Knowledge

State of (in)security - Week 41, 2025

Take action: Another prompt injection vector through hidden characters that the human user will not see but the AI will. Be Extremely conservative about AI access to your real systems and data, because all these products are half baked, not properly secured and the vendors hide behind "terms and conditions".


Learn More

In the week between Oct. 6, 2025, midnight and Oct. 13, 2025, midnight we witnessed a total of:

  • 12 advisory/vulnerability events
  • 20 incident/data breach events

Week over Week comparison of week 41 2025 vs week 40 2025:

We also shared 2 practical knowledge items


Total impacted individuals via the events of the week

There were a total of 269,174 impacted individuals across 5 incidents, with the largest breach being the Doctors Imaging Group radiology practice reports data breach exposing data of over 171,000 patients incident exposing 171,800 individuals. Since not all incidents report a number of impacted individuals, the real number is definitely higher than that.

Cause breakdown of incidents

CauseNumber of incidents
System Misconfiguration Exploits2
Unauthorized access2
Human bad security behaviour1
Malware, Ransomware and Related Attacks1
Software Vulnerability and SDLC Exploits1
Third Party Compromise1

Industry breakdown of incidents

IndustryNumber of incidents
IT/Software/Technology3
Government3
Consulting/Professional Services2
Entertainment/Leisure2
Insurance2
Other2
Non-profit/Charity1
Finance1
Manufacturing1
Food and Beverage1
Healthcare1

Read the Event Details of the Week

Knowledge

Vulnerabilities

Incidents

State of (in)security - Week 41, 2025