A Barracuda report revealed that 78% of organizations experienced an email breach in the past year, with phishing, impersonation, and account takeover attacks leading to significant business disruption, data loss, and reputational harm. The report highlights that smaller firms bear a higher per-employee cost for breach recovery, and slow detection of email-based threats is closely linked to increased ransomware risk, with 71% of breached organizations also suffering ransomware attacks. The average cost of recovery varies by company size, but the consequences—ranging from lost business to prolonged reputational damage—are widespread across industries.
In a notable example, Volvo Group North America was affected by a data breach originating from its third-party HR software provider, Miljödata. Sensitive employee data, including Social Security numbers, was exfiltrated, and the incident exposed delays in detection and notification, raising concerns about forensic readiness and incident response maturity. Volvo responded by offering identity protection services to affected employees, but the breach underscores the critical need for rapid, integrated forensic response and robust communication protocols, especially when third-party vendors are involved.

See attribution, scope, and your downstream exposure.
2 events from the most recent confirmed update back to the earliest known activity.
Help Net Security published coverage of a Barracuda report describing email breaches as a major threat to business growth and emphasizing breach response. The reference appears to discuss general findings rather than a specific newly disclosed incident.
CSO Online reported on Volvo's recent security breach in an article focused on incident response and preserving forensic integrity. The reference indicates the breach had already occurred by the publication date, but provides no specific incident date or additional factual details.
See attribution, scope, and whether this vendor sits anywhere in your supply chain.
2 references tracked. Mallory keeps watching after this page renders.
Map indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.