Security Roundup October 2025

Security Watch

Curated advice, guidance, learning and trends in cybersecurity and privacy, as chosen by our consultants.

Presenting the new-look BH Consulting

We are proud to unveil the new BH Consulting brand and website. It represents the company’s next step as leaders in cybersecurity and data protection consulting, while staying true to what matters most: the trusted expertise and expert delivery our clients know and rely on. Our thanks go to our talented team and all our clients and partners who contributed to this milestone.

Ransomware payment gives no guarantees

Ransomware remains a “costly and disruptive” problem in Ireland, Hiscox’s 2025 Cyber Readiness Report shows. Of those that suffered a ransomware incident, 70 per cent chose to pay the ransom, but only 60 per cent of payers got some or all of their data back; scarcely better odds than flipping a coin. In 31 per cent of cases where victims paid, attackers demanded more money, and 27 per cent of payers said they subsequently experienced another attack: proof that payment is no guarantee of immunity.

Overall, four out of ten Irish businesses reported suffering a cybersecurity incident over the past year, with 31 per cent saying it affected their financial health, and 28 per cent claiming they found it harder to attract new customers. One counterintuitive finding was that 56 per cent of Irish businesses believe their cyber resilience has improved in the past 12 months. One in four companies expect to invest significantly in cybersecurity and data-protection over the year ahead. The full global survey is free to download here. In related news, the rate of ransomware payments dropped below 25 per cent for the first time in history. Coveware, a company that specialises in ransomware negotiations, has outlined the plummeting figures its research uncovered. 

Cybersecurity is our business, and business is good

Close to half of Irish cybersecurity companies’ exports grew over the past 12 months and 63 per cent of companies reported increased domestic sales according to a report from Cyber Ireland. This growth is expected to continue into 2026; 68 per cent of firms are projecting increased domestic sales, and 66 per cent projecting increased exports.

Cyber Ireland, which is the national cybersecurity cluster organisation, says the sector employs almost 8,000 people in Ireland and has annual revenues of €2.7 billion. It also calculates its contribution to the economy at €1.2 billion gross value added per year.

Eight out of ten cybersecurity companies are hiring or plan to hire over the next 12 months. The hardest roles to fill for companies were security architects, governance risk and compliance (GRC), followed by cloud security. Brian Honan, Cyber Ireland chairperson and CEO of BH Consulting, said:  “The cyber security threats we face impact all organisations and don’t stop at borders. That’s why Cyber Ireland is built on public-private partnerships bringing together industry, education, research, and government. We’re also working on an All-Island basis with partners in Northern Ireland, and right across Europe to improve cybersecurity through collaboration, developing skills and innovation.”

Data protection and privacy roundup: definitions, trust and hosting concerns

On 4th September, the Court of Justice of the European Union delivered a landmark judgment clarifying the definition of personal data, particularly the constitutive elements of the ‘relating to’ criterion and the ‘identifiability’ criterion. This could pave the way for a uniform approach to anonymisation, some commentators believe.

Many small businesses in Europe are unsure if their data is hosted inside the EU, a Europe-wide survey from team.blue found. One in five European SMEs are thinking about or are actively moving their data amid growing demand for clarity and transparency from cloud and hosting providers.

Meanwhile consumers are also reacting to data risks, with 65 per cent of Irish people saying they wouldn’t shop again with retailers that had previously suffered a data breach. For those aged over 55, the figure rises to 81 per cent, according to the survey from Digital Business Ireland’s Digital Consumer Index.

From retailers to regulators, a Short Guide to Digital Regulation aims to help the public and businesses understand oversight of digital services. The guide explains the roles of the various watchdogs and addresses common queries around data protection, online safety, and more. Finally, following up on last month’s coverage of the EU Chat Control issue, several EU Member States have changed their stance on the proposed regulation that would require scanning of private communications to detect child abuse material, including in encrypted messaging platforms. Supporters cite child safety, while critics warn of surveillance risks and weakened encryption.

Links we liked

The unknown (and ancient) story beyond the @ symbol. MORE

Researchers have uncovered a gang spreading malware via YouTube. MORE

How cybercriminals recruit insiders to help them infiltrate target organisations. MORE

Nosey Parker is an open source tool for finding information hidden in text files. MORE

Italy has adopted a comprehensive AI framework. What could it mean? MORE

As businesses rush to adopt AI, few are managing the risks. MORE

Working on a new standard for post-quantum cryptography. MORE

The next cyber crisis may start in someone else’s supply chain. MORE

The hidden costs of standing still in cybersecurity. MORE

Conversations with a ransomware operator. MORE

Have you signed up to our monthly newsletter? Every month we send out the latest cybersecurity and data protection news, trends and advice from around the globe.

Sign up here

Why get in touch with BH Consulting

BH Consulting is a trusted, independent cybersecurity and data protection consultancy with over 20 years of experience. Whether you need expert guidance on compliance, risk management, or security strategy, our team delivers practical, vendor-neutral advice tailored to your needs.

Let’s start a conversation about securing your business.

Areas of interest*