Threat actors stories - Page 2
HPE Threat Labs spot industrialised cybercrime surge
Last month
#
malware
#
firewalls
#
vpns
HPE Threat Labs warns cybercrime now runs like big business, as AI-fuelled, industrial-scale attacks hammer government and finance.
Cybercrooks abuse Keitaro tracker for AI scam campaigns
Last month
#
malware
#
phishing
#
martech
Cybercriminals exploit Keitaro ad tracker to cloak AI trading scams and malware, tying some 15,500 malicious domains into a hidden network.
Keitaro ad tracker tied to more than 15,000 scam domains
Last month
#
malware
#
phishing
#
martech
Keitaro ad tracker abused in 15,500 scam and malware domains, as fraudsters cloak AI-themed investment lures from security watchdogs.
BloodHound expands identity attack path mapping reach
Last month
#
data protection
#
encryption
#
pam
SpecterOps broadens BloodHound Enterprise to map identity attack paths across Okta, GitHub and Jamf-managed Macs in hybrid environments.
The agentic evolution: Why high-fidelity data is the lifeblood of the modern SOC
Last month
#
iot security
#
phishing
#
iot
As AI-powered attacks shatter old perimeters, SOCs race to agentic operations where high-fidelity data becomes security's vital lifeblood.
Fake Windsurf extension uses Solana to steal dev data
Last month
#
blockchain
#
supply chain
#
edr
Malicious fake Windsurf IDE extension hid JavaScript, abused Solana to fetch payloads, and stole developers' browser credentials and tokens.
Barracuda warns of surge in credential-focused attacks
Last month
#
malware
#
firewalls
#
ransomware
Barracuda reports a global surge in identity-based cyber attacks, with stolen credentials, supply-chain abuse and weaponised PDFs on the rise.
Rapid7 warns exploited software flaws more than double
Last month
#
firewalls
#
ransomware
#
network security
Rapid7 warns exploited high and critical software flaws more than doubled in 2025, as attackers compress disclosure-to-attack windows.
Harness unveils AI Security & coding tools for DevSecOps
Last month
#
devops
#
application security
#
advanced persistent threat protection
Harness has launched AI Security and Secure AI Coding tools to spot and block vulnerabilities in AI-powered apps and AI-generated code.
LeakNet adopts ClickFix lures & Deno fileless loader
Last month
#
storage
#
uc
#
firewalls
Ransomware group LeakNet adopts ClickFix lures and a Deno-based fileless loader to scale attacks and evade traditional endpoint defences.
Okta helps disrupt ShieldGuard crypto-stealing extension
Last month
#
mfa
#
crypto
#
phishing
Okta and partners pull rogue ShieldGuard Chrome extension that stole crypto wallet data and bypassed browser defences via custom code.
Saving the weekend: How SonicWall's SonicSentry SOC stopped a Saturday night cyberattack
Last month
#
firewalls
#
data protection
#
network security
SonicWall's SonicSentry SOC cut short a Saturday night cyberattack, spotting rogue ScreenConnect activity and isolating a compromised PC.
Australia warned over AI-fuelled surge in cyberwarfare
Last month
#
ransomware
#
digital transformation
#
advanced persistent threat protection
Australia faces AI-driven cyberwarfare “boiling point” as attacks surge, ransomware payouts soar and security remains dangerously reactive.
HPE report warns cyberattacks now run like big business
Last month
#
malware
#
firewalls
#
vpns
HPE warns cybercriminals now run attacks like global enterprises, using repeatable workflows, automation and AI to outpace defences.
SentinelOne names Jason Duerden ANZ area vice president
Last month
#
firewalls
#
endpoint protection
#
data analytics
SentinelOne appoints Jason Duerden ANZ area vice president to drive cyber growth in government, critical infrastructure and AI security.
AI agents drive surge in cyber threats & extortion
Last month
#
malware
#
data protection
#
ransomware
AI agents are fuelling a new wave of cyber risk, as criminals weaponise automation to speed up ransomware and sharpen extortion tactics.
AI-fuelled DDoS attacks surge past eight million globally
Last month
#
firewalls
#
ddos
#
network security
AI-driven botnets fuel eight million DDoS attacks in late 2025, as multi-vector assaults hit 30 Tbps and strain global critical services.
Cloud identity compromise now drives most cyber attacks
Last month
#
malware
#
uc
#
firewalls
Cloud identity compromise now drives over 80% of cyber incidents, as attackers increasingly abuse trusted accounts and workplace tools.
Fake Claude AI ads spread malware to target developers
Last month
#
cloud security
#
phishing
#
application security
Fake Claude AI search ads are spreading info-stealing malware, hijacking developer credentials and cloud access via spoofed download sites.
Conflict sparks surge in Middle East cyber espionage
Last month
#
phishing
#
email security
#
cybersecurity
New research links Iran conflict to a swift surge in tightly targeted cyber espionage across Middle Eastern governments and embassies.