Cyberthreat News Roundup
Cyberthreat News is a weekly roundup of news and analysis of the most important cybersecurity events. Featuring attacks and breaches, vulnerabilities, threats, and cyber risk management news.
Cartier breach: Luxury brand Cartier disclosed a data breach in June 2025 that impacted 8.4 million users. The attack was linked to activities by hacking group Scattered Spider and highlighted a growing list of high-profile breaches.
Getting hacked isn’t just bad for business – it can hurt brand reputation and put organizations in legal jeopardy. And with new technology like self-driving cars, smart cities and internet-enabled home security systems, the danger is increasing.
Attackers use social engineering to gain access to sensitive information and systems. This can include phishing attacks that leverage email, text and social media to trick victims into clicking malicious links or opening infected attachments. More targeted variants called spear phishing use specific information about an organization or its employees to make the attack more likely to succeed.
Today’s attackers are scanning for vulnerable enterprise software and weaponizing flaws within days. This is reflected in recent incidents such as the SAP NetWeaver zero-day and Microsoft SharePoint exploits that expose hundreds of customers at once. The attacks demonstrate how patch management delays translate directly into systemic risk.
While attackers may strike for a wide range of reasons, most activity clusters around three broad drivers. Criminal motives still dominate, with actors aiming for straightforward financial gain via ransomware and extortion attacks that hold systems hostage until a hefty payment is made. Other attacks are motivated by politics and can involve long-term cyber espionage campaigns on critical infrastructure, government networks and even election systems. Finally, hacktivists – individuals or loose collectives – infiltrate networks to spotlight a cause or embarrass an adversary.