Asahi Group
September 2025Incident
Attackers compromised Asahi Group's Japanese network, obtained administrative privileges, spent roughly ten days on internal reconnaissance, then deployed ransomware across multiple servers.
Impact
~1.52M customers, 114,000 business contacts, and 275,000 employees/family members potentially exposed. Order processing, shipping, and support were disrupted; October sales at major units fell 10–40% YoY.
Root cause
Insufficient access-privilege management: authentication into the network didn't mean the identity should have been able to traverse unrelated internal systems.
The ZTeasy angle
ZTeasy turns internal movement into an authorization problem rather than a network-location problem — every service/API request is evaluated against identity, target service, route, and permitted operation.