{"id":125604,"date":"2025-08-07T05:25:30","date_gmt":"2025-08-07T04:25:30","guid":{"rendered":"https:\/\/www.intelligentcio.com\/me\/?p=125604"},"modified":"2025-08-07T05:25:32","modified_gmt":"2025-08-07T04:25:32","slug":"malware-surge-exposes-gaps-in-legacy-cyber-defences-says-opswat","status":"publish","type":"post","link":"https:\/\/www.intelligentcio.com\/me\/2025\/08\/07\/malware-surge-exposes-gaps-in-legacy-cyber-defences-says-opswat\/","title":{"rendered":"Malware surge exposes gaps in legacy cyber defences, says OPSWAT"},"content":{"rendered":"\n<p>Malware threats are growing more sophisticated, while legacy cyber defence systems are increasingly unable to keep pace, according to OPSWAT\u2019s newly released <em>2025 Threat Landscape Report<\/em>.<\/p>\n\n\n\n<p>The report &#8211; based on more than 890,000 scans conducted via the firm\u2019s cloud-based analysis platform, Filescan.io &#8211; found a 127% increase in malware complexity over the past year. It also revealed that 1 in every 14 files considered \u2018safe\u2019 by older detection systems was later confirmed to be malicious through behavioural analysis.<\/p>\n\n\n\n<p>As cyber attackers shift from brute-force methods to stealthier, evasion-led strategies, OPSWAT argues that conventional antivirus and signature-based tools are no longer sufficient to protect critical infrastructure, enterprise networks and government systems.<\/p>\n\n\n\n<p>\u201cThis is not a game of volume anymore &#8211; it\u2019s a game of deception,\u201d said Jan Miller, Chief Technology Officer for Threat Analysis at OPSWAT. \u201cAttackers are building malware designed to confuse and delay detection, not overwhelm defences in the traditional sense.\u201d<\/p>\n\n\n\n<p><strong>Stealth, not scale, defines modern malware<\/strong><\/p>\n\n\n\n<p>The report details a wide array of malware behaviours now evading detection. These include steganography-laced loaders, clipboard hijackers like ClickFix and .NET Bitmap file loaders delivering Snake Keylogger payloads. In several instances, OPSWAT\u2019s analysis identified command-and-control (C2) channels disguised within trusted platforms such as Google services.<\/p>\n\n\n\n<p>According to OPSWAT, the complexity of these malware strains has outstripped the capabilities of traditional tools that rely on static analysis, file reputation or public threat intelligence feeds. The company\u2019s own pipeline reclassified 7.3% of scanned files as malicious, often 24 hours ahead of any signals on open-source intelligence sources.<\/p>\n\n\n\n<p><strong>Campaign-level intelligence gives defenders context<\/strong><\/p>\n\n\n\n<p>Beyond individual file detection, OPSWAT\u2019s system connects the dots across multiple campaigns. By analysing shared tactics, reused infrastructure and behavioural patterns, the platform delivers broader visibility into adversary strategies.<\/p>\n\n\n\n<p>This campaign-level threat correlation is a departure from older, indicator-based systems that often overwhelm security teams with low-fidelity alerts. OPSWAT claims its approach improves decision-making for defenders, particularly in complex or high-risk environments like OT, energy and healthcare.<\/p>\n\n\n\n<p>The company\u2019s use of an enhanced PE emulator and behaviour-led machine learning resulted in a detection accuracy of 99.97% across all sandbox scans. These technologies, OPSWAT said, are key to identifying threats that do not match known signatures but exhibit suspicious execution behaviour.<\/p>\n\n\n\n<p><strong>A call for adaptive, multilayered defence strategies<\/strong><\/p>\n\n\n\n<p>The broader implication, OPSWAT warns, is that organisations relying solely on static detection technologies face growing exposure to increasingly modular and evasive malware. The report advocates for integrated, layered security pipelines that combine behavioural analysis, proactive emulation and contextual intelligence.<\/p>\n\n\n\n<p>\u201cFor security leaders, the question is no longer whether legacy tools work\u2014they don\u2019t in many cases,\u201d said Miller. \u201cThe question is how quickly they can pivot to a detection strategy that adapts in real time.\u201d<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Malware threats are growing more sophisticated, while legacy cyber defence systems are increasingly unable to keep pace, according to OPSWAT\u2019s newly released 2025 Threat Landscape Report. The report &#8211; based on more than 890,000 scans conducted via the firm\u2019s cloud-based analysis platform, Filescan.io &#8211; found a 127% increase in malware complexity over the past year. [&hellip;]<\/p>\n","protected":false},"author":4338,"featured_media":124498,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"footnotes":""},"categories":[18762,14804,19391,13],"tags":[3211,1530,908,562],"class_list":["post-125604","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-ai","category-cybersecurity","category-hot-topic","category-top-stories","tag-ai","tag-cybersecurity","tag-digital-transformation","tag-middle-east"],"acf":[],"publishpress_future_workflow_manual_trigger":{"enabledWorkflows":[]},"_links":{"self":[{"href":"https:\/\/www.intelligentcio.com\/me\/wp-json\/wp\/v2\/posts\/125604","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.intelligentcio.com\/me\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.intelligentcio.com\/me\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.intelligentcio.com\/me\/wp-json\/wp\/v2\/users\/4338"}],"replies":[{"embeddable":true,"href":"https:\/\/www.intelligentcio.com\/me\/wp-json\/wp\/v2\/comments?post=125604"}],"version-history":[{"count":1,"href":"https:\/\/www.intelligentcio.com\/me\/wp-json\/wp\/v2\/posts\/125604\/revisions"}],"predecessor-version":[{"id":125605,"href":"https:\/\/www.intelligentcio.com\/me\/wp-json\/wp\/v2\/posts\/125604\/revisions\/125605"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.intelligentcio.com\/me\/wp-json\/wp\/v2\/media\/124498"}],"wp:attachment":[{"href":"https:\/\/www.intelligentcio.com\/me\/wp-json\/wp\/v2\/media?parent=125604"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.intelligentcio.com\/me\/wp-json\/wp\/v2\/categories?post=125604"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.intelligentcio.com\/me\/wp-json\/wp\/v2\/tags?post=125604"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}