Attackers target public-facing applications over ransomware in 2025
In late 2025, attackers shifted their focus from high-volume ransomware campaigns to breaking into public-facing applications, according to analysis cited by Telecoms Tech News. Exploiting internet-exposed APIs and web services became the leading way into corporate systems.
The change reflects how digital transformation is erasing the boundary between internal networks and the public internet. As organisations roll out more revenue-generating online services, they unintentionally widen the attack surface. Security teams now have to treat every new external-facing application as a likely entry point, not a side project.
More from Technology
00:00TechnologyOokla says 70% of Q2 2026 FWA tests came from urban usersfierce-network.com00:00TechnologySpaceX seeks 3 AWS-3 licenses from Tristar via FCC filinglightreading.com00:00TechnologyStarlink renewed Gen 2 India application for direct-to-devicelightreading.com00:00TechnologyParatus Uganda launches Starlink LEO service in Ugandadevelopingtelecoms.com00:00TechnologyNTT Docomo, Mitsubishi Estate target 5G smart city in Marunouchitelecompaper.com00:00TechnologyLumen and AT&T cite 3 AI network constraintslightreading.com