Category: Advent IM Blog

News and information from the Advent IM team.

Why Third-Party Data Breaches Are a Growing Threat in UK Businesses — And What You Can Do About It

October is Cybersecurity Awareness Month — a great time to think about not just your own systems, but the security of all the parties you depend on. Recent incidents show that third-party breaches are more than theoretical risks — they’re happening now, and hitting UK organisations hard. What’s going on now Here are some real […]

Read More

Cyber Insurance: Why Pay-outs Can Be Refused

Many organisations see cyber insurance as a financial safety net when a data breach or ransomware attack occurs. But cover only works if the policy conditions are met. Cyber insurers are under pressure from the growing volume and cost of claims, and they respond by enforcing their terms very closely. A common reason for refusal […]

Read More

AI meets concrete: what the US–UK tech pact means for UK data centres

The diplomatic choreography of the recent presidential visit to the UK landed more than photo-ops. The Tech Prosperity Deal signals accelerated AI build-outs in the UK—cloud capacity, GPU clusters, and new DC footprints. Nvidia’s ~120k-GPU pledge alone will materially influence power and cooling plans; Microsoft and others are lining up parallel infrastructure spend. Expect planning […]

Read More

Third-party breaches and the data-centre supply chain: where liability really lives

It’s not the bullet you hear that gets you—it’s the ricochet from someone else’s range. The last two years turned “indirect breach” into the main show: MOVEit’s zero-day turned a file-transfer utility into an exfiltration engine; Snowflake-linked compromises hinged on reused credentials and weak contractor security; Okta’s support-portal compromise became a lesson in token hygiene […]

Read More

Security in Education: Insights from Mike Gillespie

What does “security” really mean in schools, colleges and universities today? Mike Gillespie of Advent IM shares his thoughts on how educational institutions can balance openness, safety and privacy in this newly published piece in Professional Security Magazine. Below is a short summary and a few key takeaways — click through to read the full […]

Read More

UK Data Centres 2025: risk, regulation, and real-world resilience

The UK’s data centre estate is growing fast, but geography and power are biting. West London/Slough—the low-latency darling of finance—is edging toward saturation on both land and grid headroom, while demand surges from cloud, multi-cloud and AI workloads. The regulatory weather The government’s forthcoming Cyber Security & Resilience Bill is the big mover. It modernises […]

Read More

The Human Factor in 2025: What Social Engineering Means for GRC, Risk and Resilience

Governance, risk and compliance (GRC) professionals have long argued that security is not just a technical discipline but a human one. Proofpoint’s Human Factor 2025 report confirms this view with unsettling clarity: the most dangerous attack vector in today’s threat landscape isn’t a piece of malware or a zero-day exploit. It’s us. Social engineering as […]

Read More

Heathrow and the MUSE Cyberattack: More Than Just Airport Delays

When Heathrow and several other major European airports found themselves plunged into long queues, manual check-ins and delayed flights this September, the headlines focused on passenger disruption. The underlying story is more complex, and its implications reach far beyond irritated travellers. The disruption stemmed from a cyberattack on MUSE (Multi-User System Environment), a shared platform […]

Read More