Factor
About
Who we help
Compare Vendors
Advisory
Platforms
Events
eLearning
InsightsPlansSign in
All insights

Report

February 2025

The Cyber Threat Landscape in Australia

The digital landscape is evolving at an unprecedented pace, creating an environment where cyber

The digital landscape is evolving at an unprecedented pace, creating an environment where cyber security threats are not only more frequent but also increasingly sophisticated. In Australia, ransomware has emerged as a particularly pernicious threat, with organisations across various sectors reporting substantial incidents. The 2023/2024 Annual Cyber Threat Report highlights ransomware incidents have risen sharply, prompting the Australian Cyber Security Centre (ACSC) to call for enhanced security measures to combat this pervasive issue. Alongside the rise of ransomware attacks, the transition to cloud infrastructures has introduced new vulnerabilities and has expanded the attack surface, while organisations also struggle to manage complex security challenges related to identity access and credential management.

Moreover, many organisations remain reliant on legacy systems that lack modern security features, leaving them vulnerable to exploitation. The dual nature of artificial intelligence adds another layer of complexity; while AI can enhance defensive capabilities, it is also being harnessed by cybercriminals to create more sophisticated attacks.

As the threat landscape continues to evolve, it becomes imperative for organisations to implement robust security frameworks and strategies that not only mitigate risks but also foster a culture of security awareness among employees. This report aims to elucidate the key challenges within the current threat landscape and propose actionable strategies for organisations to enhance their cyber security posture.

Key Findings:

  • Ransomware attacks in Australia have surged in frequency and complexity, impacting organisations across all sectors, with many facing ransom demands exceeding $1 million.
  • The shift to cloud environments has introduced new vulnerabilities related to identity and access management, while reliance on legacy systems exacerbates security risks due to outdated technology and inadequate patch management.
  • Additionally, the proliferation of artificial intelligence in both defensive and offensive capacities presents a unique challenge, as cybercriminals leverage AI to enhance their attacks.
  • The cybersecurity talent pool remains largely untapped, with organisations struggling to find qualified professionals locally, leading to offshoring of staff.
Read the full report

Related insights

Report

The AI Enablement Journey

Drawing on insights from Factor’s 2025 ANZ CFO, CIO and Data & AI leader surveys, it explores how organisations are moving from fragmented, legacy architectures to unified, composable, and AI-ready platforms.

Report

The AI-Augmented Marketer

From shifting executive expectations to rising efficiency pressures, this paper offers a practical roadmap for CMOs to modernise marketing, operationalise AI, and build trust-centred, high-impact customer experiences in a competitive B2B landscape.

Report

AI in Australian Finance

Australia’s finance sector is on the verge of significant change