Skip to main content
Finin2minBatch 08 · Source checked 14 Aug 2026
Cyber Security & ResilienceUpdated 5 October 2026

India Recorded 29.44 Lakh Cyber Security Incidents in 2025: Enterprise Risk and Board-Reporting Guide

By Ravi Sisodia · Reviewed by CA Divyanshu Sengar · Updated 5 October 2026

India-first finance, audit and risk workflow with primary-source anchors.

2-minute summary

Current position

The 14 August 2026 MeitY/PIB update records 29,44,248 cyber-security incidents reported to and tracked by CERT-In during 2025, after 20,41,360 in 2024 and 15,92,917 in 2023. This is a national incident count and should not be converted into a company-specific breach probability or loss estimate.

Control and decision map

#Control / decision step
1Present national incident trend with source and definitions, avoiding company-specific probability claims.
2Map critical business services and internet-facing assets to control owners.
3Track patch / vulnerability ageing and endpoint / logging coverage as board metrics.
4Measure third-party exposure and incident-notification readiness.
5Test backups and recovery objectives through exercises, not policy statements alone.
6Record material cyber incidents, near misses and remediation closure for the audit / risk committee.

Evidence pack

Worked example

A company board sees the national incident count rise sharply and asks to double cyber spend. The CISO instead maps spend to measurable gaps: 18% of servers lack central logging, critical patches average 24 days, and two key vendors have no tested breach-notification workflow. The budget is then tied to those weaknesses rather than the headline count alone.

Common mistakes

  1. Treating national incident counts as a direct probability for one company.
  2. Reporting tool purchases instead of control effectiveness.
  3. Ignoring third-party and recovery readiness.
  4. Using only annual penetration-test results as the cyber dashboard.

Frequently asked questions

What does 29.44 lakh represent?

The Government says these were cyber-security incidents reported to / tracked by CERT-In in 2025.

Does the number equal successful breaches?

No. Do not equate a national incident count with successful company breaches or losses.

What should a board monitor?

Control coverage, vulnerabilities, incidents, vendors, recovery and remediation closure.

Official sources

Disclaimer: Educational and informational content only. Apply the current law, instrument, contract, facts and professional judgement before acting.

Disclaimer

Educational and professional reference only; confirm the current law, rates and the facts of your case before relying on this page.

Educational and professional reference only — not financial, tax or legal advice. Verify the current official position from the primary source before relying on any figure, rate, provision or deadline.