[REVISION HISTORY]
Escalating global cybersecurity threats and risks for SMEs
Updated 6 times since CLSTR started tracking revisions of this situation.
What changed
2026-09-11 01:29 UTC → 2026-09-11 08:23 UTC ·
added
removed
Cybersecurity threats to small and medium-sized enterprises (SMEs) continue to escalate globally. While a Clusit 2025 report previously noted a 42% increase in attacks, recent data from Kaspersky indicates that 86% of SMEs worldwide faced at least one cybersecurity incident in the past year. Cybercriminals are increasingly employing sophisticated methods once reserved for large corporations, driven by rapid digitalization and lower attack costs. In Italy, 507 serious incidents were recorded in 2025, representing 9.6% of the global total. Phishing and social engineering remain critical vulnerabilities, accounting for 12.4% of serious incidents in Italy—a 66% increase driven by AI-enhanced deepfakes. To help SMEs navigate European regulations like the Cyber Resilience Act (CRA), the APPtake project is providing DevSecOps tools to integrate security into the application lifecycle and manage risks from AI-generated code. Regional threats vary significantly. In Latin America, the most frequent incidents include phishing (24%), external remote access (15%), and software vulnerability exploitation (13%). In Colombia, ColCERT issued a high-risk alert regarding a global credential theft campaign targeting internet-exposed firewalls and VPN gateways. Rather than using software exploits, attackers are targeting structural deficiencies in identity management New research highlights a gap between technical implementation and password storage operational readiness. A study by scanning administration interfaces to extract configuration files FORT Cyber, Data Diggers, and weak encryption keys. Colombia currently ranks Promocrat found that while over 80% of Romanian companies utilize basic measures like firewalls and multi-factor authentication, 15% of organizations that implemented nearly all analyzed technical measures had never tested their incident response plans. Global impacts remain severe. According to Kaspersky, 22% of respondents cited financial loss as a primary impact of attacks, 16% reported permanent data loss, and 13% experienced irrecoverable destruction of company assets. Customer data is the seventh most affected country globally, with 27 organizations reporting their internal networks were fully exposed. frequent target, cited by 32% of respondents.
Versions
- 2026-09-11 08:23 UTC Escalating global cybersecurity threats and risks for SMEs
- 2026-09-11 01:29 UTC Escalating global cybersecurity threats and risks for SMEs
- 2026-09-08 09:47 UTC Cybersecurity threats and regulatory shifts for SMEs
- 2026-09-07 12:00 UTC Cybersecurity threats and regulatory shifts for SMEs
- 2026-09-03 08:35 UTC Cybersecurity fundamentals and SME threat landscape
- 2026-08-17 09:14 UTC Cybersecurity fundamentals and SME threat landscape
- 2026-08-17 06:41 UTC Cybersecurity fundamentals and best practices
Only revisions since CLSTR began indexing content versions appear here. Select a version to see what changed compared to the one before it.