Knowledge

State of (in)security - Week 52, 2025

Take action: If you're running MongoDB servers, first check if they are exposed to the internet. If yes this is urgent. Upgrade to the patched versions (8.2.3, 8.0.17, 7.0.28, 6.0.27, 5.0.32, or 4.4.30). Alternatively, isolate from the intenet, disable zlib compression and plan a patch cycle.


Learn More

In the week between Dec. 22, 2025, midnight and Dec. 29, 2025, midnight we witnessed a total of:

  • 6 advisory/vulnerability events
  • 20 incident/data breach events

Week over Week comparison of week 52 2025 vs week 51 2025:

We also shared 2 practical knowledge items


Total impacted individuals via the events of the week

There were a total of 2,822,193 impacted individuals across 8 incidents, with the largest breach being the WIRED 2.3 million subscribers allegedly leaked, hacker threatens 40 million more of Condé Nast portfolio incident exposing 2,300,000 individuals. Since not all incidents report a number of impacted individuals, the real number is definitely higher than that.

Cause breakdown of incidents

CauseNumber of incidents
Malware, Ransomware and Related Attacks4
Third Party Compromise4
Human bad security behaviour2
Software Vulnerability and SDLC Exploits2
Denial-of-Service Attacks1

Industry breakdown of incidents

IndustryNumber of incidents
Finance4
IT/Software/Technology4
Automotive2
Utilities2
Energy1
Consulting/Professional Services1
Government1
Healthcare1
Aviation1
Media1
Transport/Logistics1
Education1

 

Read the Event Details of the Week

Knowledge

Vulnerabilities

Incidents

State of (in)security - Week 52, 2025