October 2025 Data Breaches: Qantas, SimonMed, and Local Governments Hit Hard
Wednesday, November 5, 2025
Top 5 Cybersecurity Stories You Should Know
-
October 2025 Data Breaches: Qantas, SimonMed, and Local Governments Hit Hard — tl;dr: October 2025 witnessed significant data breaches affecting various sectors, including Qantas Airways and SimonMed Imaging, exposing millions of records. Qantas's breach involved 5.7 million customer records through a third-party contact center, while SimonMed's ransomware attack compromised 1.27 million patients' medical data. Local government cyber incidents in Texas, Tennessee, and Indiana disrupted services without confirmed data theft. Organizations must prioritize third-party vendor security, implement strict network segmentation, and ensure regular backups to mitigate risks and enhance recovery efforts.
↪ https://strobes.co/blog/top-data-breaches-of-october-2025/ -
Mozilla Addresses Critical Firefox Zero-Day CVE-2024-9680 Exploited in Attacks — tl;dr: Mozilla has released an emergency update for Firefox to fix a critical use-after-free vulnerability, tracked as CVE-2024-9680, which is currently being exploited in active attacks. Discovered by ESET researcher Damien Schaeffer, the flaw affects both the standard and extended support releases of Firefox, allowing attackers to execute arbitrary code via the Web Animations API. Users are urged to upgrade to Firefox 131.0.2, Firefox ESR 115.16.1, or Firefox ESR 128.3.1 immediately to mitigate risks. To update, navigate to Settings > Help > About Firefox, and restart the browser after the update.
↪ https://www.bleepingcomputer.com/news/security/mozilla-fixes-firefox-zero-day-actively-exploited-in-attacks/ -
Dublin Conference to Address Human Behavior's Impact on Cybersecurity — tl;dr: The 16th annual IRISSCERT cybersecurity conference, IRISSCON, in Dublin will focus on the critical role of human behavior in cybersecurity breaches. Recent high-profile incidents involving brands like Marks & Spencer and Jaguar Land Rover highlight that human factors contributed to 60% of security incidents, according to the Verizon Data Breach Investigations Report 2025. The conference will feature discussions on psychological and operational aspects of security, as well as the implications of AI on both attacks and defenses. Attendees will gain insights on managing human risk to enhance organizational security.
↪ https://www.rte.ie/news/business/2025/1105/1542195-cybersecurity-conference/ -
Cybersecurity Landscape 2025: Key Trends and Threats Revealed — tl;dr: As digitalization and remote work increase, cybercrime is projected to cost $23 trillion by 2027, a 175% rise from 2022. Key trends for 2025 include the impact of Generative AI on both adversarial capabilities and security operations, alongside a persistent cybersecurity skills gap, with a projected shortage of 85 million professionals by 2030. Ransomware attacks account for 35% of all incidents, significantly affecting small and medium-sized businesses. Organizations must prioritize employee awareness and behavior change to mitigate risks, enhance third-party risk management, and adopt identity-first security approaches to improve resilience.
↪ https://www.sentinelone.com/cybersecurity-101/cybersecurity/cyber-security-statistics/ -
Kenya Faces Rising Cyber Threats Amid Crime and Natural Disasters in October — tl;dr: In October 2025, Kenya experienced a notable increase in cyber threats, including ransomware and AI-driven scams, as highlighted by Principal Secretary Dr. Raymond Omollo. This surge coincided with significant security challenges and natural disasters, such as floods and landslides, exacerbating the country's vulnerabilities. The situation was further complicated by misinformation regarding proposed amendments to the Computer Misuse and Cybercrime Act (2024). The government emphasizes the urgent need for improved digital literacy and cybersecurity measures to safeguard citizens against these evolving threats.
↪ https://www.the-star.co.ke/news/2025-11-05-cyber-threats-surge-as-kenya-battles-crime-chaos-and-floods-in-october
Featured LufSec Resource
Car Hacking 101 — From key fob attacks to CAN bus exploitation—safely.
Explore →
Connect with LufSec
- YouTube: https://www.youtube.com/@lufsec
- Instagram: https://www.instagram.com/lufsec