Cybersecurity News Hub
No Result
View All Result
  • Home
  • Cyber Crime
  • Cyber Security
  • Data Breach
  • Mobile Security
  • Videos
  • Advertise
  • Privacy Policy
  • Contact Us
  • Home
  • Cyber Crime
  • Cyber Security
  • Data Breach
  • Mobile Security
  • Videos
  • Advertise
  • Privacy Policy
  • Contact Us
No Result
View All Result
Cybersecurity News Hub
No Result
View All Result
Home Data Breach

Cyber attacks against UK firms dropped by 10% last year, but experts say don’t get complacent

Cyberinchief by Cyberinchief
December 3, 2025
Reading Time: 4 mins read
0
Cyber attacks against UK firms dropped by 10% last year, but experts say don’t get complacent



More than four-in-ten UK businesses were hit by a cyber attack last year, marking a decrease on the year prior – but security experts have warned enterprises to still remain vigilant.

The government’s latest Cybersecurity Data Breaches Survey revealed that 43% of businesses were affected, with a total of 612,000 cyber attacks or breaches recorded across the year. That’s noticeably fewer than in the previous year, when the figure was 50%.

There were 61,000 attacks against charities, affecting three-in-ten, down from 32% in the previous year.

RELATED POSTS

UK Hospital Asks Court to Stymie Ransomware Data Leak

These five countries recorded the most third-party data breaches last year

LockBit 5’s “new secure blog domain” infra leaked already – DataBreaches.Net

But the fall wasn’t spread evenly across the board. While micro and small businesses fell victim to fewer phishing attacks, the figures for medium and large businesses were pretty much the same as in 2024.

Small businesses in particular showed the most improvement in several cyber hygiene practices, with nearly half using cybersecurity risk assessments, up from 41% in 2024.

More than six-in-ten revealed they now have cyber insurance, up from 49% in 2024, and the proportion with a formal cybersecurity policy rose slightly. Meanwhile, 53% now have a business continuity plan, up from 44% in 2024.

High-income charities, though, got worse. Only three-quarters now carry out activities to identify cybersecurity risks, down from 86% in 2024.

Sign up today and you will receive a free copy of our Future Focus 2025 report – the leading guidance on AI, cybersecurity and other IT challenges as per 700+ senior executives

Similarly, just one-in-five said they review immediate supplier risks, down from 36% in 2024, and the proportion having a formal cybersecurity strategy in place fell from 47% to 39%.

Buy JNews
ADVERTISEMENT

Cybersecurity is improving, but don’t get complacent

Jonathan Gill, CEO of Panaseer, said that while the survey showed positive signs, complacency could cause bigger problems down the line.

“Most breaches don’t happen because organizations ignored security, but because they believed they were secure when, in reality, they weren’t,” he said.

“They assume they’re covered, but blind spots in visibility mean critical assets go unpatched, misconfigurations slip through the cracks, and security gaps persist without anyone realizing it,” Gill added.

The most common type of breach involved phishing attacks, which affected 85% of businesses and 86% of charities.

Matt Cooke, cybersecurity strategist for EMEA at Proofpoint, said this was unsurprising given the continued success of phishing attacks by cyber criminals globally.

“Email has been the number one threat vector for many years now – why? Because it continues to work.”

The effects of these breaches included a near-doubling in temporary loss of access to files or networks – 7%, up from 4% in 2024 – while charities reported an increase in loss of access to third-party services at 5%, up from 1% in 2024.

The resulting costs were significant, the survey found, standing at around £1,600 for businesses and £3,240 for charities on average.

Both businesses and charities appear to be pretty poor at dealing with supply chain risks, the survey warned. Only 14% of businesses said they reviewed the risks posed by their immediate suppliers, and only 7% looked at their wider supply chain.

These figures were even worse for charities, at 9% and 4% respectively.

Board-level cybersecurity focus is dwindling

A concerning trend highlighted in the survey centered around board-level responsibility for cybersecurity, which has steadily declined among businesses since 2021.

Just over one-third (38%) of businesses had a board member with responsibility for cybersecurity in 2021 – this has since dropped to 27%.

Cooke noted that this is a “worrying development” and further highlights a degree of complacency among organizations of all sizes.

“Cybersecurity can’t be treated as an after-thought by anyone in an organization – particularly those at board level, who control the purse strings and business priorities.”

The findings are expected to inform the upcoming Cyber Security and Resilience Bill, which is set to introduce sweeping changes to shore up national cybersecurity capabilities and impose stricter requirements on businesses.

Etay Maor, chief security strategist at Cato Networks, said the growing threats posed by cyber criminals, and the increased use of AI tools by sophisticated threat groups, poses questions for lawmakers.

“The bill should incorporate measures to address the growing threat of AI-powered attacks, ensuring businesses and consumers are adequately protected from increasingly sophisticated cyber criminals,” he said.

“A holistic approach, encompassing proactive threat prevention, robust incident response, and mandatory reporting of AI-driven attacks, is crucial to effectively mitigate the evolving cyber landscape,” Maor added.

MORE FROM ITPRO



Source link

Tags: attackscomplacentCyberDontdroppedExpertsFirmsyear
ShareTweetPin
Cyberinchief

Cyberinchief

Related Posts

UK Hospital Asks Court to Stymie Ransomware Data Leak
Data Breach

UK Hospital Asks Court to Stymie Ransomware Data Leak

December 8, 2025
These five countries recorded the most third-party data breaches last year
Data Breach

These five countries recorded the most third-party data breaches last year

December 8, 2025
LockBit 5’s “new secure blog domain” infra leaked already – DataBreaches.Net
Data Breach

LockBit 5’s “new secure blog domain” infra leaked already – DataBreaches.Net

December 7, 2025
Rethinking the CIO-CISO Dynamic in the Age of AI
Data Breach

Rethinking the CIO-CISO Dynamic in the Age of AI

December 6, 2025
NHS supplier hit with £3m fine for security failings that led to attack
Data Breach

NHS supplier hit with £3m fine for security failings that led to attack

December 6, 2025
HHS Outlines AI Road Map Amid Major Department Overhaul
Data Breach

HHS Outlines AI Road Map Amid Major Department Overhaul

December 5, 2025
Next Post
CyberSecurity Roadmap | Job Roles | Salary | CyberSecurity in Telugu

CyberSecurity Roadmap | Job Roles | Salary | CyberSecurity in Telugu

Watching Movies Free on Websites Can Lead to Data Theft : Cyber Crime Police | V6 News

Watching Movies Free on Websites Can Lead to Data Theft : Cyber Crime Police | V6 News

Recommended Stories

Cyber Crime Conversations – National Cyber Security Awareness Month with DSP KIHIKA CHISHI

Cyber Crime Conversations – National Cyber Security Awareness Month with DSP KIHIKA CHISHI

November 2, 2025
Stadtwerke Detmold von Hackerangriff betroffen

Stadtwerke Detmold von Hackerangriff betroffen

November 18, 2025
Further Thoughts on SIM Swap

Further Thoughts on SIM Swap

October 30, 2025

Popular Stories

  • Allianz Life – 1,115,061 breached accounts

    Allianz Life – 1,115,061 breached accounts

    0 shares
    Share 0 Tweet 0
  • Prosper – 17,605,276 breached accounts

    0 shares
    Share 0 Tweet 0
  • साइबर अपराध | Illegal Payment Gateway & Rented Bank Accounts | MAMTA CHOPRA

    0 shares
    Share 0 Tweet 0
  • Miljödata – 870,108 breached accounts

    0 shares
    Share 0 Tweet 0
  • Snowflake Data Breach Explained: Lessons and Protection Strategies

    0 shares
    Share 0 Tweet 0

Search

No Result
View All Result

Recent Posts

  • Top 5 Mobile App Security Threats Leaders Must Prepare for in 2026
  • Microsoft On Women In Cybersecurity At Black Hat Europe 2025 In London
  • Polisi kembali ungkap sindikat Cyber Crime kejahatan Internasional – iNews Malam 09/03

Categories

  • Cyber Crime
  • Cyber Security
  • Data Breach
  • Mobile Security
  • Videos

Newsletter

© 2025 All rights reserved by cyberinchief.com

No Result
View All Result
  • Home
  • Cyber Crime
  • Cyber Security
  • Data Breach
  • Mobile Security
  • Videos
  • Advertise
  • Privacy Policy
  • Contact Us

© 2025 All rights reserved by cyberinchief.com

Newsletter Signup

Subscribe to our weekly newsletter below and never miss the latest News.

Enter your email address

Thanks, I’m not interested