Threat actors stories
Team Cymru launches Total Insights Feeds for threat data
Today
#
malware
#
siem
#
network security
Team Cymru unveils Total Insights Feeds, a single-stream threat intelligence framework blending internet-wide scoring, context and automated risk tagging.
Ransomware activity stays high as new groups surge
Yesterday
#
ransomware
#
advanced persistent threat protection
#
supply chain
GuidePoint says ransomware attacks stayed elevated in Q1 as The Gentlemen surged, construction became a top target and extortion-only tactics spread.
Former Black Basta affiliates target executives in Teams
2 days ago
#
uc
#
mfa
#
phishing
ReliaQuest says suspected former Black Basta operators are bombarding staff with emails and posing as IT support in Microsoft Teams to reach senior executives.
Proofpoint flags mailbox rule abuse in Microsoft 365
2 days ago
#
edutech
#
mfa
#
cloud security
Proofpoint says mailbox rule abuse is becoming a routine Microsoft 365 takeover tactic, helping attackers hide alerts, hijack threads and drive fraud.
Synack launches Glasswing readiness test for attack gaps
4 days ago
#
firewalls
#
devops
#
digital transformation
Synack launches AI-driven assessment to expose overlooked attack surface gaps as offensive tools speed up vulnerability discovery.
Booking.com warns some customers of possible data exposure
5 days ago
#
data protection
#
endpoint protection
#
mfa
Booking.com tells some customers to watch for phishing after suspicious activity exposed reservation details, contact data and messages linked to bookings.
AI bots overwhelm identity controls in Australia & NZ
5 days ago
#
data protection
#
devops
#
hybrid cloud
AI-driven bots and machine accounts are exposing long-running identity security gaps across Australian and New Zealand organisations, experts warn.
TCCA urges standards push on critical broadband security
Last week
#
uc
#
firewalls
#
network security
TCCA urges industry to align on international standards as 4G and 5G broadband systems expand the cyber risk for mission critical communications.
China-aligned TA416 resumes spying on EU & Mideast
Last week
#
phishing
#
email security
#
cybersecurity
China-linked TA416 returns to spying on European diplomats and later expands attacks to Middle Eastern government targets after Iran conflict.
Vulnetix named Australia's first global CVE authority
Last week
#
malware
#
digital transformation
#
cloud security
Vulnetix expands AI coding defences as Australia's first Global CVE Numbering Authority, opening vulnerability tools to developers nationwide.
Cloudflare, WatchGuard warn cloud security assumptions fail
Last week
#
firewalls
#
data protection
#
digital transformation
Cloudflare and WatchGuard urge organisations to rethink cloud defences as rising identity attacks, AI risks and quantum threats expose weak spots.
Firms warned on ransomware amid backup & AI sprawl
This month
#
saas
#
firewalls
#
data protection
Experts warn firms must improve visibility and backup resilience as automated ransomware campaigns and hidden SaaS and AI assets widen exposure.
Entrust and Chillisoft partner to kick cybersecurity goals
Last month
#
firewalls
#
network security
#
mfa
Entrust joins forces with Chillisoft to bolster ANZ cyber defences, blending identity, education and quantum-ready security expertise.
North Korean operatives target Australian jobs, DTEX warns
Last month
#
hcm
#
advanced persistent threat protection
#
physical security
DTEX warns North Korean operatives are using false identities to secure Australian tech jobs, with some applicants aided by AI and deepfakes.
Web attacks in EMEA hit two-year high, Akamai warns
Last month
#
firewalls
#
ddos
#
digital transformation
Akamai says attack volumes in Europe, the Middle East and Africa climbed 36% year on year as APIs and automated DDoS campaigns fuel a sharp surge.
World Backup Day warnings over ransomware resilience gaps
Last month
#
data protection
#
dr
#
ransomware
Cybersecurity experts say many firms are still relying on fragmented backup tools and untested recovery plans as ransomware attacks and cloud complexity surge.
Gcore sees DDoS attacks surge to 1.3 million in Q4
Last month
#
gaming
#
ddos
#
network infrastructure
Gcore warns DDoS attacks hit 1.3 million in late 2025 as brief, high-volume floods and longer app assaults expose more sectors to risk.
Phishing surge targets Gulf after Iran-Israel tensions
Last month
#
malware
#
firewalls
#
network security
Bitdefender reports a 130% jump in phishing and malware activity across Gulf markets, with fake invoices and banking lures driving attacks.
Ransomware attacks fall as CL0P & The Gentlemen surge
Last month
#
malware
#
firewalls
#
ddos
Qilin keeps top spot as ransomware incidents drop 8% in February, while CL0P and The Gentlemen post sharp gains and new AI risks emerge.
CrowdStrike flags faster AI-driven cyber attacks worldwide
Last month
#
ransomware
#
cloud security
#
phishing
AI-fuelled cyber attacks are spreading faster worldwide, CrowdStrike warns, as breakout times plummet and criminals weaponise mainstream tools.