
VIPRE Security Group released Email Security in 2025: What to Expect from the Evolving Threat Landscape, a report highlighting trends in email-based attacks that shaped enterprise security in 2024. The report explores advanced strategies and techniques employed by cybercriminals in the past year, enabling evidence-based projections of the emerging email security threats in 2025. VIPRE processed 7.2 billion emails globally, of which 858 million were spam.
Spam Blitz
Over nine out of 10 emails were categorized as spam—unsolicited, unwanted emails or those sent with malicious intent. Of the never-seen-before spam emails, 37% fell into the commercial, 32% into the scam, and 21% into the phishing categories of spam. Across each quarter of 2024, the U.S. tops the ‘spam senders’ list, followed by the UK.
Interestingly, many other countries that feature in the most ‘spam senders’ list are also considered amongst the most trusted, such as Switzerland, Sweden, and Norway, among others.
Infostealers On The Rise
Most of the malware encountered in the last quarter of 2024 were infostealers and remote access trojans (RATs), designed to spy on victims’ machines and gather sensitive information to send back to the attacker as well as deliver threats, such as ransomware. Furthermore, all the malware encountered was Windows-based, such as Stealc, Lumma, and AgentTesla.
Deceptive Phishing Maneuvers
Cybercriminals deployed a variety of phishing tactics with links (70%) as the top favorite, followed by attachments (25%) and QR codes (5%). Noteworthy is that the use of QR codes peaked at 12% in Q4 of 2024.
Regarding phishing links, URL redirection was the most employed tactic (51%), followed by compromised websites (19%) and newly created domains (7%).
BEC Scams At The Heart Of Social Engineering
Business email compromise (BEC) remained the favored social engineering ploy, reiterating that despite security software becoming more effective, people continue to be the weakest link. Threat actors leveraged ‘impersonation’ as a tactic in an average of 88% of all cases – followed by diversion, email hijacking, and account takeover. Also, executive spoofing persists as a serious threat, worsened by the use of AI. 74% of the time, CEOs and executives were the roles that were compromised.
The Most Targeted Industry Sector, The Most Spoofed Brand
The manufacturing sector (32%) was consistently the clear favorite for email-based attacks, with energy (9%), retail (8%), health (5%) and government (4%) as some of the others.
Microsoft (unsurprisingly) retained its title as the most spoofed brand throughout the year, with DocuSign, Apple, and Google ranking highly too.
Email Security Threats In 2025
Based on 12 months of extensive observation and research, the notable trends threatening email security globally in 2025 include the use of QR codes for phishing and malware delivery, the growth of infostealers to steal sensitive information, the adoption of deepfakes and synthetic media (including manipulated images, audio, and video) for email-based attacks, and hard-to-detect, at-scale AI-driven phishing and social engineering attacks. BEC will also remain a significant concern.
To read the full report, click here: Email Security in 2025: What to Expect from the Evolving Email Threat Landscape.