Knowledge

State of (in)security - Week 36, 2025

Take action: Be suspicious of any "potential customers" who contact you out of the blue. Verify their provenance through multiple channels, like corporate registrations, phone call from official directories and business forums. Finally, BE VERY SUSPICIOUS of ZIP files for documents because part of a ZIP file may be a malicious LNK file with an attack.


Learn More

In the week between Sept. 1, 2025, midnight and Sept. 8, 2025, midnight we witnessed a total of:

  • 10 advisory/vulnerability events
  • 36 incident/data breach events

Week over Week comparison of week 36 2025 vs week 35 2025:

We also shared 3 practical knowledge items


Total impacted individuals via the events of the week

There were a total of 1,509,063 impacted individuals across 14 incidents, with the largest breach being the Nevada based Absolute Dental reports data breach affecting over 1.2 million people incident exposing 1,223,635 individuals. Since not all incidents report a number of impacted individuals, the real number is definitely higher than that.

Cause breakdown of incidents

CauseNumber of incidents
Malware, Ransomware and Related Attacks9
Third Party Compromise8
Unauthorized access5
System Misconfiguration Exploits2
Software Vulnerability and SDLC Exploits1
Social Engineering and Phishing1
Human bad security behaviour1

Industry breakdown of incidents

IndustryNumber of incidents
IT/Software/Technology7
Healthcare6
Finance5
Government4
Education4
Entertainment/Leisure3
Consulting/Professional Services3
Pharmaceuticals1
Insurance1
Manufacturing1
Automotive1

 

Read the Event Details of the Week

Knowledge

Vulnerabilities

Incidents

State of (in)security - Week 36, 2025