REPORT

2025 mid-year email breach data reveals there’s no slowing down

Insights from 107 email-related healthcare breaches.

REPORT

2025 healthcare email security report

Key insights from 180 email-related healthcare breaches and actionable steps to protect your organization.

 

Download the report

Cybersecurity graphic
REPORT

2025 healthcare email security report

Key insights from 180 email-related healthcare breaches and actionable steps to protect your organization.


Download the report

2025-03-07_REPORT_StateofSecurity-1

Top takeaways

Email security failures are accelerating in healthcare—and widely adopted platforms are falling short. Our mid-year analysis reveals why breaches keep happening and what it takes to stop them.
Copy of RPT.202508.SMB Stats-4

107 email-related breaches occurred so far in 2025, compared to 180 overall last year

Copy of RPT.202508.SMB Stats

52% of healthcare breaches were on Microsoft 365, up from 43% in 2024

Copy of RPT.202508.SMB Stats-2

41% of orgs were assessed as high risk, up from 31% last year

Copy of RPT.202508.SMB Stats-3

79% of breached domains had ineffective DMARC protection, a major jump from 65% in 2024

Email vs patient portals-1
Email vs patient portals (2)
Low risk email security infographic
HIPAA fines infographic

Key resources

1

2025 mid-year email breach data reveals there's no slowing down

2025 mid-year breach data shows worsening email security across healthcare, with clear patterns and preventable risks emerging.

2
Executive summary: 2025 mid-year email breach data reveals there's no slowing down

Breach frequency remains high, but impact is growing—especially for under-resourced and over-reliant healthcare organizations.

3
Infographic: The first half of 2025 by the numbers

Visual breakdown of who’s getting breached, how it’s happening, and which platforms are falling short.

4
Report excerpt: Understanding the breach landscape
Credential-based attacks and email missteps dominate, revealing operational cracks across provider and vendor ecosystems.

5
Report excerpt: Why SMB and mid-market orgs are so vulnerable

Third-party risk, limited visibility, and staffing gaps make smaller organizations more susceptible to costly breaches.

6
Report excerpt: Enterprise-level healthcare creates breach risks at scale

Large systems face risk from acquisitions, misalignment, and complexity—breaches reveal cracks too big to ignore.