The increasing sophistication of malware threats has led to growing concerns in the antimalware community, as malware poses a significant danger to online users despite the availability of numerous defense solutions. This study aims to comprehensively review malware evolution and current attack trends to identify effective defense mechanisms. It reviews the most recent journal articles, conference proceedings, reports, and online resources published during the last five years. We extensively review the malware landscape from 1970 to the present and analyze malware types, operational mechanisms, attack vectors, and vulnerabilities. Furthermore, we explore different defensive strategies developed in response to these evolving threats. Our findings highlight the increasing sophistication of malware attack trends, including a surge in cryptojacking, attacks on mobile devices, Internet of Things devices, ransomware, advanced persistent threats, supply chain attacks, fileless malware, cloud-based attacks, exploitation of remote employees, and attack trends on edge networks. Defense strategies have also evolved in parallel, emphasizing multilayered security measures to counter these dynamic threats. This study highlights the critical need for robust, multilayered security measures to combat dynamic malware. Despite these advancements, some open challenges and significant research gaps remain, which require further innovation. This review serves as a valuable guide for cybersecurity professionals by identifying the key trends, challenges, limitations, and future cybersecurity research opportunities.INDEX TERMS Malware evolution, malware attack trends, defense mechanisms, malware detection, machine learning, deep learning.
D. INCREASED NUMBER OF TARGETED RANSOMWARE ATTACKSRecent malware trends have highlighted increased targeted ransomware attacks, in which hackers access a network or system, encrypt data, and demand a ransom to restore access. This increase in ransomware attacks is driven by several factors, including potential financial gains, easy operation, the rise of ransomware-as-a-service platforms, and the popularity of cryptocurrencies like Bitcoin [97]. Ransomware attacks are wide-ranging, targeting everything from desktops and mobile devices and increasingly involving IoT devices.