Verizon

28 STATS2 REPORTS

All Statistics

89% of organizations have a specific mobile security budget.

Mobile SecurityMobile DevicesBudgets

57% of small and medium-sized businesses (SMBs) feel at a disadvantage compared to larger enterprises due to limited resources.

Mobile SecurityMobile DevicesSMBs

Only 17% of organizations have implemented specific security controls against AI-assisted attacks.

Mobile SecurityMobile DevicesAI

63% of organizations reported major operational disruptions due to downtime after a breach.

Mobile SecurityMobile DevicesDowntime

85% of organizations reported an increase in mobile device attacks in 2025.

Mobile SecurityMobile Devices

39% of organizations that ran smishing simulations reported that up to half their employees clicked on a malicious link.

Mobile SecurityMobile DevicesSmishing

93% of organizations reported that their employees use generative AI tools on mobile devices.

Mobile SecurityMobile Devices

75% of organizations increased their mobile security spending in the past year.

Mobile SecurityMobile DevicesBudgets

34% of organizations expressed concern that AI-powered attacks could significantly increase their risk exposure.

Mobile SecurityMobile DevicesAI

80% of organizations experienced phishing or smishing attempts targeting their staff.

Mobile SecurityMobile DevicesSmishing

50% of larger enterprises provide comprehensive AI risk training compared to 39% of small and medium-sized businesses.

Mobile SecurityMobile DevicesTraining

63% of organizations that experienced a cyber incident reported significant consequences due to downtime, an increase from 47% in 2024.

Mobile SecurityMobile DevicesDowntime

64% of organizations identified data compromise through generative AI as their top mobile risk.

Mobile SecurityMobile DevicesGen AI

There was a noticeable decrease in the median ransom amount paid.

RansomwareRansom

Manufacturing has experienced a dramatic, nearly sixfold surge in espionage-motivated breaches, jumping to 20% from just 3% last year.

BreachEspionageManufacturing

Retail organisations have weathered a 15% increase in cyber incidents since 2024.

Security incidentRetail

Ransomware is now present in 44% of breaches.

Ransomware

Social Engineering was the second-most common incident pattern in the region, with phishing appearing in 19% of breaches in EMEA.

Social engineeringPhishingEMEA

Ransomware attacks rose by 37% since last year.

Ransomware

64% of victim organisations did not pay ransoms this year, compared to 50% two years ago.

RansomwareRansom

In APAC, only 1% of threats are from internal actors, and North America, where internal threats account for just 5% of breaches.

Insider threatAPACNorth America

For organisations without the proper IT and cybersecurity maturity, often SMBs, ransomware is present in 88% of breaches

RansomwareData breachMaturity

System intrusion breaches in EMEA surged to 53%, nearly doubling last year’s rate of 27%.

System intrusionEMEA

Although EMEA experienced the highest percentage of breaches caused by internal actors, the number of insiders decreased by 41% in 2025.

Insider threatEMEA

Within EMEA, 19% of breaches were attributed to unintentional mistakes, and 8% involved misuse.

Insider threatEMEA

Third-party involvement in breaches doubled to 30% in this year's report.

BreachThird party

There was a 34% surge globally in vulnerability exploitation as an initial attack vector.

VulnerabilitiesInitial attack vector

In EMEA, nearly a third (29%) of breaches originated from within the organisation.

BreachInsider threatEMEA