iOS injection attacks increase 741% in 2025 as new report reveals true scale of GenAI threats

iOS injection attacks increase 741% in 2025 as new report reveals true scale of GenAI threats

iProov has released its 2026 Threat Intelligence Report. Drawing on live observations of criminal activity worldwide, the report examines how generative AI is enabling threat actors to evolve their tactics and launch attacks faster and at greater scale, targeting organisations that rely on digital identity verification to secure access to systems and high-value transactions. 

Key findings 

  • Injection attacks targeting iOS devices surged by 1,151% in the second half of 2025, contributing to a 741% annual increase 
  • Deepfake impersonation is expanding within enterprises across everyday corporate workflows, particularly video-based interactions 
  • Southeast Asia experienced a 720% spike in attacks in Q3 2025, highlighting the region’s role as a testing ground for emerging fraud techniques 

Dr. Andrew Newell, Chief Scientific Officer at iProov, said: “Identity is becoming the new battleground in cybersecurity. Generative AI is allowing attackers to industrialise digital impersonation at scale. To defend against this, organisations must be able to establish genuine human presence in digital interactions to ensure trust and security.” 

Evidence of the growing threat is reflected across the wider industry. According to the Ponemon Institute, 41% of organisations have experienced deepfake attacks targeting executives, while a September 2025 Gartner study found that 37% of cybersecurity leaders have encountered deepfake incidents during video calls. Recent cyber incidents, including those affecting Marks & Spencer and Jaguar Land Rover, demonstrate how gaps in identity and access security can leave organisations exposed. 

The iOS security gap 

Attacks targeting iOS devices accelerated rapidly throughout 2025. While the first half of the year saw a 14% increase in injection attacks, activity surged in the second half, rising by 1,151% compared with the same period in 2024. This reflects the industrialisation of techniques that are now deployed at scale. 

Deepfakes strengthen their hold on the enterprise 

Deepfakes are increasingly being used beyond identity verification systems and into everyday corporate workflows, particularly across video-based interactions. Advances in image-to-video generation, driven by widely accessible AI tools such as Kling AI and Nano Banana, are making it easier to create highly realistic synthetic identities from minimal source material. 

Globalisation of crime networks with Southeast Asia leading the way 

Identity fraud is becoming increasingly globalised, with Southeast Asia emerging as a testing ground for new techniques. During 2025, the region experienced a 720% increase in attacks during Q3. Once proven, these techniques are adopted and scaled by criminal groups in other regions, particularly Latin America. 

Browse our latest issue

Intelligent CISO

View Magazine Archive