In Q1 2025, Kaspersky products blocked over 629 million attacks, with 88 million unique links detected by Web Anti-Virus.File Anti-Virus blocked over 21 million malicious objects, and nearly 12,000 new ransomware variants were found.Phobos Aetor operation led to arrests of 8Base members for cyberattacks involving Phobos ransomware.Law enforcement efforts resulted in extraditing a suspected ransomware developer linked to LockBit.New vulnerabilities in Paragon Partition Manager were exploited for BYOVD attacks in Q1.Akira ransomware bypassed EDR by exploiting a webcam vulnerability and using Linux-based systems.HellCat utilized compromised Jira credentials for attacking companies like Ascom and Jaguar Land Rover.Ransomware group RansomHub remained a leader in adding new victims, followed by Akira and Clop.Kaspersky detected three new ransomware families and 11,733 new variants, a significant increase from the previous quarter.315,701 unique users worldwide were attacked by miners in Q1 2025, with various countries facing such attacks.