Credential theft has surged 160% in 2025
Briefly

In 2025, credential theft has become a significant issue, representing 20% of data breaches. There has been a reported 160% increase in compromised credentials, with 14,000 incidents noted by Check Point in a single month. Factors contributing to this rise include AI-enhanced phishing and the easing access provided by Malware as a Service. Businesses often take around 94 days to address leaked credentials from GitHub, allowing attackers ample time to exploit stolen info. Brazil and India exhibit particularly high breach rates, while platforms like Discord and Microsoft are frequently affected.
Credential theft accounts for one-in-five data breaches, with a 160% surge in compromised credentials reported in 2025. Hackers exploit easier access through AI-powered phishing and Malware as a Service offerings.
Businesses take an average of 94 days to remediate leaked credentials from GitHub, indicating significant delays in detecting and acting on exposed login information.
Countries like Brazil and India showed high rates of credential breaches, with 7.64% and 7.10% respectively, while other countries in the top ten vary between 4.3% to 3%.
Common victims of credential theft include platforms like Discord, Microsoft, Facebook, Gmail, and Roblox, stressing a clear trend in compromised services.
Read at IT Pro
[
|
]