Knowledge

State of (in)security - Week 43, 2025

Take action: If you are installing any AI based tools locally, be aware that AI vendors are not that disciplined in updating those tools. For example Cursor or Windsurf AI-powered code editors, haven't been updated for months.


Learn More

In the week between Oct. 20, 2025, midnight and Oct. 27, 2025, midnight we witnessed a total of:

  • 12 advisory/vulnerability events
  • 12 incident/data breach events

We also shared 6 practical knowledge items

Week over Week comparison of week 43 2025 vs week 42 2025:


Total impacted individuals via the events of the week

There were a total of 17,455,441 impacted individuals across 5 incidents, with the largest breach being the Researchers publish aggregated infostealer data that exposed 183 Million email accounts and passwords incident exposing 16,400,000 individuals. Since not all incidents report a number of impacted individuals, the real number is definitely higher than that.

Cause breakdown of incidents

CauseNumber of incidents
Malware, Ransomware and Related Attacks4
Denial-of-Service Attacks1
Human bad security behaviour1
Software Vulnerability and SDLC Exploits1
Third Party Compromise1

Industry breakdown of incidents

IndustryNumber of incidents
Energy2
Government2
Manufacturing1
Other1
Retail1
Telecommunications1
Aviation1
Transport/Logistics1
Hospitality/Events1

 

Read the Event Details of the Week

Knowledge

Vulnerabilities

Incidents

State of (in)security - Week 43, 2025