Threat actors stories
Canadians could soon gain stronger control over federal records as Ottawa weighs binding powers for the Privacy Commissioner and rules for AI decisions.
Large firms are using security consulting to cut risk and costs, with IDC saying Mandiant customers gained USD $4.3 million a year on average.
Organisations have only days to patch gaps as AI-driven attackers automate the same old weaknesses, Five Eyes warned.
Criminals are using AI to scale phishing and hunt flaws faster, forcing firms to harden defences as alert volumes and risks rise.
Supplier breaches are amplifying disruption, with ransomware incidents in Europe rising 55.1% year on year in the first four months of 2026.
Hackers are already hoarding encrypted data, as businesses race to adopt quantum-safe protection before Q-Day arrives.
Consumers on hospitality and eCommerce sites are at risk of having passwords and payment details stolen through fake webpages run by the platform.
Existing phishing and fraud tactics are becoming faster, cheaper and harder to detect, raising the risk for large organisations, ReliaQuest said.
Boards face growing pressure to treat AI-driven cyber threats as an immediate business risk, with attackers able to exploit flaws within months.
Trusted third-party access has let attackers quietly pull large volumes of Salesforce records from enterprise systems via a Klue integration.
Public release of the Mini Shai-Hulud code means copycat attacks can now hit developers, CI/CD systems and open-source supply chains.
A single phishing email can now compromise identities, bypass multifactor authentication and hit endpoints within five minutes, Barracuda said.
Thousands of corporate devices may be exposed because many remain unpatched, unseen or missing endpoint protection, Arctic Wolf found.
A financial services cloud was taken over in seconds in a test, highlighting how approved permissions can still let attackers reach full AWS control.
Human error and ungoverned AI are heightening cyber risk in Singapore, where most workers say deepfakes are hard to spot and scams could succeed.
Security teams can now check exposed credentials against Okta as Flare folds threat intelligence, investigation and identity risk tools into one platform.
The extension gives Rugby Australia two more years of protection against cyber threats as sporting bodies face rising risks to data and match-day systems.
Exploited software flaws are now overtaking stolen passwords as the main breach route, sharpening pressure on security teams to patch faster.
Australian businesses face renewed ransomware pressure as INC expands quickly after LockBit and BlackCat were disrupted, researchers say.
Sydney will coordinate wider APJ growth as demand rises for earlier warning on cyber threats hitting critical infrastructure and finance.