Patching stories
Many small firms cannot block the attack with email or antivirus tools because it tricks staff into running malicious commands themselves.
Businesses face faster-growing exposure risks as the security firm widens its portfolio with tools for vulnerabilities, mobile threats and patching.
Most Spring teams are exposed to container risks as 64% of respondents were unaware Dockerfile choices can affect security.
Attackers still exploit basic gaps for months, with 88% of SMB breaches in 2025 involving ransomware, the report says.
Patch teams are falling behind as exploited flaws pile up, with 47 million instances still open after a year, Qualys data shows.
The move widens defences for businesses as AI systems become a bigger target for attackers and zero-day flaws multiply across enterprise software.
Enterprises running ageing systems may gain a safer alternative to patching, as the new service flags flaws before vendors disclose them.
Despite higher spending plans, half of SMBs reported a cyber incident in the past year, exposing a widening readiness gap.
The findings suggest AI-assisted bug hunting is edging closer to practical exploitation, raising the stakes for software teams racing to patch flaws.
Enterprises are testing only about 32% of their attack surface, leaving many assets outside regular security checks as threats grow faster.
Nearly half of finance teams are now using AI to manage databases, but weak governance is leaving them exposed to audit scrutiny.
More than half of North American SMBs lack basic email protections, leaving them more exposed to phishing, impersonation and fraud than UK peers.
The new tool aims to cut manual upkeep for agencies juggling dozens of WordPress sites, with updates and checks now handled in one place.
Faster cyber attacks are forcing IT and security teams to act more quickly across large endpoint estates as Tanium expands its AI platform in APAC.
The scanner found four critical remote code execution bugs among 16 Windows flaws, including issues in the kernel TCP/IP stack and IKEv2 service.
Repeat breaches exposed an Azerbaijani oil and gas operator to espionage as FamousSparrow exploited Microsoft Exchange flaws for two months.
JupiterOne rolls out AI attack surface and vulnerability tools to help security teams map links, prioritise flaws and cut through alert overload.
Older servers may be unprotected for years because some backup providers no longer fully support them, risking recovery failures and audit breaches.
Domain controllers face urgent patching after a Netlogon flaw was rated 9.8, with no privileges or user interaction needed for exploitation.
Businesses facing rising phishing attacks in Singapore now have access to Canon's new suite, which covers monitoring, training and incident response.