Google Cloud Threat Horizons Report H2 2025

An overview of emerging cloud security threats and recommended defenses.

Executive Summary

The H2 2025 Google Cloud Threat Horizons Report details the evolving landscape of cloud security threats. It highlights sophisticated tactics employed by threat actors, including advanced methods for data exfiltration, identity compromise, and supply chain attacks. The report emphasizes the critical need for robust identity and access management, proactive vulnerability management, and resilient backup solutions. Key trends include the targeting of backup infrastructure, sophisticated social engineering, and the misuse of trusted cloud services for malware delivery.

Key Threat Areas

  • Foundational Security: Credential compromise and misconfiguration remain primary entry points for threat actors.
  • Backup Infrastructure Targeting: Financially motivated groups are increasingly targeting backup systems, necessitating resilient recovery solutions.
  • Social Engineering & MFA Bypass: Advanced actors use social engineering to steal credentials and bypass multi-factor authentication.
  • Decoy Files & Supply Chain Risks: Threat actors use deceptive files hosted on cloud services and exploit vulnerabilities in software supply chains.

Mitigation Strategies

Google Cloud offers robust capabilities to counter these threats. Recommendations include fortifying identity with MFA and session management, enhancing endpoint and cloud workload threat detection, implementing granular segmentation and zero trust principles, and securing software development and supply chains. User awareness training and inbound file inspection are also crucial for defense.

About the Report

This report is informed by Google Cloud's Office of the CISO, Google Threat Intelligence Group (GTIG), Mandiant Consulting, and various Google Cloud intelligence, security, and product teams. It aims to provide decision-makers with strategic intelligence and actionable risk mitigations to improve cloud security.

For more information on Google Cloud security, visit Google Cloud Security.

PDF preview unavailable. Download the PDF instead.

cloud threat horizons report h22025 Adobe PDF Library 17.0 Adobe InDesign 20.4 (Windows)

Related Documents

Preview Google Cloud Security Partner Ecosystem: Trusted Solutions & Innovation
Discover how Google Cloud's secure platform, innovative tools, and partner ecosystem enable businesses to build robust, scalable, and trusted security solutions for the cloud, data centers, and edge.
Preview CISO's Guide to Cloud Security Transformation | Google Cloud
A comprehensive guide for Chief Information Security Officers (CISOs) on transforming their organization's security approach for the cloud, covering culture, roles, operating models, and best practices from Google Cloud.
Preview Curso Google Cloud Architect Profesional 2025 | Certificación GCP
Prepárate para la certificación Google Cloud Architect Profesional 2025 con nuestro curso online 100% práctico. Aprende de instructores expertos, accede a laboratorios y material exclusivo.
Preview Google Cloud Next Tokyo 2025 プログラムガイド
Google Cloud Next Tokyo 2025 の公式プログラムガイド。AI、データ、クラウド技術の最新セッション、タイムテーブル、会場マップ、スピーカー情報などを網羅し、イベント参加をサポートします。
Preview User Guide: Creating Prompts with Gemini for Security Operations and Threat Intelligence
Learn how to create effective prompts for Gemini, an AI assistant designed to enhance Google Security Operations and Threat Intelligence. This guide covers best practices, use cases, and prompt examples for threat detection, Q&A, playbook generation, and more.
Preview Curso Triple Certificación Google Cloud: Digital Leader, Cloud Engineer, Cloud Architect 2025
Prepárate para las certificaciones de Google Cloud con nuestro curso intensivo. Aprende de expertos, practica con laboratorios y simula exámenes para convertirte en Cloud Digital Leader, Cloud Engineer y Cloud Architect en 2025.
Preview Curso de Doble Certificación Google Cloud Digital Leader y Cloud Architect 2025
Prepárese para la doble certificación Google Cloud Digital Leader y Cloud Architect con este curso online integral. Cubre temas clave, ofrece clases prácticas, acceso a la plataforma y preparación para exámenes oficiales.
Preview Leveling Up with Autonomous Network Operations: A Heavy Reading White Paper for Google Cloud
An in-depth white paper by Heavy Reading (now part of Omdia) for Google Cloud, exploring the adoption of Autonomous Network Operations (ANOps) by Communications Service Providers (CSPs), driven by AI, machine learning, and key technologies.