Weekly Cybersecurity Report | Week 3, 2025

As your dedicated cybersecurity services provider, Cyberone equips you with timely and in-depth information about current cyber attacks. Discover a weekly cybersecurity report of the latest exploits and breaches shaping the ever-evolving cybersecurity landscape.

Weekly Cybersecurity Report | Week 3, 2025

1 – BayMark Health Services, the largest addiction treatment company in the US, reports a data leak following a cyberattack.

The company states that the attack occurred in September-October 2024 but does not specify the nature of the attack.

The ransomware group Ransomhub claimed responsibility for the attack, posting on its leak site about 1.5TB of stolen data, including sensitive medical information.

2 – Avery Products Corporation, a provider of various printing services, reports that attackers planted malicious code on the company’s website and stole customers’ credit card numbers.

According to the company’s report, the malicious code was only detected after five months, during which the credit card numbers of about 61,000 customers were stolen.

 

3 – Wolf Haldenstein Adler Freeman & Herz LLP (“Wolf Haldenstein”) reports that it suffered a data breach that exposed the personal information of almost 3.5 million people to hackers.

The incident occurred on December 13, 2023, but according to the ministry, data analysis and digital forensic complications have significantly delayed the completion of the investigation.

4 – The University of Oklahoma is investigating unusual cyber activity it discovered on its network.

The institution, which has more than 34,000 students, appeared on the Fog ransomware gang’s leaked website

The group claims to have 91GB of data, including employee contacts, financial data (audits, payment details, reports) and contact numbers and emails of state senators

5 – Slovakia’s agriculture minister announced that the cyberattack on the country’s land registry is the largest cyberattack in Slovakia’s history.

The attack targeted the Slovak Office of Mapping, Cartography and Land Registration (UGKK), which is responsible for managing land and real estate data.

Following the attack, the department’s systems crashed, and its physical offices were closed due to a ransomware attack.

6 – Spanish telecommunications company Telefónica confirms internal ticketing system breach after data leak

Spanish telecommunications company Telefónica confirms that its internal ticketing system was compromised after stolen data was leaked on a hacked forum.

Telfónica is a Spanish multinational telecommunications company operating in 12 countries with over 104,000 employees. The company is the largest telecommunications company in Spain, operating under the name Movistar.

In the incident in question, a Telefónica Jira database was leaked on a hacked forum, with the breach being carried out by four individuals using the aliases DNA, Grep, Pryx and Rey.

 

The cybersecurity attacks highlighted in this report aren’t just incidents, they’re blueprints of the adversary’s arsenal. To protect your business you need the right partner. Cyberone is here to help! Check out our services.