SHARE
Facebook X Pinterest WhatsApp

‘Treacherous Territory’: Cyber Experts Warn of Unprecedented Threats

Cyberattacks are surging in 2025, targeting airlines and insurers. Experts warn businesses and consumers to brace for a more dangerous digital landscape.

Written By
thumbnail Matt Gonzales
Matt Gonzales
Jul 14, 2025
eSecurity Planet content and product recommendations are editorially independent. We may make money when you click on links to our partners. Learn More

As cyberattacks grow more aggressive and widespread, cybersecurity professionals are raising red flags about what they call a “treacherous” new landscape. 

Airlines, insurance firms, and other industries are finding themselves in the crosshairs of increasingly sophisticated hackers, and experts say both businesses and individuals must act now to avoid falling victim.

In recent weeks, major companies including Hawaiian Airlines, Qantas, Aflac, AT&T, The North Face, and Cartier have suffered serious cyber incidents. These attacks are part of a growing trend that experts say is being fueled by the rise of artificial intelligence and increasingly advanced hacker tactics.

Doug Merritt, CEO of cloud security firm Aviatrix, warned that many companies are still unprepared for the threats posed by today’s cybercriminals.

“Organizations that don’t adapt to the ‘treacherous’ cybersecurity landscape will be ambushed by blind spots all over their network,” Merritt told Fox Business.

Airlines become top targets

Airlines are now a prime focus for cybercrime groups. Within just one week, Hawaiian Airlines and Australian carrier Qantas were both hit with attacks. The FBI recently warned that a notorious hacker collective known as Scattered Spider is “expanding its targeting to include the airline sector.”

Scattered Spider is known for using clever social engineering to trick IT help desks into bypassing security protocols, especially multi-factor authentication (MFA)

According to TechRepublic, the FBI said these hackers have been “convincing help desk staff to bypass multi-factor authentication (MFA) protections by registering rogue MFA devices on compromised accounts.” This tactic gives them high-level access to internal systems, which can be catastrophic for a company’s operations and reputation.

Merritt explained that the shift to cloud computing has made things worse. Unlike in the past, where data was mostly kept inside secure company networks, data today moves across the open internet.

That movement creates more entry points for attackers. “Many organizations are leaving 50% to 80% of their systems exposed,” Merritt said in the Fox Business report, warning that companies are not doing enough to secure cloud communications.

Insurance and payroll firms also breached

Beyond airlines and retailers, insurance and benefits providers are also under siege. In one of the most damaging cases yet, Kelly Benefits — a payroll and benefits administration firm — revealed that over 553,000 people may have had their data stolen during a breach in December 2024.

Initially, the company believed only 32,000 individuals were affected, but new investigations showed that the real number was much higher. According to Tom’s Guide, the compromised information includes full names, Social Security numbers, tax ID numbers, birth dates, financial account details, and even health insurance information.

What this means for you

While companies are the main targets, everyday people are often the ones left most vulnerable after a breach. Amy Bunn, an online safety advocate at McAfee, said the consequences for consumers are severe.

“Cybercriminals can use this treasure trove of sensitive information to impersonate people and commit fraud with stolen identities, or they may package and sell personal data on the dark web to the highest bidder,” Bunn told Fox Business.

She stressed that even if a breach didn’t directly impact you, your information could still be used in phishing scams or identity theft.

What you can do now

While much of the cybersecurity responsibility falls on companies, experts stress that individuals must also take steps to protect themselves.

Bunn advised consumers to use strong, unique passwords, enable two-factor authentication, and be cautious with unexpected emails or texts that request personal data. 

For those impacted by a breach, it’s critical to monitor financial accounts for suspicious activity and consider freezing credit to prevent identity fraud. Also, check your mailbox regularly, as many breach notifications still arrive via traditional mail rather than email.

thumbnail Matt Gonzales

Matt Gonzales is the Managing Editor of Cybersecurity for eSecurity Planet. An award-winning journalist and editor, Matt brings over a decade of expertise across diverse fields, including technology, cybersecurity, and military acquisition. He combines his editorial experience with a keen eye for industry trends, ensuring readers stay informed about the latest developments in cybersecurity.

Recommended for you...

Google Data Breach Sparks Phishing Wave Targeting Gmail Users
Aminu Abdullahi
Aug 27, 2025
Google Cloud Unveils AI Ally to Boost Security Defenses
Aminu Abdullahi
Aug 21, 2025
ClickFix Phishing Attacks Surge Nearly 400% in Just One Year
Matt Gonzales
Aug 19, 2025
AI Agents Vulnerable to ‘Silent Hijacking,’ Security Researchers Warn
Aminu Abdullahi
Aug 15, 2025
eSecurity Planet Logo

eSecurity Planet is a leading resource for IT professionals at large enterprises who are actively researching cybersecurity vendors and latest trends. eSecurity Planet focuses on providing instruction for how to approach common security challenges, as well as informational deep-dives about advanced cybersecurity topics.

Property of TechnologyAdvice. © 2025 TechnologyAdvice. All Rights Reserved

Advertiser Disclosure: Some of the products that appear on this site are from companies from which TechnologyAdvice receives compensation. This compensation may impact how and where products appear on this site including, for example, the order in which they appear. TechnologyAdvice does not include all companies or all types of products available in the marketplace.