Obsidian Security, the pioneer in Software as a Service (SaaS) security, today released its inaugural 2025 SaaS Security Threat Report, revealing an unprecedented 300% year-over-year increase in SaaS ...

Almost every breach resulted from identity compromise, making SaaS identities the new frontline for cyber attacks
PALO ALTO, Calif.: Obsidian Security, the pioneer in Software as a Service (SaaS) security, today released its inaugural 2025 SaaS Security Threat Report, revealing an unprecedented 300% year-over-year increase in SaaS breaches between September 2023 to 2024. This surge in attacks has impacted organizations across all sectors, including major technology and telecommunications companies like Microsoft and AT&T who experienced significant breaches during this period. This dramatic surge comes as organizations increasingly rely on SaaS applications with current spend on SaaS in the hundreds of billions, or approximately $8,700 per employee for tools such as Workday, Google Workspace, ServiceNow, and Office 3651.
Having built the industry's largest SaaS breach data repository and through direct involvement in over 150 incident responses alongside leading firms like GuidePoint and Kroll, Obsidian Security unveils critical findings that reshape our understanding of the current threat landscape:
“The data is stark and unmistakable; securing the identity and its dynamic relationship with services and applications should be the first task for every security team,” said Glenn Chisholm, CPO of Obsidian Security. “Our unmatched dataset of real-life, real-time SaaS compromise telemetry, combined with our knowledge graph of identities across hundreds of large enterprises has allowed Obsidian Security to build AI models with unmatched efficacy. These AI and LLM models continuously learn and adapt to catch attackers before they breach an organization’s environment through SaaS.”
Obsidian Security's ongoing research and unique insights have directly influenced updates to the MITRE ATT&CK framework, particularly in how identity-based attacks in SaaS environments are categorized and addressed. This contribution underscores Obsidian's leadership role in shaping industry-wide security standards.
“In our breach response and intelligence work, we’re increasingly seeing that threat actors recognize the relatively vulnerable state of interconnected SaaS applications as fertile hunting grounds,” says Jim Hung, Associate Managing Director, SPARK, Cyber Risk at Kroll. “The quality of malicious tradecraft is improving to rapidly exploit identity and configuration weaknesses to the fullest.”
Emerging Threats and Predictions
The report also highlights critical emerging risks in SaaS environments:
The average cost of a SaaS breach has risen to $4.88 million2, yet security investment in this area continues to lag behind the rapid adoption of SaaS solutions. This disparity creates an urgent need for organizations to reassess their security strategies and investments.
The complete 2025 SaaS Security Threat Report is now available. Read here.
To see how organizations achieve an 85% reduction in their SaaS attack surface, book a demo with Obsidian.
About Obsidian
Obsidian Security is the premier security solution designed to drastically reduce the attack surface area of SaaS applications by 85% on average. With contextual user activity data, configuration posture, and a rich understanding of 3rd party integrations in SaaS, the Obsidian platform reduces incident response times by 10x and streamlines compliance with internal policies and industry regulations. Notable Fortune 500 companies trust Obsidian Security to secure SaaS applications, such as Salesforce, GitHub, ServiceNow, Workday, and Atlassian. Headquartered in Southern California, Obsidian Security is a privately held company backed by Menlo Ventures, Norwest Venture Partners, Greylock Partners, IVP, GV, and Wing. For more information, visit www.obsidiansecurity.com.
1 Vertice SaaS Inflation Index, 2024
2 IBM Cost of a Data Breach Report, 2024
Fonte: Business Wire
Alaa Abdul Nabi, Vice President, Sales International at RSA presents the innovations the vendor brings to Cybertech as part of a passwordless vision for…
G11 Media's SecurityOpenLab magazine rewards excellence in cybersecurity: the best vendors based on user votes
Always keeping an European perspective, Austria has developed a thriving AI ecosystem that now can attract talents and companies from other countries
Successfully completing a Proof of Concept implementation in Athens, the two Italian companies prove that QKD can be easily implemented also in pre-existing…
#AGI--Integral AI, a global leader in the development of embodied AGI, today announced the successful testing of the world’s first AGI-capable model.…
Reply [EXM, STAR: REY] announced that it has achieved the Amazon Web Services (AWS) Agentic AI Specialization, a new category within the AWS AI Competency.…
Tecnotree, a global digital platform and services leader for AI, 5G, and cloud-native technologies, has won the CX Catalyst award for Impact at The Fast…
Riyadh is rapidly becoming one of the world's most ambitious urban mobility laboratories, where next-generation technologies move from blueprint to real-world…