---
title: "How Application Control Addresses Increasingly Hostile Threat Landscape"
description: "Ransomware, state-sponsored threat actors and healthcare targeting dominated 2024-25; application control can help reduce risk and minimize attack surface."
source: https://www.airlockdigital.com/airlock-blog/how-application-control-addresses-increasingly-hostile-threat-landscape
---

# How Application Control Addresses Increasingly Hostile Threat Landscape

[The Airlock Digital Team](https://www.airlockdigital.com/airlock-blog/author/the-airlock-digital-team)

31st 
October 
2025

## Cyber Threats on the Rise

### ASD ACSC Report showcases rise in ransomware, state sponsored threat actors and healthcare targeting

Cyber Security Awareness Month 2025 may have drawn to a close, but organizations still face threats in growing number and sophistication. Now is a good time to consider strategies to proactively protect your people, data and systems.  

This blog reviews the [Australian Signals Directorate’s Australian Cyber Security Centre (ASD ACSC)’s Annual Cyber Threat Report 2024-2025](https://www.cyber.gov.au/about-us/view-all-content/reports-and-statistics/annual-cyber-threat-report-2024-2025) and explains how modern application control provides comprehensive security against key threats.

![The Australian Signals Directorate’s Australian Cyber Security Centre (ASD’s ACSC)]

Ransomware continues to be the most disruptive cybercrime threat in FY2024–25. In FY2024–25, ASD’s ACSC responded to 138 ransomware incidents, 39% of which were the result of ASD’s ACSC contacting the entity to warn of a possible cyber security incident.

The Australian Signals Directorate’s Australian Cyber Security Centre (ASD’s ACSC)

### Ransomware Continues to be a Serious Threat

[Ransomware](/use-cases/prevent-malware-ransomware), a type of malware that locks or encrypts files so criminals can demand a ransom to restore access, is “the most disruptive cybercrime threat,” according to the ASD ACSC.  

The ransomware ecosystem is becoming increasingly professionalized as a service model that makes it easy for criminals to access malware, tools, and infrastructure to launch attacks. More than one in 10 incidents the ASD ACSC responded to in 2024-25 included ransomware, and the organization noted the serious operational, financial and reputational consequences for victims. 

To understand the scale of the ransomware threat and how organizations are responding to attacks, the Australian Government in May this year introduced [mandatory ransomware and cyber extortion payment reporting](https://www.dfat.gov.au/international-relations/security/sanctions/guidance/faqs-cyber-sanctions-and-ransomware-payments).

### How Modern Application Control Stops Ransomware

With modern application control, organizations can reduce their attack surface and mitigate the risk presented by ransomware and other types of malicious software.  

Today’s solutions enforce a [Deny by Default security model](/use-cases/zero-trust-endpoint-security) that blocks all untrusted and unauthorized applications, allowing only approved software to execute.  

### Critical Infrastructure a Primary Target for Sophisticated Attackers

The Australian Government designates 11 sectors as critical infrastructure, providing services essential to everyday life. These include [healthcare and medical](/industries/secure-healthcare-life-sciences), communications, [financial services and markets](/industries/secure-banking-and-financial-services), the [defense industry](/industries/secure-state-and-local-government-au), and [energy](/industries/secure-energy-and-utilities).    

According to the ASD ACSC, these sectors are prime targets for state-sponsored actors looking to position disruptive attacks. In 2024-2025, the ASD ACSC notified critical infrastructure entities of potential malicious cyber activity impacting their networks over 190 times, up 111% from the previous year. 

## 111% YoY Increase

The ASD ACSC notified critical infrastructure entities of potential malicious cyber activity impacting their networks

### How Application Control Protects Providers of Essential Services Products

Modern application control solutions incorporate a range of features and capabilities to help critical infrastructure organizations minimize their risk and attack surfaces. These allow organizations to:      

- Address Living off the Land techniques that enable attackers to blend in with standard system and network activities. (Read more about [how to combat Living off the Land Binaries AKA LOLBins](https://www.airlockdigital.com/use-cases/prevent-lotl-attacks))
- Stop ransomware, malware and untrusted software from executing, reducing the risk of compromise and disruption
- Extend protection across IT and OT systems
- Align with [cybersecurity regulations, frameworks and strategies](https://www.airlockdigital.com/compliance/essential-eight-compliance) which defines the files and applications allowed to execute using a variety of trust mechanisms
- Maintain detailed, immutable logs of all endpoint executions and attempted executions to simplify compliance and support incident investigations

You may be interested in reading about [organizations who are relying on application control](https://www.airlockdigital.com/resources/case-studies) to protect critical infrastructure across a range of industries.

### Healthcare Breach Rates Far Outstrip Other Industries

The ASD ACSC report discloses some alarming statistics about cyber threats to Australia’s healthcare sector. Malicious actors were successful in 95% of healthcare/social assistance incidents the agency responded to in 2024-2025 — well above the 52% all-industries rate. The number of ransomware incidents against the sector doubled relative to 2023-2024. 

With healthcare organizations managing patient data and running mission-critical IT and operational technology (OT) such as building management systems and medical equipment, they are a prime target for attackers. However, modern application control features and capabilities, including those listed above, can [protect sensitive healthcare environments](/secure-healthcare-life-sciences) from disruption. 

As a provider of modern application control, Airlock Digital provides foundational endpoint security that organizations can implement to stop threats before they start.

[Add Airlock Digital as a preferred source on Google](https://www.google.com/preferences/source?q=airlockdigital.com)
