Back to Hacklogs

Cybersecurity October Highlights

Rudrakshi & NityaAugust 30, 20263 min read
NewsHighlightsCybersecurity

Cybersecurity Monthly Highlights – October 2025

Major Data Breaches and Attacks

  • Qantas Airlines Data Leak: Exposed personal data of 5.7 million customers after refusing a ransom. Attack traced to Scattered Spider and ShinyHunters; breach originated from a compromised Salesforce platform.
  • F5 Networks Breach: Nation-state attack compromised BIG-IP product data and source code. The US CISA issued an emergency directive mandating organizations to patch systems by October 22, 2025.
  • Critical Patches Released: Fortinet, Ivanti, and Adobe rolled out security updates during October Patch Tuesday, addressing multiple severe vulnerabilities.
  • CERT-In Advisories: India's cybersecurity agency released alerts for vulnerabilities in Redis and other open-source platforms.

High-Profile Arrests and Law Enforcement

  • Operation Chakra-V (India): The CBI arrested three individuals linked to a transnational cyber fraud network operating across Tamil Nadu, Karnataka, and Kerala.
  • Cybercriminal Group Administrator Arrested: Law enforcement captured an alleged phishing kit and Android malware operator, showing enhanced international cybercrime cooperation.

Cybersecurity Laws, Policy & Awareness

  • Cybersecurity Awareness Month (October): Organizations worldwide stress the rising risk of AI-driven attacks and the cybersecurity talent gap.
  • Global Cybersecurity Outlook 2025 (WEF): Highlights escalating threats to businesses and public infrastructure.
  • EU Digital Resilience Regulations: Enforcement of the Cyber Resilience Act and AI Act to improve digital defense mechanisms across the region.

New Tools, R&D & Innovation

  • AISLE Platform Launch: Introduced an AI-based real-time vulnerability remediation system to detect, exploit, and patch vulnerabilities automatically.
  • EDGE & UAE Cybersecurity Council Collaboration: Announced a new cyber threat detection package enhancing national cyber resilience.

Industry-Specific Updates & Global Trends

  • SAP Security Patch Day: Released 13 new security notes and 4 updates for critical vulnerabilities.
  • Rising Global Cybercrime Costs: Projected to exceed $10 trillion annually by 2025, with small businesses being the most affected.
  • Major Ransomware Incident: Marks & Spencer (UK) suffered massive losses from service outages following an April ransomware attack.

India-Specific Cybersecurity Developments

  • Reports highlight increasing cybercrime and challenges in law enforcement and response systems.
  • Growing concern over the shortage of skilled professionals in Operational Technology (OT) cybersecurity roles.

Patch & Vulnerability Alerts

  • Critical vulnerabilities addressed in F5 Networks, Adobe, SAP, and Redis products.
  • CERT-In continues issuing high-severity alerts to strengthen national cyber defense.

Sources & References

  • BrightDefense | The Hacker News | SecurityWeek | SAP Security
  • VisionIAS | WEF Cybersecurity Outlook 2025 | CERT-In | WAM Emirates