strategy to educate their workforce.

LevelBlueData Accelerator: Social Engineering and the Human Element ·Aug 27, 2025
Security training

Only 13% of organizations are investing significantly in Zero Trust Architecture (ZTA).

LevelBlueData Accelerator: Social Engineering and the Human Element ·Aug 27, 2025
Zero trustInvestment

41% of organizations report a significantly higher volume of cyberattacks compared to 12 months ago.

LevelBlueData Accelerator: Social Engineering and the Human Element ·Aug 27, 2025
Cyber attack

59% of organizations report an increasing difficulty for employees to discern real from not real.

LevelBlueData Accelerator: Social Engineering and the Human Element ·Aug 27, 2025
Deepfakes

Organizations are most likely to make significant investments in cyber resilience processes across the business (33%).

LevelBlueData Accelerator: Social Engineering and the Human Element ·Aug 27, 2025
Cyber resilienceInvestment

Organizations are likely to make significant investments in generative AI to defend against social engineering attacks (31%).

LevelBlueData Accelerator: Social Engineering and the Human Element ·Aug 27, 2025
Gen AIInvestment

Approximately one-quarter (24%) of organizations say they are highly effective at implementing and using AI to enhance cybersecurity.

LevelBlueData Accelerator: Social Engineering and the Human Element ·Aug 27, 2025
AI

Fake CAPTCHA social engineering attacks, particularly ClickFix campaigns, jumped 1,450% from the second half of 2024 to the first half of 2025.

LevelBlueLevelBlue Threat Trends Report, 2025, Edition Two·Jul 30, 2025
Social engineeringCAPTCHA

The average breakout time for attackers (how quickly they move laterally after initial access) is under 60 minutes, and in some cases, less than 15 minutes.

LevelBlueLevelBlue Threat Trends Report, 2025, Edition Two·Jul 30, 2025
Breakout time

Social engineering attacks accounted for 39% of initial access incidents observed during the first half of 2025.

LevelBlueLevelBlue Threat Trends Report, 2025, Edition Two·Jul 30, 2025
Social engineering

Non-Business Email Compromise (BEC) incidents rose by 214%.

LevelBlueLevelBlue Threat Trends Report, 2025, Edition Two·Jul 30, 2025
BEC

The number of cybersecurity incidents observed between January 1 and May 31 2025 nearly tripled.

LevelBlueLevelBlue Threat Trends Report, 2025, Edition Two·Jul 30, 2025
Cybersecurity incidents

In Latin America, 50% say they are prepared for software supply chain attacks.

LevelBlueData Accelerator: Software Supply Chain and Cybersecurity·Jul 9, 2025
Software supply chainLatin America

80% of organizations with low visibility of their software supply chain view critical factors like custom code, commercial off-the-shelf software, and API integrations as "very risky" or "somewhat risky".

LevelBlueData Accelerator: Software Supply Chain and Cybersecurity·Jul 9, 2025
Software supply chain

About half (49%) of companies say they lack the visibility to fully understand – or even identify – software supply chain risks.

LevelBlueData Accelerator: Software Supply Chain and Cybersecurity·Jul 9, 2025
Software supply chain

40% of CEOs believe that the biggest security risk the organization faces today is from the software supply chain, compared with 29% of CIOs and 27% of CTOs.

LevelBlueData Accelerator: Software Supply Chain and Cybersecurity·Jul 9, 2025
Software supply chain

Despite high investment in enhanced software supply chain security, Europe ranks lowest at 23% in prioritizing engaging with software suppliers about security credentials

LevelBlueData Accelerator: Software Supply Chain and Cybersecurity·Jul 9, 2025
Software supply chainEurope

39% of CEOs say AI adoption presents a greater risk to the software supply chain.

LevelBlueData Accelerator: Software Supply Chain and Cybersecurity·Jul 9, 2025
Software supply chainAI

57% of North American organizations say they are prepared for software supply chain attacks.

LevelBlueData Accelerator: Software Supply Chain and Cybersecurity·Jul 9, 2025
Software supply chainNorth America

67% of European organizations are investing in enhanced software supply chain security, which is the highest of all regions.

LevelBlueData Accelerator: Software Supply Chain and Cybersecurity·Jul 9, 2025
Software supply chainEurope

In North America, the top three risks for organizations are third-party software distribution channels (49%), third-party risk management (48%), and unsupported software (48%).

LevelBlueData Accelerator: Software Supply Chain and Cybersecurity·Jul 9, 2025
Software supply chainNorth America

80% of organizations that report very low visibility across the software supply chain have suffered a security breach in the past 12 months.

LevelBlueData Accelerator: Software Supply Chain and Cybersecurity·Jul 9, 2025
Software supply chain

Only 25% of organizations plan to prioritize engaging with software suppliers about security credentials in the next 12 months.

LevelBlueData Accelerator: Software Supply Chain and Cybersecurity·Jul 9, 2025
Software supply chain

Only 23% of organizations are confident that they have very high visibility of their software supply chain.

LevelBlueData Accelerator: Software Supply Chain and Cybersecurity·Jul 9, 2025
Software supply chain

The 6% of organizations with "very high visibility" of their software supply chain are a stark contrast to the 80% with "very low visibility" who suffered a breach.

LevelBlueData Accelerator: Software Supply Chain and Cybersecurity·Jul 9, 2025
Software supply chain

A total of 68% of organizations report that media attention has elevated cybersecurity on the C-suite agenda.

LevelBlueData Accelerator: Software Supply Chain and Cybersecurity·Jul 9, 2025
Cybersecurity

In Europe, 51% of organizations say they are prepared for software supply chain attacks.

LevelBlueData Accelerator: Software Supply Chain and Cybersecurity·Jul 9, 2025
Software supply chainEurope