logo

2025 Identity Threat Landscape Report: Inside the Infostealer Economy: Credential Threats in 2025

ID: 6f43b11a-abb0-516e-a97f-241e9230a57d

STIX ID: report--6f43b11a-abb0-516e-a97f-241e9230a57d

Feed Name: Recorded Future Blog

Threat Score
78/100

Date Published: 2026-03-16

Date Updated: 2026-04-29

...
...

Executive summary: Recorded Future's 2025 Identity Intelligence report documents massive growth in credential theft driven by infostealer malware — reporting billions of credential exposures (e.g., 1.95B malware combo list exposures, 892M malware log exposures), an average of 87 stolen credentials per infected device, and 276M credentials that included active session cookies enabling MFA bypass — and attributes activity to evolving MaaS families (LummaStealer, Rhadamanthys, Vidar, StealC, AMOS/MacSync), while urging continuous monitoring, cookie/session invalidation, automated remediation, and coverage of personal and third-party devices.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.