Cybersecurity 2024: Trends & Protection Strategies
2024 was marked by new cybersecurity challenges. synaforce reflects on an eventful year.
2024 was marked by a significant increase in cybercriminal activity. The damage to the German economy is higher than ever before. IT service provider and high-end data center solutions vendor synaforce reflects on the biggest challenges it faced, as well as its own successes in cybersecurity, offering hope for 2025: with the right measures, anyone can effectively protect themselves.
What is Cybersecurity?
Cybersecurity is a concrete priority for companies in 2024 because it directly shapes cyber resilience, security operations and regulatory duties. This article uses synaforce as an example to show which requirements, figures and operational steps matter in practice.
The Most Important in Brief
- In 2024, approximately 309,000 new malware variants were registered daily, a 26 percent increase compared to 2023.
- Cloud systems, critical infrastructure, and mobile devices were the preferred targets of cybercriminals.
- Generative AI is increasingly being used for phishing, malware creation, and password bypassing.
- The implementation of the NIS2 Directive into German law is delayed; as of December 2024, the legislation has not yet been adopted.
- In 2024, synaforce received BSI C5 certification and partnered with TEHTRIS for AI-powered XDR security.
According to the IT Security Situation Report published by the Federal Office for Information Security (BSI), roughly 309,000 new malware variants were identified each day in 2024-a 26 percent rise from the previous year. Cyberattacks primarily targeted cloud systems, critical infrastructure (KRITIS), and mobile devices. Meanwhile, cybercriminals continued to professionalize their tactics, exploiting zero-day vulnerabilities and relying on modular attack tools such as Malware-as-a-Service. Another significant factor influencing the threat landscape was advancements in artificial intelligence. Generative AI has made cyberattacks easier by creating highly convincing phishing messages, writing malicious code, or cracking passwords.
Regulatory developments also played a crucial role. The NIS2 Directive, which establishes higher cybersecurity standards for critical sectors, was scheduled to be transposed into German law by October 2024. However, as of December 2024, the relevant legislation had not yet been passed, leaving uncertainty for businesses.
synaforce positions itself in 2024 as a trusted partner for advanced cybersecurity solutions
In 2024, synaforce took decisive steps to strengthen its position as a provider of advanced cybersecurity solutions. The goal was to offer customers comprehensive and secure services while aligning its own systems with growing challenges. A key milestone was the C5 certification by the BSI in March 2024. This confirms that synaforce’s cloud services meet the highest security standards and are particularly suitable for KRITIS customers.
In addition, synaforce prepared specifically for implementing the NIS2 Directive. Its existing certification base-including ISO/IEC 27001, ISAE 3402, and EN 50600-was further reinforced by the C5 certification. As a result, synaforce is now equipped to help companies comply with the tightened EU-wide minimum standards.
A further highlight was the strategic partnership with TEHTRIS. Together, the two companies unveiled the TEHTRIS XDR AI PLATFORM, an AI-powered security solution. It monitors all endpoints, networks, and cloud services in real time and centrally controls all security measures via an intuitive dashboard. Organizations benefit from holistic protection, compliance assurance, as well as the solution’s modularity and flexibility. Managed service providers can use it to enhance the efficiency of their security offerings and processes, expanding their service portfolio to include proactive Managed Detection and Response (MDR) without having to invest in costly infrastructure themselves.
What Awaits Companies in 2025
In 2025, the IT security landscape will face even greater challenges. Cybercriminals are increasingly relying on deepfake technologies to bypass voice recognition systems during verification processes, for example. Industries such as the financial sector must develop new defense strategies to protect themselves against these advanced deception techniques.
Moreover, Advanced Persistent Threats (APTs) are once again gaining attention. These threats are characterized by their long-term persistence and high level of precision, making them a serious risk to companies by granting attackers prolonged access to valuable information. Critical Infrastructure Sector (KRITIS) organizations are increasingly becoming targets.
In addition to these technological challenges, uncertainty remains regarding the implementation details of the NIS2 Directive. Although the deadline for transposing this EU-wide regulation has already passed, the legislative process in Germany is still delayed. Companies should not wait until the legal framework becomes clear; proactive measures will remain key to securing IT systems in 2025.
“The threat landscape was already immense in 2024, and it is unlikely to improve in 2025. Our collective resilience will be crucial in addressing these ever-increasingly complex dangers. The implementation of the NIS2 Directive plays a decisive role in this regard. synaforce actively supports companies with comprehensive consulting services, as well as through the planning and implementation of targeted measures to minimize cyber risks and establish sustainable security strategies,” says Andreas Braidt, CEO of synaforce.
The BSI Situation Report in Detail
The BSI Situation Report 2024 marks a turning point in the cybersecurity debate. In addition to a record number of 309,000 daily malware variants, the BSI has, for the first time, documented attacks specifically targeting small and medium-sized enterprises (SMEs). Until now, these were considered collateral damage from broadly dispersed campaigns. In 2024, however, SMEs have become primary targets, as ransomware groups have realized that mid-sized suppliers often represent the easiest entry point into larger corporate networks. Supply-chain attacks via compromised IT service providers and software vendors have increased significantly.
At the same time, the skills gap in Germany’s IT security market continues to act as a structural impediment. According to Bitkom, around 149,000 IT professionals were missing in 2024, with a disproportionately high number lacking in cybersecurity. This means that even companies that correctly assess the threat landscape cannot find internal resources to mount adequate defenses. Managed security providers such as synaforce are benefiting from this bottleneck, as outsourcing is often the only practical option.
What C5 Certification Specifically Means
BSI-C5 (Cloud Computing Compliance Criteria Catalogue) is not a marketing seal; rather, it is a 17-area audit catalog that assesses cloud providers across technical, organizational, and process controls. A C5 attestation provides three key elements: an independent audit report in accordance with ISAE 3000, transparency regarding sub-service providers and data flows, and a foundation upon which clients can build their own compliance requirements.
For operators of Critical Information Infrastructure (KRITIS), C5 is particularly relevant because the catalog explicitly aligns with the requirements set forth in the BSI Act and the KRITIS Ordinance. By utilizing a C5-certified cloud provider, KRITIS operators can save time and costs during their own audits, as many audit points are already covered by the attestation. synaforce thus positions itself within the core market for sovereign German cloud services, a sector that is simultaneously driven by and becoming more complex due to EU data protection regulations, NIS2, and German IT security laws.
Recommendations for IT Decision-Makers in 2025
The threat landscape in 2025 compels IT leaders to prioritize four key areas: NIS2 readiness even without the final German implementation (a self-commitment based on the EU text suffices for most audit requirements), an XDR platform strategy instead of isolated tools, strengthening defenses against deepfakes in verification processes (additional out-of-band challenges for voice authentication), and regular awareness training on generative AI as a potential attack vector. Meanwhile, BSI C5 certification is increasingly becoming a mandatory procurement criterion for critical infrastructure tenders rather than a nice-to-have.
Specifically, this means that in 2025, contracting organizations procuring security-relevant services should enshrine C5 attestations, ISO 27001 certifications, and EN 50600 data center classifications as minimum standards in their tender documents. Conversely, service providers operating in the German market must provide these credentials; otherwise, they will systematically lose bids to competitors with a fully compliant foundation. Investing in certifications pays off over three to five years, as trust from public and critical infrastructure clients increases measurably.
For Managed Service Providers, partnering with platform vendors such as TEHTRIS offers a pragmatic approach to expanding their own security portfolio without significant capital expenditure. XDR platforms that consolidate endpoints, networks, and cloud services into a single central management layer will become the standard in 2025. Isolated solutions targeting individual attack vectors are often no longer economically viable, as integration and maintenance costs outweigh any savings achieved.
Outlook: Where Investments Will Go in 2025
Market analysts expect cybersecurity investments in 2025 to focus on three key areas. First: Identity and Access Management, with an emphasis on passwordless authentication and phishing-resistant multi-factor authentication based on FIDO2 standards. Second: Extended Detection and Response as a central platform category that is replacing or complementing traditional SIEM architectures. Third: Post-quantum cryptography, which will become mandatory for certain critical infrastructure sectors starting in 2027 and requires several years of preparation for migration.
For German medium-sized businesses, this means adopting a clear prioritization strategy. Those investing in IT security in 2025 should not spread their budgets across individual tools but instead commit to a consolidated platform approach that anticipates future requirements such as post-quantum migration. Managed security providers with C5 certification and strategic partnerships with XDR platforms can make the difference between a reactive and a proactive security operation.
The BSI categorization of critical infrastructures is expected to expand significantly in 2025 due to the implementation of NIS2. Sectors such as food supply, waste management, and parts of public administration will, for the first time, fall under the stricter set of obligations. This substantially increases the number of companies required to comply with audits, reporting duties, and minimum standards. As a result, managed service offerings with documented compliance foundations are shifting from a premium option to a basic requirement for organizations that neither wish nor are able to establish their own Security Operations Center.
An often overlooked factor is the speed at which threats are exploited today. Zero-day vulnerabilities are integrated into automated attack tools within hours of becoming known. The window for patching accordingly narrows. Automated patch management systems and continuous vulnerability scans are no longer optional in 2025-they are mandatory. Organizations that still rely on manual responses to CVE announcements are systematically too slow.
The combination of AI-driven attacks, politically motivated APT campaigns, and increasing regulatory requirements makes 2025 a stress test for the IT security strategies of German medium-sized businesses. Providers that can demonstrate a complete compliance chain-from certified data centers and encrypted communications to AI-powered threat monitoring-are likely to be favored. The focus is shifting away from isolated point solutions toward integrated platforms that consolidate visibility, responsiveness, and auditability within a single management interface. For IT decision-makers, this means evaluating vendors based on the breadth of their certification portfolio and the depth of their strategic partnerships rather than on individual feature lists or standalone product benchmarks. The maturity of an entire security organization is becoming more important than any single component, because modern, automated attack chains systematically probe and test every layer of IT infrastructure in a very short timeframe.
Frequently Asked Questions
How many new malware variants were detected daily in 2024?
According to the BSI Situation Report, an average of 309,000 new malware variants were identified each day in 2024. This represents a 26 percent increase compared to the previous year.
What role does AI play in the current threat landscape?
Generative AI is making cyberattacks easier by creating realistic phishing messages, generating malicious code, or cracking passwords. Starting in 2025, deepfake technology will also be increasingly used to bypass voice recognition systems.
Why is the NIS2 Directive relevant for companies?
The NIS2 Directive establishes higher cybersecurity standards across the EU for critical sectors. However, as of December 2024, it has not yet been transposed into German national law, causing uncertainty.
Which certification did synaforce receive in 2024, and what does it mean?
In March 2024, synaforce was awarded the C5 certification by the BSI. This confirms that its cloud services meet the highest security standards and are particularly suitable for KRITIS customers.
What advantages does the TEHTRIS XDR AI PLATFORM offer businesses?
The TEHTRIS XDR AI PLATFORM monitors endpoints, networks, and cloud services in real time and centrally manages security measures. Companies benefit from comprehensive protection, compliance assurance, and modular flexibility.
Image source: Pixabay / TheDigitalArtist
Editor’s Reading Recommendations
synaforce expands its portfolio through the acquisition of Herbst Datentechnik GmbH
How synaforce integrates sustainable data center performance
More from the MBF Media Network
More on this synaforce topic
Additional service details, use cases and background are available from synaforce for managed security and compliance services.

