Verified cybersecurity exposure and threat context · United Arab Emirates / UAE Cyber Security Council
UAE cybersecurity exposure, incident categories and DDoS trend — State of the UAE Cybersecurity Report 2025
Market context — not industry-specific evidence
The State of the UAE Cybersecurity Report 2025, released by UAE Cyber Security Council and CPX, states that over 223,800 assets hosted within the UAE are potentially exposed to cyber-attacks, and that half of the critical vulnerabilities in the report context remain unaddressed for over five years. Within the incident category context in the report, misconfiguration accounts for 32% and improper usage and unlawful activity for 19%. Ransomware groups operating in the UAE witnessed 58% growth in the report context. DDoS attacks in the report context decreased from 58,538 in H1 2023 to 2,301 in H1 2024. These figures are UAE Cyber Security Council / CPX 2025 report-defined context; they are not total UAE business incident prevalence, not a national incident registry, and not industry-specific evidence.
Assets hosted within the UAE potentially exposed to cyber-attacks
- Assets potentially exposed (report states "over 223,800")
- 223,800
- Unit
- assets hosted within the UAE assessed as potentially exposed to cyber-attacks (report states "over 223,800")
- Source
- UAE Cyber Security Council / CPX, State of the UAE Cybersecurity Report 2025, 25 February 2025
- Period
- UAE Cyber Security Council / CPX 2025 report-defined exposure, vulnerability-age, incident-category, ransomware-group activity and DDoS trend context for calendar year 2024 and H1 2023–H1 2024 comparative period.
- Scope
- UAE Cyber Security Council / CPX 2025 report-defined exposure and threat context
The State of the UAE Cybersecurity Report 2025 states that over 223,800 assets hosted within the UAE are potentially exposed to cyber-attacks.
UAE Cyber Security Council / CPX 2025 report-defined exposure context. "Over 223,800 assets" refers to assets hosted within the UAE assessed as potentially exposed — not confirmed compromised assets, breached organisations, or active incidents. Not total UAE business incident prevalence and not industry-specific evidence.
Critical vulnerabilities unaddressed for over five years
- Share of critical vulnerabilities in report context unaddressed for over five years
- 50%
- Unit
- percent of critical vulnerabilities in the report context unaddressed for over five years
- Source
- UAE Cyber Security Council / CPX, State of the UAE Cybersecurity Report 2025, 25 February 2025
- Period
- UAE Cyber Security Council / CPX 2025 report-defined exposure, vulnerability-age, incident-category, ransomware-group activity and DDoS trend context for calendar year 2024 and H1 2023–H1 2024 comparative period.
- Scope
- UAE Cyber Security Council / CPX 2025 report-defined exposure and threat context
The State of the UAE Cybersecurity Report 2025 states that half of the critical vulnerabilities in the report context remain unaddressed for over five years.
This refers to critical vulnerabilities described within the report context only, not all vulnerabilities in all UAE systems. Not total UAE business incident prevalence and not industry-specific evidence.
Selected incident categories — UAE Cyber Security Council / CPX 2025 report context
- Misconfiguration — 32%
- 32%
- Unit
- percent of cyber incidents in the report context categorised as misconfiguration
- Source
- UAE Cyber Security Council / CPX, State of the UAE Cybersecurity Report 2025, 25 February 2025
- Period
- UAE Cyber Security Council / CPX 2025 report-defined exposure, vulnerability-age, incident-category, ransomware-group activity and DDoS trend context for calendar year 2024 and H1 2023–H1 2024 comparative period.
- Scope
- UAE Cyber Security Council / CPX 2025 report-defined exposure and threat context
- Improper usage and unlawful activity — 19%
- 19%
- Unit
- percent of cyber incidents in the report context categorised as improper usage and unlawful activity
- Source
- UAE Cyber Security Council / CPX, State of the UAE Cybersecurity Report 2025, 25 February 2025
- Period
- UAE Cyber Security Council / CPX 2025 report-defined exposure, vulnerability-age, incident-category, ransomware-group activity and DDoS trend context for calendar year 2024 and H1 2023–H1 2024 comparative period.
- Scope
- UAE Cyber Security Council / CPX 2025 report-defined exposure and threat context
Report-defined incident category shares within the UAE Cyber Security Council / CPX 2025 report context. These are not all-UAE incident prevalence rates, all-business incident prevalence rates, or industry-specific evidence for the sector shown on this page.
Ransomware group activity growth — UAE 2025 report context
- Growth in ransomware groups operating in the UAE (report context)
- 58%
- Unit
- percent growth in ransomware groups operating in the UAE witnessed in the report context
- Source
- UAE Cyber Security Council / CPX, State of the UAE Cybersecurity Report 2025, 25 February 2025
- Period
- UAE Cyber Security Council / CPX 2025 report-defined exposure, vulnerability-age, incident-category, ransomware-group activity and DDoS trend context for calendar year 2024 and H1 2023–H1 2024 comparative period.
- Scope
- UAE Cyber Security Council / CPX 2025 report-defined exposure and threat context
The State of the UAE Cybersecurity Report 2025 states that ransomware groups operating in the UAE witnessed 58% growth in the report context.
58% growth in ransomware groups operating in the UAE as stated in the report context. Not a UAE-business breach rate, not an incident prevalence rate, and not industry-specific evidence.
DDoS attacks — H1 2023 versus H1 2024 (UAE report context)
- H1 2023
- 58,538
- Unit
- DDoS attacks recorded in H1 2023 in the report context
- Source
- UAE Cyber Security Council / CPX, State of the UAE Cybersecurity Report 2025, 25 February 2025
- Period
- UAE Cyber Security Council / CPX 2025 report-defined exposure, vulnerability-age, incident-category, ransomware-group activity and DDoS trend context for calendar year 2024 and H1 2023–H1 2024 comparative period.
- Scope
- UAE Cyber Security Council / CPX 2025 report-defined exposure and threat context
- H1 2024
- 2,301
- Unit
- DDoS attacks recorded in H1 2024 in the report context
- Source
- UAE Cyber Security Council / CPX, State of the UAE Cybersecurity Report 2025, 25 February 2025
- Period
- UAE Cyber Security Council / CPX 2025 report-defined exposure, vulnerability-age, incident-category, ransomware-group activity and DDoS trend context for calendar year 2024 and H1 2023–H1 2024 comparative period.
- Scope
- UAE Cyber Security Council / CPX 2025 report-defined exposure and threat context
DDoS attack figures compare H1 2023 (58,538) with H1 2024 (2,301) in the report context. This decrease must not be presented as proof that UAE-wide cyber risk decreased overall. Not total UAE business incident prevalence and not industry-specific evidence.
Source: UAE Cyber Security Council / CPX, State of the UAE Cybersecurity Report 2025, 25 February 2025
Scope: UAE Cyber Security Council / CPX, State of the UAE Cybersecurity Report 2025, announced by Emirates News Agency / WAM, 25 February 2025. The "over 223,800 assets" figure describes assets hosted within the UAE assessed as potentially exposed — not confirmed compromised assets, breached organisations, or active incidents. The 50% critical-vulnerability figure refers to critical vulnerabilities in the report context only, not all vulnerabilities in all UAE systems. The 32% misconfiguration and 19% improper usage and unlawful activity figures are report-defined incident category shares and do not measure all-UAE incident prevalence or all-business incident prevalence. The 58% ransomware group growth describes the growth in groups operating in the UAE as stated in the report and is not a UAE-business breach rate. The DDoS comparison (H1 2023: 58,538; H1 2024: 2,301) is drawn from the report context; the decrease must not be presented as proof that UAE-wide cyber risk decreased overall. These figures do not measure total UAE business incident prevalence, hidden incident prevalence, population-wide victimisation rates, industry-specific evidence, compliance achievement, certification or security outcomes. Treat as UAE official/authoritative cybersecurity report context; not an independent government incident registry or complete national incident census.
Methodology: Official UAE Cyber Security Council and CPX joint report context announced by Emirates News Agency / WAM on 25 February 2025. The admitted indicators describe UAE report-defined exposure, vulnerability age, incident categories, ransomware-group activity and DDoS trend context. The "over 223,800 assets" figure refers to assets hosted within the UAE assessed as potentially exposed — not confirmed compromised assets, breached organisations, or active incidents. The 50% critical-vulnerability figure applies to critical vulnerabilities described in the report context only, not all vulnerabilities in all UAE systems. The 32% misconfiguration and 19% improper usage and unlawful activity figures are report-defined incident category shares and must not be presented as all-UAE incident prevalence or all-business incident prevalence. The 58% ransomware group growth is a report-stated growth figure for groups operating in the UAE and must not be presented as a UAE-business breach rate or incident prevalence rate. The DDoS figures compare H1 2023 (58,538) with H1 2024 (2,301) in the report context; the decrease must not be presented as proof that UAE-wide cyber risk decreased overall. Treat as UAE official/authoritative cybersecurity report context; do not present as an independent government incident registry or a complete national incident census.
Accessible data table
| Metric | Value | Source | Scope | Reporting period |
|---|---|---|---|---|
| Assets potentially exposed (report states "over 223,800") | 223,800 assets hosted within the UAE assessed as potentially exposed to cyber-attacks (report states "over 223,800") | UAE Cyber Security Council / CPX, State of the UAE Cybersecurity Report 2025, 25 February 2025 | UAE Cyber Security Council / CPX 2025 report-defined exposure and threat context | UAE Cyber Security Council / CPX 2025 report-defined exposure, vulnerability-age, incident-category, ransomware-group activity and DDoS trend context for calendar year 2024 and H1 2023–H1 2024 comparative period. |
| Share of critical vulnerabilities in report context unaddressed for over five years | 50% percent of critical vulnerabilities in the report context unaddressed for over five years | UAE Cyber Security Council / CPX, State of the UAE Cybersecurity Report 2025, 25 February 2025 | UAE Cyber Security Council / CPX 2025 report-defined exposure and threat context | UAE Cyber Security Council / CPX 2025 report-defined exposure, vulnerability-age, incident-category, ransomware-group activity and DDoS trend context for calendar year 2024 and H1 2023–H1 2024 comparative period. |
| Misconfiguration — 32% | 32% percent of cyber incidents in the report context categorised as misconfiguration | UAE Cyber Security Council / CPX, State of the UAE Cybersecurity Report 2025, 25 February 2025 | UAE Cyber Security Council / CPX 2025 report-defined exposure and threat context | UAE Cyber Security Council / CPX 2025 report-defined exposure, vulnerability-age, incident-category, ransomware-group activity and DDoS trend context for calendar year 2024 and H1 2023–H1 2024 comparative period. |
| Improper usage and unlawful activity — 19% | 19% percent of cyber incidents in the report context categorised as improper usage and unlawful activity | UAE Cyber Security Council / CPX, State of the UAE Cybersecurity Report 2025, 25 February 2025 | UAE Cyber Security Council / CPX 2025 report-defined exposure and threat context | UAE Cyber Security Council / CPX 2025 report-defined exposure, vulnerability-age, incident-category, ransomware-group activity and DDoS trend context for calendar year 2024 and H1 2023–H1 2024 comparative period. |
| Growth in ransomware groups operating in the UAE (report context) | 58% percent growth in ransomware groups operating in the UAE witnessed in the report context | UAE Cyber Security Council / CPX, State of the UAE Cybersecurity Report 2025, 25 February 2025 | UAE Cyber Security Council / CPX 2025 report-defined exposure and threat context | UAE Cyber Security Council / CPX 2025 report-defined exposure, vulnerability-age, incident-category, ransomware-group activity and DDoS trend context for calendar year 2024 and H1 2023–H1 2024 comparative period. |
| H1 2023 | 58,538 DDoS attacks recorded in H1 2023 in the report context | UAE Cyber Security Council / CPX, State of the UAE Cybersecurity Report 2025, 25 February 2025 | UAE Cyber Security Council / CPX 2025 report-defined exposure and threat context | UAE Cyber Security Council / CPX 2025 report-defined exposure, vulnerability-age, incident-category, ransomware-group activity and DDoS trend context for calendar year 2024 and H1 2023–H1 2024 comparative period. |
| H1 2024 | 2,301 DDoS attacks recorded in H1 2024 in the report context | UAE Cyber Security Council / CPX, State of the UAE Cybersecurity Report 2025, 25 February 2025 | UAE Cyber Security Council / CPX 2025 report-defined exposure and threat context | UAE Cyber Security Council / CPX 2025 report-defined exposure, vulnerability-age, incident-category, ransomware-group activity and DDoS trend context for calendar year 2024 and H1 2023–H1 2024 comparative period. |
