Many organizations admit to covering up data breaches

Cyber attack
Image Credit: Shutterstock (Image credit: No credit)

Almost a third (30%) of all IT and security professionals whose firms suffered a data breach did not publicly disclose the event, but rather decided to sweep it under the rug. 

This is according to a new report from Bitdefender based on a survey of more than 400 relevant experts working in companies with 1,000+ employees, which added that an even higher percentage (42%) were told by the higher echelons to keep the incidents to themselves.

Reporting a data breach is not just morally right - it’s also a legal obligation in most parts of the world. Data watchdogs and law enforcement agencies demand businesses disclose these things in order to minimize the potential damage to their customers who might be targeted with phishing or have their identities abused for nefarious purposes.

Demanding threat landscape

But disclosing a data breach also means fines, loss of business, a tarnished reputation, and many other unwanted consequences.

Bitdefender’s research found that business leaders pressure their staff to hide cyberattacks because the threat landscape is getting more demanding. More than half (52%) of organizations experienced a data breach in the past 12 months. 

In most cases, IT leaders are worried about software flaws and zero days (54%), phishing and social engineering (52%), supply chain attacks (49%), ransomware (48%), and insider threats (36%).

“Worldwide, organizations [are] under tremendous pressure to contend with evolving threats such as ransomware, zero-day vulnerabilities and espionage, while struggling with [the] complexities of extending security coverage across environments and an ongoing skills shortage,” said Andrei Florescu, deputy general manager and senior vice president of products at Bitdefender business solutions group. 

It’s almost impossible to guarantee cyber-safety in today’s harsh environment, the researchers conclude, but there are things businesses can do to minimize the chances of that happening, such as investing in state-of-the-art detection and response solutions. Investing in firewalls, opting for zero-trust network access (ZTNA), setting up multi-factor authentication (MFA) solutions, and more, can help lift the pressure.

”The results of this survey demonstrate, more than ever, the importance of layered security that delivers advanced threat prevention, detection and response across the entire business while improving efficiencies that allow security teams to do more with less,” Florescu concluded. 

Via: VentureBeat

Sead is a seasoned freelance journalist based in Sarajevo, Bosnia and Herzegovina. He writes about IT (cloud, IoT, 5G, VPN) and cybersecurity (ransomware, data breaches, laws and regulations). In his career, spanning more than a decade, he’s written for numerous media outlets, including Al Jazeera Balkans. He’s also held several modules on content writing for Represent Communications.

Read more
security
The true cost of a security breach
Security padlock in circuit board, digital encryption concept
Rising cost of breaches forces organizations to rethink cybersecurity
Hacker Typing
Racing against time on a menacing caldera: survey finds majority of organizations take days to tackle critical vulnerabilities, each of them a potential open goal for cybercriminals
A digital themed isometric showing a neon padlock in the foreground, and a technological diagram of a processor logic board in the background.
Third-party data breaches have become a major security concern
A laptop with a red screen with a white skull on it with the message: "RANSOMWARE. All your files are encrypted."
Bad news - businesses who pay ransomware attackers aren’t very likely to get their data back
Concept art representing cybersecurity principles
How to combat exfiltration-based extortion attacks
Latest in Security
A stylized depiction of a padlocked WiFi symbol sitting in the centre of an interlocking vault.
Broadcom warns of worrying security flaws affecting VMware tools
URL phishing
HaveIBeenPwned owner suffers phishing attack that stole his Mailchimp mailing list
Ransomware
Cl0p resurgence drives ransomware attacks to new highs in 2025
cybersecurity
Chinese government hackers allegedly spent years undetected in foreign phone networks
Data leak
A major Keenetic router data leak could put a million households at risk
Code Skull
Interpol operation arrests 300 suspects linked to African cybercrime rings
Latest in News
A stylized depiction of a padlocked WiFi symbol sitting in the centre of an interlocking vault.
Broadcom warns of worrying security flaws affecting VMware tools
Microsoft Surface Laptop and Surface Pro devices on a table.
Hate Windows 11’s search? Microsoft is fixing it with AI, and that almost makes me want to buy a Copilot+ PC
Oura Ring 4
Activity tracking on Oura Ring is about to get a whole lot better, but I've got bad news about your step count
Google Pixel Buds Pro 2
Cleaned your Pixel Buds Pro 2 recently? If not, you might be getting worse sound
Google Maps on a phone being held in someone's hand
Google Maps is getting two key upgrades, for easier route planning and quicker access to Gemini AI
URL phishing
HaveIBeenPwned owner suffers phishing attack that stole his Mailchimp mailing list