A Year in Review

As we wrap up 2024, we’re excited to share highlights from an incredible year of insights, innovation, and collaboration at Cyentia. This year brought a wealth of new reports, engaging webinars, and thought-provoking discussions across our community. We couldn’t have done it without your continued support and curiosity.

Below, you’ll find a look back at some of our top research publications, webinar recordings that sparked important conversations, and the social posts that resonated most with our audience.

Let’s revisit the milestones that defined this year and take a step forward into in 2025!

Top Published Reports

IRIS Ransomware – Unveiling the True Impact of a Persistent Threat

The Information Risk Insights Study (IRIS): Ransomware, supported by the Cybersecurity and Infrastructure Security Agency (CISA), offers an in-depth examination of the ransomware landscape over the past five years.

This report provides a detailed analysis of ransomware incidents that have compromised over a billion data records and inflicted financial damages exceeding $270 billion. With clear, data-driven insights, the study equips organizations to navigate and counter the ransomware threat effectively, transforming uncertainty into proactive resilience.

Discover actionable takeaways from the analysis of over 14,000 ransomware incidents, revealing crucial patterns and offering strategic guidance to enhance preparedness and defenses.

A Visual Exploration of Exploits in the Wild

Our inaugural report on the Exploit Prediction Scoring System (EPSS) provides an in-depth evaluation of this innovative tool’s performance in predicting real-world exploitation.

Created in collaboration with EPSS creator Jay Jacobs, this analysis compares EPSS against other strategies like CVSS and the KEV list, highlighting its superior accuracy in vulnerability prioritization.

With daily updated predictions based on real-world data, EPSS enables organizations to streamline their remediation efforts, enhancing overall cybersecurity practices. This report delivers essential insights for security teams seeking to adopt efficient and effective vulnerability management strategies.

MultiSource Analysis of the Top MITRE ATT&CK Techniques

Our collaboration between with TidalCyber explores how adversaries operate and which defenses offer the greatest impact.

By analyzing data from 22 public sources, this report highlights the most common MITRE ATT&CK techniques while addressing the challenges of varied visibility, metrics, and reporting.

Providing a comprehensive view of emerging trends and actionable guidance, empowering organizations to build threat-informed cybersecurity strategies, the report’s an indispensable resource for professionals looking to enhance their understanding of attack techniques and optimize their defensive priorities.

Most Engaging Social Content

❗️The 95% Tail Value at Risk for a Healthcare firm EXCEEDS $445 million❗️Get all the details specific to the Healthcare Industry in the IRIS Risk Retina Healthcare Sector Report

Find out more about our approach and methods in “Our Approach to MITRE ATT&CK & VERIS Research”! #mitre #mitreattack #cybersecurity

Need data to drive cyber risk quantification efforts? We’ve published a free study with all kinds of useful data points like the sample. But don’t fret if you don’t work for a nonprofit; you can get this same data for your sector! Get the IRIS Risk Retina for Your Sector

Most Watched Discussions

Unpacking the IRIS Ransomware

IRIS 2022 Discussion with CISA

ChatGPT’s Guide to MITRE ATT&CK

As 2024 draws to a close, it’s clear that Cyentia has had a transformative year. From groundbreaking reports to engaging webinars, we’ve cemented our position as thought leaders in the cybersecurity space. The highlights of this year reflect not only our commitment to delivering actionable insights but also the strength of our partnerships and community.

Reflecting on Our Key Achievements

This year, our flagship publications set new benchmarks in the industry:

  • IRIS Ransomware Report: Delivered an unparalleled analysis of ransomware incidents, equipping organizations with data-driven insights to counteract this persistent threat.
  • Exploit Prediction Scoring System (EPSS) Report: Showcased the power of innovative tools to predict real-world exploitation, helping security teams prioritize vulnerabilities with unprecedented accuracy.
  • MITRE ATT&CK Techniques Report: Offered a comprehensive view of adversary behavior, enabling cybersecurity professionals to optimize their defenses through actionable guidance.

These reports, along with our most-watched webinars and thought-provoking social discussions, demonstrate our ability to translate complex data into strategic clarity.

Building on Momentum

Our accomplishments in 2024 aren’t just a reflection of where we’ve been—they’re a launchpad for what’s next. With reports like the IRIS Risk Retina empowering industry-specific risk quantification and ongoing collaborations to refine vulnerability management strategies, we’re entering 2025 with purpose and passion.

Looking Ahead

In the year to come, Cyentia will continue to explore emerging threats, foster innovation, and deliver actionable research that empowers the cybersecurity community. Our roadmap for 2025 is already packed with exciting initiatives, including IRIS 2025, an expanded follow-up to our flagship IRIS Ransomware report that will dive even deeper into data and emerging trends. We’re also unveiling IRIS Xtreme, a bold new analysis designed to push the boundaries of what’s possible in cyber risk quantification, giving organizations even sharper insights into their risk landscapes.

Beyond these marquee projects, we’re thrilled to partner with numerous clients on custom reports that will debut throughout the year. For many, our work will be the cornerstone of their enhanced presence at major conferences like RSA 2025 and Black Hat, where timely, authoritative research can make a lasting impact. By aligning publication timelines with these key industry events, we’re helping our clients maximize visibility and influence.

Supercharging Cybersecurity in 2025

As we head into the new year, we’re not just continuing our mission—we’re amplifying it. With a robust slate of reports, collaborations, and innovations, Cyentia is positioned to lead the charge in transforming the cybersecurity landscape. Our dedication to turning complex challenges into clear, actionable solutions remains unwavering, and we’re excited to bring even greater value to our clients and the broader community.

Together, we can build a more secure, informed future. Here’s to making 2025 a landmark year for cybersecurity!