The Containment Era is here. →Explore

Executive Summary

In 2025, the FBI's Internet Crime Complaint Center (IC3) reported that Americans lost nearly $21 billion to cyber-enabled crimes, marking a 26% increase from the previous year. The most prevalent incidents included phishing attacks, extortion, and investment scams, with cryptocurrency-related fraud accounting for over $11 billion in losses. Notably, individuals over the age of 60 were disproportionately affected, reporting $7.7 billion in losses, a 37% rise from 2024. Additionally, the FBI highlighted the emergence of AI-driven scams, which resulted in 22,300 complaints and $893 million in losses, involving tactics such as voice cloning and deepfake videos.

This surge underscores the evolving sophistication of cybercriminals, who are increasingly leveraging advanced technologies like artificial intelligence to enhance the effectiveness of their schemes. The significant financial impact on older adults highlights the urgent need for targeted education and robust cybersecurity measures to protect vulnerable populations from these emerging threats.

Why This Matters Now

The rapid escalation in cybercrime losses, particularly through AI-driven scams and cryptocurrency fraud, emphasizes the critical need for enhanced cybersecurity awareness and proactive defense strategies to safeguard individuals and organizations against increasingly sophisticated digital threats.

Attack Path Analysis

MITRE ATT&CK® Techniques

Potential Compliance Exposure

Sector Implications

Sources

Frequently Asked Questions

The most prevalent cybercrimes in 2025 included phishing attacks, extortion, investment scams, and cryptocurrency-related fraud, with the latter accounting for over $11 billion in losses.

Cloud Native Security Fabric Mitigations and ControlsCNSF

Aviatrix Zero Trust Cloud Native Security Fabric (CNSF) is pertinent to this incident as it embeds security directly into the cloud infrastructure, potentially limiting the adversary's ability to move laterally and exfiltrate data. By enforcing identity-aware controls and dynamic segmentation, CNSF could likely reduce the attacker's reach and minimize the blast radius of the breach.

Initial Compromise

Control: Cloud Native Security Fabric (CNSF)

Mitigation: While CNSF primarily focuses on intra-cloud security, its comprehensive visibility into network traffic could potentially aid in identifying and mitigating unauthorized access resulting from compromised credentials.

Privilege Escalation

Control: Zero Trust Segmentation

Mitigation: Zero Trust Segmentation could likely constrain the adversary's ability to escalate privileges by enforcing strict access controls and limiting lateral movement within the network.

Lateral Movement

Control: East-West Traffic Security

Mitigation: East-West Traffic Security could likely limit the adversary's lateral movement by monitoring and controlling internal traffic between workloads.

Command & Control

Control: Multicloud Visibility & Control

Mitigation: Multicloud Visibility & Control could likely detect and disrupt command and control channels by providing comprehensive monitoring across cloud environments.

Exfiltration

Control: Egress Security & Policy Enforcement

Mitigation: Egress Security & Policy Enforcement could likely prevent data exfiltration by controlling and monitoring outbound traffic.

Impact (Mitigations)

By potentially limiting the adversary's ability to exfiltrate sensitive data, CNSF could likely reduce the risk of financial fraud and associated monetary losses.

Impact at a Glance

Affected Business Functions

  • Financial Transactions
  • Customer Data Management
  • Email Communications
  • Technical Support Services
Operational Disruption

Estimated downtime: N/A

Financial Impact

Estimated loss: $21,000,000,000

Data Exposure

Personal and financial information of victims, including PII and sensitive financial data.

Recommended Actions

  • Implement advanced email filtering and anti-phishing solutions to detect and block malicious emails.
  • Enforce multi-factor authentication (MFA) to prevent unauthorized access even if credentials are compromised.
  • Deploy Zero Trust Segmentation to limit lateral movement within the network.
  • Utilize Egress Security & Policy Enforcement to monitor and control outbound data transfers.
  • Establish comprehensive Threat Detection & Anomaly Response mechanisms to identify and respond to suspicious activities promptly.

Secure the Paths Between Cloud Workloads

A cloud-native security fabric that enforces Zero Trust across workload communication—reducing attack paths, compliance risk, and operational complexity.

Cta pattren Image