Skip to main content
BilgeQor
Back to industries

CTO, Head of Product, Compliance Officer

Healthcare & Wellness Platforms

Verified financial-system cyber context · Brazil / Banco Central do Brasil

Relevant cyber incidents reported to Banco Central do Brasil

Market context — not industry-specific evidence

Banco Central do Brasil's Financial Stability Report November 2025 shows an increase in relevant cyber incidents reported to the central bank over recent years, with 59 reports in 2024 and 53 reports in 2025 through August. The report states that recent incidents generated financial losses in some cases, revealed weaknesses in essential controls, third-party service management and API-based services, and showed that criminal groups have advanced knowledge of financial-system operations. These figures are Brazilian financial-system context only; they are not all-Brazil business incident rates and not industry-specific evidence.

Brazil · Banco Central financial-system cyber incident reporting context2018–2024 annual totals; 2025 through August

Relevant cyber incidents reported to Banco Central do Brasil — counts

2018
7
Unit
reported incidents
Period
Annual relevant cyber incident reports to Banco Central do Brasil from 2018 to 2024, plus 2025 through August
Scope
Brazil financial-system cyber incident reports to Banco Central do Brasil
2019
18
Unit
reported incidents
Period
Annual relevant cyber incident reports to Banco Central do Brasil from 2018 to 2024, plus 2025 through August
Scope
Brazil financial-system cyber incident reports to Banco Central do Brasil
2020
27
Unit
reported incidents
Period
Annual relevant cyber incident reports to Banco Central do Brasil from 2018 to 2024, plus 2025 through August
Scope
Brazil financial-system cyber incident reports to Banco Central do Brasil
2021
33
Unit
reported incidents
Period
Annual relevant cyber incident reports to Banco Central do Brasil from 2018 to 2024, plus 2025 through August
Scope
Brazil financial-system cyber incident reports to Banco Central do Brasil
2022
20
Unit
reported incidents
Period
Annual relevant cyber incident reports to Banco Central do Brasil from 2018 to 2024, plus 2025 through August
Scope
Brazil financial-system cyber incident reports to Banco Central do Brasil
2023
24
Unit
reported incidents
Period
Annual relevant cyber incident reports to Banco Central do Brasil from 2018 to 2024, plus 2025 through August
Scope
Brazil financial-system cyber incident reports to Banco Central do Brasil
2024
59
Unit
reported incidents
Period
Annual relevant cyber incident reports to Banco Central do Brasil from 2018 to 2024, plus 2025 through August
Scope
Brazil financial-system cyber incident reports to Banco Central do Brasil
2025 through August
53
Unit
reported incidents
Period
Annual relevant cyber incident reports to Banco Central do Brasil from 2018 to 2024, plus 2025 through August
Scope
Brazil financial-system cyber incident reports to Banco Central do Brasil

Banco Central financial-system reporting context only. The 2025 value is year-to-date through August. These figures are not all-Brazil business incident rates, Pix fraud totals or industry-specific evidence.

Source: Banco Central do Brasil, Relatório de Estabilidade Financeira, Novembro 2025

Scope: Banco Central do Brasil Financial Stability Report November 2025. Figures describe relevant cyber incidents reported to Banco Central do Brasil, including 2025 through August. They do not measure all hidden or unreported incidents, all-Brazil business incident prevalence, Pix fraud totals, industry-specific evidence, compliance achievement, certification or security outcomes.

Methodology: Official Banco Central do Brasil financial-stability report context. The admitted figures describe relevant cyber incidents reported to Banco Central do Brasil by year, including 2025 through August. The report discusses implications for financial and payment institutions, third-party services, APIs, operational resilience, and cyber risk in the Brazilian financial system. These figures are financial-system context only; they are not all-Brazil business incident prevalence, not industry-specific evidence, not Pix fraud totals, not a measure of all hidden or unreported cyber incidents, and not proof of security outcomes.

Accessible data table
Verified Brazil Banco Central relevant cyber incident reporting context data from Banco Central do Brasil, Relatório de Estabilidade Financeira, Novembro 2025, reporting period Annual relevant cyber incident reports to Banco Central do Brasil from 2018 to 2024, plus 2025 through August.
MetricValueSourceScopeReporting period
20187 reported incidentsBanco Central do Brasil, Relatório de Estabilidade Financeira, Novembro 2025Brazil financial-system cyber incident reports to Banco Central do BrasilAnnual relevant cyber incident reports to Banco Central do Brasil from 2018 to 2024, plus 2025 through August
201918 reported incidentsBanco Central do Brasil, Relatório de Estabilidade Financeira, Novembro 2025Brazil financial-system cyber incident reports to Banco Central do BrasilAnnual relevant cyber incident reports to Banco Central do Brasil from 2018 to 2024, plus 2025 through August
202027 reported incidentsBanco Central do Brasil, Relatório de Estabilidade Financeira, Novembro 2025Brazil financial-system cyber incident reports to Banco Central do BrasilAnnual relevant cyber incident reports to Banco Central do Brasil from 2018 to 2024, plus 2025 through August
202133 reported incidentsBanco Central do Brasil, Relatório de Estabilidade Financeira, Novembro 2025Brazil financial-system cyber incident reports to Banco Central do BrasilAnnual relevant cyber incident reports to Banco Central do Brasil from 2018 to 2024, plus 2025 through August
202220 reported incidentsBanco Central do Brasil, Relatório de Estabilidade Financeira, Novembro 2025Brazil financial-system cyber incident reports to Banco Central do BrasilAnnual relevant cyber incident reports to Banco Central do Brasil from 2018 to 2024, plus 2025 through August
202324 reported incidentsBanco Central do Brasil, Relatório de Estabilidade Financeira, Novembro 2025Brazil financial-system cyber incident reports to Banco Central do BrasilAnnual relevant cyber incident reports to Banco Central do Brasil from 2018 to 2024, plus 2025 through August
202459 reported incidentsBanco Central do Brasil, Relatório de Estabilidade Financeira, Novembro 2025Brazil financial-system cyber incident reports to Banco Central do BrasilAnnual relevant cyber incident reports to Banco Central do Brasil from 2018 to 2024, plus 2025 through August
2025 through August53 reported incidentsBanco Central do Brasil, Relatório de Estabilidade Financeira, Novembro 2025Brazil financial-system cyber incident reports to Banco Central do BrasilAnnual relevant cyber incident reports to Banco Central do Brasil from 2018 to 2024, plus 2025 through August

Verified reported cyber incident notification context · Brazil / CERT.br

Reported cyber incident notifications received by CERT.br

Market context — not industry-specific evidence

CERT.br received 470,885 voluntary incident notifications in calendar year 2025, compared with 516,556 in 2024. These figures describe notifications submitted by CSIRTs, network administrators and end users for incidents occurring in networks that spontaneously notified CERT.br. They are not the percentage of Brazilian businesses identifying or experiencing attacks, and they are not industry-specific findings for the sector shown on this page.

Brazil network-notification context · Voluntary incident notifications received by CERT.brCalendar year 2025 · Compared with calendar year 2024

Decrease in reported incident notifications

2025 compared with 2024
8.8%
Unit
percent
Period
Completed calendar-year totals for January to December 2025, compared with January to December 2024; selected category totals for January to December 2025.
Scope
Voluntary incident notifications received by CERT.br in Brazil network-notification context

Voluntary incident notifications received by CERT.br decreased from 516,556 in calendar year 2024 to 470,885 in calendar year 2025.

Calculated decrease from official CERT.br totals only; this does not establish reduced cyber risk, reduced attack activity or a lower percentage of Brazilian businesses affected.

Selected reported notification categories

DoS notifications — 26,418
5.6%
Unit
percent
Period
Completed calendar-year totals for January to December 2025, compared with January to December 2024; selected category totals for January to December 2025.
Scope
Voluntary incident notifications received by CERT.br in Brazil network-notification context
Attempted-fraud notifications — 24,030
5.1%
Unit
percent
Period
Completed calendar-year totals for January to December 2025, compared with January to December 2024; selected category totals for January to December 2025.
Scope
Voluntary incident notifications received by CERT.br in Brazil network-notification context
Web compromise or defacement notifications — 19,965
4.2%
Unit
percent
Period
Completed calendar-year totals for January to December 2025, compared with January to December 2024; selected category totals for January to December 2025.
Scope
Voluntary incident notifications received by CERT.br in Brazil network-notification context
Successful unauthorised-access notifications — 3,729
0.8%
Unit
percent
Period
Completed calendar-year totals for January to December 2025, compared with January to December 2024; selected category totals for January to December 2025.
Scope
Voluntary incident notifications received by CERT.br in Brazil network-notification context

Calculated shares of 470,885 voluntary notifications received in 2025. Scan is intentionally excluded from this peer-bar display because its source-defined scope includes unsuccessful attempts; these values are not Brazilian-business incident rates or industry-specific findings.

Source: CERT.br, Incidentes Notificados ao CERT.br, 2025 annual totals

Scope: Official CERT.br voluntary incident-notification context. Notifications reflect incidents occurring in networks that spontaneously notified CERT.br. The displayed percentages are calculated from official source-reported counts and rounded to one decimal place. In the official 2025 category total, Scan accounts for 393,919 notifications; it is not rendered as a peer breach/compromise bar here because CERT.br defines that category as including scans, brute-force password attempts, unsuccessful exploit attempts and other unsuccessful attacks. Fraude is displayed only as attempted-fraud notification context. These figures do not measure Brazilian-business breach rates, industry-specific performance, compliance achievement, certification or security outcomes.

Methodology: Official CERT.br reported-incident notification context. The portal states that incident notifications are voluntarily submitted to CERT.br by CSIRTs, network administrators and end users, and reflect incidents occurring in networks that spontaneously notified CERT.br. Official exported chart values show 470,885 total notifications in calendar year 2025 and 516,556 in calendar year 2024. Official 2025 category totals include Scan 393,919, DoS 26,418, Fraude 24,030, Web 19,965, Invasão 3,729 and Outros 2,824. Scan is not admitted as a peer attack/compromise chart category in this public section because the source-defined category includes scans, brute-force password attempts, unsuccessful vulnerability-exploitation attempts and other unsuccessful attacks. Fraude may be displayed only as attempted-fraud notification context. The admitted indicators describe voluntary incident notifications received by CERT.br and selected source-defined categories only; they do not measure the percentage of Brazilian businesses identifying or experiencing attacks, do not provide industry-specific evidence, and do not establish compliance achievement, certification or security outcomes.

Accessible data table
Verified Brazil CERT.br voluntary reported cyber incident notification context data from CERT.br, Incidentes Notificados ao CERT.br, 2025 annual totals, reporting period Completed calendar-year totals for January to December 2025, compared with January to December 2024; selected category totals for January to December 2025..
MetricValueSourceScopeReporting period
2025 compared with 20248.8% percentCERT.br, Incidentes Notificados ao CERT.br, 2025 annual totalsVoluntary incident notifications received by CERT.br in Brazil network-notification contextCompleted calendar-year totals for January to December 2025, compared with January to December 2024; selected category totals for January to December 2025.
DoS notifications — 26,4185.6% percentCERT.br, Incidentes Notificados ao CERT.br, 2025 annual totalsVoluntary incident notifications received by CERT.br in Brazil network-notification contextCompleted calendar-year totals for January to December 2025, compared with January to December 2024; selected category totals for January to December 2025.
Attempted-fraud notifications — 24,0305.1% percentCERT.br, Incidentes Notificados ao CERT.br, 2025 annual totalsVoluntary incident notifications received by CERT.br in Brazil network-notification contextCompleted calendar-year totals for January to December 2025, compared with January to December 2024; selected category totals for January to December 2025.
Web compromise or defacement notifications — 19,9654.2% percentCERT.br, Incidentes Notificados ao CERT.br, 2025 annual totalsVoluntary incident notifications received by CERT.br in Brazil network-notification contextCompleted calendar-year totals for January to December 2025, compared with January to December 2024; selected category totals for January to December 2025.
Successful unauthorised-access notifications — 3,7290.8% percentCERT.br, Incidentes Notificados ao CERT.br, 2025 annual totalsVoluntary incident notifications received by CERT.br in Brazil network-notification contextCompleted calendar-year totals for January to December 2025, compared with January to December 2024; selected category totals for January to December 2025.

Relevant loss and exposure areas

These existing industry scoping prompts help frame a proposal. They do not assert an incident, loss, or market-specific condition.

Industry themes

  • Data Breach
  • Privacy Violation
  • Unauthorized Access

Digital surfaces in scope

Patient PortalsTelehealth AppsWellness APIs

What structured security support changes

The Security File turns risk signals into decisions.

Official market data shows where risk exists. The BilgeQor Security File connects that context to your real websites, apps, accounts, payment flows and team responsibilities, so leaders can decide what to fix first.

Why this matters

The file gives your team one place to understand what was reviewed, what matters, what changed, and what still needs a decision.

BilgeQor Method

What the Security File contains

A Security File is not a generic report. It is a structured decision record for the assets, workflows and risks covered by the agreed scope.

01

Market and sector context

We connect official market signals and industry exposure to the business surfaces in scope.

02

Exposure map

We map websites, apps, accounts, payment journeys, admin roles, vendors and customer-facing workflows.

03

Priority register

We separate urgent risks, important improvements and lower-priority findings so the next action is clear.

04

Executive summary

We provide a concise summary that leadership, operations, vendors or insurers can read without needing raw technical detail.

05

Remediation roadmap

We turn findings into a 14 / 30 / 90-day action path with ownership, evidence notes and follow-through guidance.

What it is not

  • Not a guarantee of perfect security.
  • Not a certification or compliance verdict.
  • Not a per-company loss estimate or fear-based claim.