Please fill in the form below to subscribe to our blog

The Week in Breach News: 05/07/25 – 05/13/25    

May 14, 2025

This week: A massive data breach rocks Yale New Haven Health; 11 new training videos for BullPhish ID; and new details emerge about the cause of the Marks & Spencer cyber disaster.


See the evolution of the MSP business in our infographic 7 Key Stats From the 2025 MSP Benchmark Survey. DOWNLOAD IT>>



Masimo

https://industrialcyber.co/medical/masimo-faces-operational-disruption-after-cybersecurity-breach-triggers-law-enforcement-coordination

Exploit: Hacking

Industry:

Medical technology company Masimo Corporation disclosed that it experienced unauthorized activity on its on-premise network, affecting manufacturing operations. The breach was identified on April 27. As a result of the incident, some of Masimo’s manufacturing facilities have been operating below normal capacity, temporarily affecting the company’s ability to process, fulfill and ship customer orders. The company is working diligently to restore normal operations and mitigate the impact of the breach.

How It Could Affect Your Customers’ Business: When operational technology or manufacturing environments are compromised, the business impact is immediate and severe.

Kaseya to the Rescue: Explore the biggest challenges professionals contended with in 2024 and the impact of AI on cybersecurity in the Kaseya Cybersecurity Survey 2024. GET THE REPORT>>


GlobalX Air

https://www.404media.co/globalx-airline-for-trumps-deportations-hacked

Exploit: Hacking

Industry: Transportation

Hackers linked to the Anonymous collective breached GlobalX Air, the primary airline the U.S. government is using for deportation flights. They stole sensitive data, including flight records and passenger manifests. The attackers also gained access to the airline’s flight planning software and internal databases, broadcasting defacement messages to pilots and staff and deleting internal data. A defacement message left on GlobalX’s website accused the company of ignoring court orders and featured its signature Guy Fawkes mask, stylized with the U.S. flag. GlobalX, which handled approximately 75% of U.S. deportation flights in 2024, has not yet commented publicly on the extent of the breach or its operational impact.

How It Could Affect Your Customers’ Business: Government contractors, especially those handling sensitive or controversial operations, are high-value targets for hacktivists.

Kaseya to the Rescue:  Maximize your security on a lean budget with the insights you’ll find in our infographic 5 Ways to Squeeze More From a Tight Security Budget. DOWNLOAD IT>>


Yale New Haven Health

https://www.healthcaredive.com/news/yale-new-haven-health-data-breach-5-6-million/746236

Exploit: Hacking

Industry: Healthcare

Yale New Haven Health experienced a data breach impacting approximately 5.6 million individuals, the largest healthcare breach reported to U.S. federal regulators to date in 2025. The Connecticut-based health system detected unusual activity on its IT systems in early March and later confirmed that an unauthorized third party accessed its network and exfiltrated copies of patient data. Exposed information includes demographic details, Social Security numbers, patient types and medical record numbers. However, Yale New Haven emphasized that its electronic health record system and patient portal were not compromised, and no financial or employee HR data was affected. Despite the breach, the provider, which operates five hospitals, maintained uninterrupted patient care throughout the incident. The breach has been reported to the Department of Health and Human Services’ Office for Civil Rights, and the health system continues working to mitigate any potential impact.

How It Could Affect Your Customers’ Business: Even when core clinical systems are protected, adjacent network vulnerabilities can still expose massive amounts of sensitive patient data.

Kaseya to the Rescue: Get tips to strengthen a company’s defenses and bolster its cyber resilience with our Building a Cyber-Resilient Business checklist. GET THE CHECKLIST>>


Learn how to identify and mitigate malicious and accidental insider threats before there’s trouble! GET EBOOK>>



Finland – Health Care and Rescue Services Division

https://www.hel.fi/en/news/public-notice-for-individuals-affected-by-an-information-security-breach-in-the-social-services

Exploit: Ransomware

Industry: Government

The City of Helsinki has announced a data breach affecting families who used its Family Law Services between 2012 and 2019. The exposed data includes the names and personal identity codes of both parents and children, custody arrangement details, and in some cases, information about the child’s residence. In line with the GDPR, the City is notifying the individuals affected by the breach and has reported the incident to Finland’s Office of the Data Protection Ombudsman. Families seeking more information can contact Family Law Services directly or reach out to the City of Helsinki’s Data Protection Officer for additional guidance.

How it Could Affect Your Customers’ Business: It is critical to take extra precautions to secure sensitive personal data when it involves vulnerable groups such as children.

Kaseya to the Rescue: Our 10 Tips for Successful Employee Security Awareness Training infographic can help you maximize the effectiveness of your security awareness training efforts. DOWNLOAD IT>>


Germany – Oettinger Getränke

https://www.just-drinks.com/news/german-drinks-group-oettinger-confirms-cyberattack/?cf-view

Exploit: Ransomware

Industry: Food & Drink

Oettinger Getränke, one of Germany’s largest brewers and a global top 25 player in the industry, is investigating a cyberattack that may have exposed sensitive data. The privately owned company confirmed the breach in a brief statement and is assessing the potential for data leaks. The ransomware group Ransom House claimed responsibility for the attack, posting a warning online about the stolen data. Despite the breach, Oettinger Getränke reported its production and logistics operations have not been affected. Founded in 1731, Oettinger Getränke remains one of the most significant players in the beer and soft drink market. Its investigation continues as the company works to secure its systems and assess the full extent of the damage.

How it Could Affect Your Customers’ Business: Operational continuity does not negate the risks and consequences of data exposure; protecting sensitive information is just as vital as maintaining production.

Kaseya to the Rescue: Identify the must-have features in a user protection solution and explore how to build a robust user protection strategy in our Modern User Protection Buyer’s Guide. GET IT>>


Feeling overwhelmed by your task list? Discover four strategies for reducing your workload! GET INFOGRAPHIC>>


https://www.canadianlawyermag.com/news/international/england-and-waless-legal-aid-agency-reports-potential-data-breach/392413

Exploit: Hacking

Industry: Non-Profit

amy

The U.K. Legal Aid Agency (LAA) disclosed a security incident, informing law firms that unauthorized third parties may have accessed sensitive financial information related to legal aid providers. Although the agency, which operates in England and Wales, confirmed the breach, it could not definitively confirm which specific data, if any, had been compromised. The investigation into the breach is ongoing, with authorities focused on determining the full extent of the incident and implementing necessary remedial measures. The LAA continues to work with relevant authorities to address the situation and safeguard the data of affected parties.

How it Could Affect Your Customers’ Business: Proactive security helps IT professionals secure sensitive financial data and ensure robust access controls to prevent unauthorized access.

Kaseya to the Rescue: Discover how Kaseya 365 User delivers comprehensive protection beyond the endpoint without breaking the bank. GET THE EBOOK>>


Scotland – Edinburgh Public Schools

https://www.thetimes.com/uk/scotland/article/cyberattack-on-edinburgh-education-department-causes-exam-revision-chaos-2fnwcrvmt

Exploit: Phishing

Industry: Education

Thousands of pupils in Edinburgh were forced to attend school over the weekend to reset their passwords after a phishing attack targeted the city’s education department. The cyberattack, which disrupted access to vital exam revision resources, was identified when teachers received a suspicious email invitation for a meeting, which was later confirmed as a spear phishing attack. As a precautionary measure, more than 2,500 students were invited to schools on Saturday to have their passwords reset, resulting in a missed day of revision just ahead of key summer exams.

How it Could Affect Your Customers’ Business: School personnel must be trained to identify spear-phishing and act quickly to mitigate potential damage if they mistakenly interact with a message.

Kaseya to the Rescue: Discover how Kaseya 365 User delivers comprehensive protection beyond the endpoint without breaking the bank. GET THE EBOOK>>


IDA-GRP-Blog-Image-May

Take a deep dive into why an AI-powered anti-phishing solution is a smart financial choice. GET EBOOK>>




What happens when an IT team member falls for phishing? Take a deep dive into why security awareness training matters for every employee – and why it is especially critical for managers and IT team members. READ MORE>>


Learn how to identify and mitigate malicious and accidental insider threats before there’s trouble! GET EBOOK>>



New BullPhish ID training videos drop your users into the phishing traps hackers love most — from fake Zoom invites to bogus Amazon alerts. Help your team spot the scams before they click, no matter what lands in their inbox.

  • Microsoft Word – New Comment
  • Walmart – Password Reset
  • DocuSign – Tax Information
  • Skype – Closure Notice,
  • Zoom – “Annual Performance Review” invitation
  • Zoom – Account Suspended
  • PayPal – Account is Limited
  • Microsoft 365 – Thanks for your Microsoft purchase
  • Amazon – Suspicious Activity Detected!
  • Google Workspace – Activate Your Account
  • Google Workspace – Storage Limit Exceeded

Explore these videos in the BullPhish ID Release Notes.


a red fish hook on dark blue semitransparent background superimposed over an image of a caucasian man's hands typing on a laptop in shades of blue gray

Learn how to spot today’s most dangerous cyberattack & get defensive tips in Phishing 101 GET EBOOK>>



Watch “Microsoft 356 & Google Workspace User Health Check


Are your clients’ Microsoft 365 and Google Workspace environments secure and cost-efficient? Watch our on-demand webinar to uncover hidden risks, tighten security, cut costs and streamline IT management — all while boosting your MSP’s profitability.

You’ll learn:

  • Best practices for securing cloud environments
  • License and cost optimization strategies
  • Automation tools to streamline IT management

Watch on-demand


Discover user protection for the modern workforce in our eBook Kaseya 365 User Protection Business Case. GET IT>>



May 20: Kaseya + Datto Connect Local: Chicago Symposium REGISTER NOW>>

May 22: Kaseya + Datto Connect Local: Detroit REGISTER NOW>>

May 22: Kaseya + Datto Connect Local: Melbourne REGISTER NOW>>

June 3: Kaseya+Datto Connect Local: New York City Symposium REGISTER NOW>>

June 17 – 19: Kaseya DattoCon Europe REGISTER NOW>>

October 6 – 8: Kaseya DattoCon Miami REGISTER NOW>>

October 28 – 30: Kaseya DattoCon Asia-Pacific REGISTER NOW>>


Do you have comments? Requests? News tips? Complaints (or compliments)? We love to hear from our readers! Send a message to the editor.

Partners: Feel free to reuse this content. When you get a chance, email [email protected] to let us know how our content works for you!


Read our case studies and see how MSPs and businesses have benefited from using our solutions. READ NOW>