We believe Gartner latest research places evolving account takeover among threats where neither attackers nor defenders hold a decisive edge, with techniques now targeting machine identities as well as human ones.

Download the report to see the full ThreatScape matrix and reassess your ATO program before this planning cycle closes.

Key findings from the report include:

  • Account takeover appears in Gartner 2025 ThreatScape chart, which maps cybersecurity threats by signal strength and whether attackers or defenders hold the advantage.
  • The report calls for organization-wide defense against “evolving account takeover threats targeting humans and machine identities.”
  • Eighty-one percent of non-executive directors view cybersecurity as a business risk, and 93% see cyber risk as a threat to shareholder value. Yet, less than 40% of them are confident or very confident in the ability of CIOs/CTOs (38%) and CISOs (37%) to protect enterprises from cyber threats.
  • Established threats are more prominent. Cybersecurity teams are well prepared to counter them, the defense technologies are mature and the detection rate typically exceeds 90%. Social engineering and API abuse are prime examples.

*Gartner, Update Your Cybersecurity Priorities in a Shifting Threat Landscape, Jeremy D’Hoinne, John Watts, 18 September 2025

Gartner is a registered trademark of Gartner, Inc. and/or affiliates.

Read the Report

Thanks for submitting!

Read Now