Knowledge

State of (in)security - Week 34, 2025

Take action: Never trust messages in Microsoft Teams that are from unknown sources. Consider blocking external Teams access in your admin settings to avoid fake "help desk" accounts. Advise that teams should check back with their IT via a well known channel and never run commands or programs sent via Teams messages from an unknown person, even if they claim to be from IT support.


Learn More

In the week between Aug. 18, 2025, midnight and Aug. 25, 2025, midnight we witnessed a total of:

  • 9 advisory/vulnerability events
  • 23 incident/data breach events

Week over Week comparison of week 34 2025 vs week 33 2025:

We also shared 2 practical knowledge items


Total impacted individuals via the events of the week

There were a total of 2,037,066 impacted individuals across 12 incidents, with the largest breach being the Orange Belgium hit by cyberattack, exposing personal data of 850K customers incident exposing 850,000 individuals. Since not all incidents report a number of impacted individuals, the real number is definitely higher than that.

Cause breakdown of incidents

CauseNumber of incidents
Malware, Ransomware and Related Attacks5
Social Engineering and Phishing3
System Misconfiguration Exploits2
Unauthorized access2
Third Party Compromise1

Industry breakdown of incidents

IndustryNumber of incidents
Healthcare6
Telecommunications3
Government2
IT/Software/Technology2
Entertainment/Leisure1
Insurance1
Non-profit/Charity1
Other1
Pharmaceuticals1
Automotive1
Transport/Logistics1
Aviation1
Construction/Realestate1
Consulting/Professional Services1

 

Read the Event Details of the Week

Knowledge

Vulnerabilities

Incidents

State of (in)security - Week 34, 2025