Puntueus strengthens controls against cyberattacks to address the rise in phishing cases.

Cyberattacks increase by 10% across .EUS domains, while phishing cases double.
The PUNTUEUS Foundation has released the cybersecurity data that make up the annual snapshot of the security status of .EUS domains. According to the 2025 data, the rate of attacks increased by 10% compared to 2024, with phishing remaining the main threat. Compared to the previous year, phishing cases doubled: 9 cases were recorded in 2024, rising to 18 in 2025.
Phishing is a type of attack that seeks to steal user data or identities by obtaining personal information (such as credit card numbers, banking details, or passwords) through websites that appear to be legitimate.
According to Josu Waliño, Director of PUNTUEUS, the use of artificial intelligence has made attacks more sophisticated and, although they often originate from abroad, it is increasingly common for them to use content in the Basque language to make the deception more credible.
“Artificial intelligence has broken down language barriers. Attacks now reach us in our own language, making it easier to gain the victim’s trust.”
FROM 2022 TO 2025: DETECTION EXPANDS AND ALERTS INCREASE SIGNIFICANTLY
Looking back from 2022 to 2025, the growth in detected attack attempts is even more evident. In 2022, 29 cases were detected (an abuse rate of 0.2%), 6 of which were false positives. In 2025, by contrast, 117 cases were detected (an abuse rate of 0.7%), with 46 false positives.
These figures highlight two key points: on the one hand, the overall growth in cyber threat attempts (according to Cyberzaintza, cyberattacks have increased by 48% in the Basque Country over the past two years); on the other hand, the rise in false positives is a sign of broader detection, meaning that detection capabilities have been expanded and preventive analysis strengthened.
In 2025, PUNTUEUS began using artificial intelligence in its monitoring activities to detect cyberattacks in a predictive manner. The monitoring tool analyzes newly registered domains and flags those that pose a potential malicious risk so that technicians can review them manually. This preventive process generates more alerts, including false positives, but the objective is clear: to identify potential threats as early as possible and increase the ability to act before damage occurs.
BLOCK.EUS, AS A PREVENTIVE PROTECTION LAYER
In addition to monitoring, PUNTUEUS offers organizations the BLOCK.EUS service to strengthen prevention. Designed for entities at risk of identity impersonation, this service prevents typosquatting (the registration of similar domain names) and phishing by blocking thousands of variants of the client’s .EUS domain name. In Waliño’s words:
“Our goal is not only to respond once an attack has occurred, but to proactively block the fraudulent domain names required to carry out those attacks; digital security must be firmly based on prevention.”
MORE INFORMATION
The evolution of cyberattacks against .EUS domains can be consulted online and in real time at:
https://puntu.eus/zibersegurtasun-behatokia/
The seal certifies the protection of personal data and protection against threats across all Puntues relationships.