The State of Cybercrime in 2025 (with Nick Ascoli!)

The State of Cybercrime in 2025 (with Nick Ascoli!)

Source: YouTube · John Hammond · published Nov 15, 2025 · 43:24

Cybersecurity
No ratings yet Log in to rate
Transcript Available
Description

The cybersecurity landscape has shifted with cybercriminals increasingly targeting technical service companies and utilizing stolen credentials rather than sophisticated exploits 0:04-0:15.

Key Takeaways:
• Technical service companies are prime targets as their compromises have massive downstream implications 0:04-0:15
• MFA adoption remains low despite increased awareness, leaving many accounts vulnerable 0:17-0:27
• Stealer logs have become the "AK-47 of cyber crime," enabling more targeted credential attacks 4:44-4:46
• Major cybercrime forums like Breach Forums, Nulled, and Cracked have been disrupted or seized 11:19-11:28
• Law enforcement operations have resulted in numerous arrests of high-profile cybercriminals 17:13-17:16
• Session cookies bypass MFA and have become a popular attack vector alongside stolen credentials 31:19-31:23

The cybercrime ecosystem has scattered across smaller platforms after forum disruptions, but credential-based attacks continue to evolve as a primary threat vector.

Published date: Not explicitly stated in source material

Generate CPE Credits

Generate a professional CPE document from this video's transcript.

Estimated credit: 0.5 CPE hours

Estimate uses the video runtime (1 hour ≈ 1 CPE, rounded to the nearest 0.5, minimum 0.5, maximum 2.0). The final amount can be lower after review, never higher.

Topic: Cybersecurity. Commonly maps to: Security and Risk Management, Security Operations. Exact CISSP domains are assigned during generation.

CISSP Domain Mapping
Learning Objectives
Self-Assessment Questions
PDF Export Ready

Free account. One generation at a time, with a daily limit.

CPEBuddy is independent and not affiliated with or endorsed by ISC2, ISACA, or any certification body. Exports are formatted for common CPE submissions; acceptance is at your certification body's discretion.

Watch on YouTube

Transcript Preview

First 800 characters of the transcript

Most leaks had massive downstream implications. And the largest targets that yielded the most results for cyber criminals were companies that served other companies in some kind of technical or like technical service capacity. The other which is shocking is credential attacks are on the rise. MFA is much more popular but not like nearly as popular as one would hope or that we would expect since we work in cyber security and talk about MFA a lot. There's a ridiculous amount of accounts sitting in the wild that I'm sure any cyber criminal could walk right into with no MFA on pretty much every platform in the world. >> An anecdote. I was thinking I need to get some sort of skit recorded where we're just playing with the idea of MFA everywhere. I want to be like I try to get out of bed, I try …