September 2025 Cybersecurity Review: Major Attacks on Airports, JLR, and npm
ESET Chief Security Evangelist Tony Anscombe reviews critical cybersecurity incidents from September 2025, emphasizing the urgent need for robust cyber-resilience strategies. The month was marked by significant disruptions across various sectors. In Europe, major airports faced operational failures after a ransomware attack targeted Collins Aerospace’s automated passenger processing systems. Meanwhile, Jaguar Land Rover extended its global factory closures until at least October 1st due to a persistent cyberattack on its IT infrastructure that began in August. The software supply chain also suffered a severe blow when hundreds of npm packages were compromised by the self-replicating Shai-Hulud worm, prompting an official alert from the US Cybersecurity and Infrastructure Agency (CISA). Additionally, a widespread information-stealing malware campaign targeted macOS users by impersonating trusted brands like LastPass. These events collectively highlight the evolving threat landscape, ranging from critical infrastructure disruptions to sophisticated supply chain and social engineering attacks, underscoring the importance of comprehensive defensive measures for organizations and individual users alike.
Wire timeline
September 2025 Cybersecurity Review: Major Attacks on Airports, JLR, and npm
ESET Chief Security Evangelist Tony Anscombe reviews critical cybersecurity incidents from September 2025, emphasizing the urgent need for robust cyber-resilience strategies. The month was marked by significant disruptions across various sectors. In Europe, major airports faced operational failures after a ransomware attack targeted Collins Aerospace’s automated passenger processing systems. Meanwhile, Jaguar Land Rover extended its global factory closures until at least October 1st due to a persistent cyberattack on its IT infrastructure that began in August. The software supply chain also suffered a severe blow when hundreds of npm packages were compromised by the self-replicating Shai-Hulud worm, prompting an official alert from the US Cybersecurity and Infrastructure Agency (CISA). Additionally, a widespread information-stealing malware campaign targeted macOS users by impersonating trusted brands like LastPass. These events collectively highlight the evolving threat landscape, ranging from critical infrastructure disruptions to sophisticated supply chain and social engineering attacks, underscoring the importance of comprehensive defensive measures for organizations and individual users alike.
WeLiveSecurity