Key Takeaways
- 1,219 confirmed cybersecurity incidents in 2023 involving data breaches at U.S. federal agencies, including multiple cyber-related incidents; indicates the scale of breach activity in the federal sector
- 38% of breaches involved malware in 2023 (Verizon DBIR 2024); indicates use of malicious tooling alongside stealth access
- 78% of organizations expected increased cybersecurity budgets in 2024 (Gartner survey referenced in press releases); indicates spend pressure linked to reducing intrusion risk
- 23% of organizations reported their breach involved privileged access misuse in 2024 (Verizon DBIR 2024 privileged access findings); indicates insider-like privilege misuse vector
- 24% of organizations reported that attackers remained undetected for more than 6 months in 2023 (IBM 2023); indicates long dwell periods used in espionage
- 52% of organizations reported they had no endpoint security solution covering all systems (Check Point 2024 survey); indicates coverage gaps that attackers can exploit for persistence
- $10.5 billion the estimated cost of cybercrime to the global economy in 2020 (McAfee/CSIS, updated estimates); provides a baseline trend for the economics enabling espionage
- 1,009 data breaches were reported in 2023 in the United States (US focus)
- 58% of organizations reported that detecting an intrusion took days or more (2023 survey)
- 66% of organizations said they used threat intelligence to support incident response (2023 survey)
- 45% of organizations reported they had insufficient logging to detect attacks (2023 survey)
- 67% of organizations indicated they were impacted by supply chain or third-party compromise (2023 threat report)
- 19% of intrusion reports cited use of stolen credentials for lateral movement (2023 threat report)
- 27% of organizations reported they were targeted with fileless techniques (2023 threat report)
- 34% of organizations reported that attackers used social engineering to gain initial access in 2023
In 2023, breaches and long undetected intrusions fueled rising cybercrime costs, with credential abuse, malware, and third parties driving espionage risk.
Related reading
01 · Category
Industry Trends7 stats
Industry Trends Interpretation
02 · Category
Performance Metrics5 stats
Performance Metrics Interpretation
03 · Category
Cost Analysis1 stats
Cost Analysis Interpretation
04 · Category
Threat Incidents1 stats
Threat Incidents Interpretation
More related reading
05 · Category
Defender Impact5 stats
Defender Impact Interpretation
06 · Category
Nation State Activity3 stats
Nation State Activity Interpretation
07 · Category
Attack Vectors5 stats
Attack Vectors Interpretation
Cyber Espionage: Breach Scale vs. Stealth Tactics
Espionage-style breaches combine high incident exposure with long dwell times and stealthy intrusion paths (e.g., malware, undetected access, privileged misuse).
Cite This Report
This report is designed to be cited. We maintain stable URLs and versioned verification dates. Copy the format appropriate for your publication below.
Rachel Svensson. (2026, February 13). Cyber Espionage Statistics. Gitnux. https://gitnux.org/cyber-espionage-statistics
Rachel Svensson. "Cyber Espionage Statistics." Gitnux, 13 Feb 2026, https://gitnux.org/cyber-espionage-statistics.
Rachel Svensson. 2026. "Cyber Espionage Statistics." Gitnux. https://gitnux.org/cyber-espionage-statistics.
Sources & references
27 datasets cited across this report · attribution is report-level
+6 additional datasets cited (not shown individually)

