2025 Elastic Global Threat Report

Dive into the 2025 Elastic Global Threat Report for insights on adversary trends and defender strategies. Learn how ML, AI, and open tools are shaping security today.

Discover Elastic’s impact on the threat landscape in the 2025 Elastic Global Threat Report.

Elastic Security Labs analyzes hundreds of millions of telemetry events, exposing adversary trends and defender insights. With an emphasis on transforming data into action, this report reveals the power of free and open protections, with deeper dives on:

  • Adversary preferences for open source and off-the-shelf tools
  • Intelligence profiles describing some of our most notorious threats
  • The powerful role ML and AI play in developing advanced detection capabilities

The Global Threat Report provides both sides of the equation — both the relentlessness of security development and commitment of threats to surpass them. Grab your copy of the fourth edition today, and get ready for what comes tomorrow.

  • An explosive growth of infostealers, now exceeding 25% of malware detected, feeding credentials to robust access broker networks; low risk no longer!
  • Execution surpasses Defense Evasions as the top MITRE ATT&CK® tactic for the first time since we began reporting, representing a third of all observed activity
  • New baselines provided from open and closed sources enable comparisons to collected telemetry data, a new commitment to transparency
  • Research deep-dives that describe how AI will impact security teams this coming year
7003-En-1T-2025 Elastic Global Threat Report
Scroll to Top