Business Email Compromise stories
Attackers are increasingly using genuine Microsoft pages and browser tricks to steal session tokens, passwords and spread malware, Barracuda says.
Criminals are using AI to scale phishing and hunt flaws faster, forcing firms to harden defences as alert volumes and risks rise.
Half of organisations in Australia and New Zealand say AI use is ungoverned, heightening fears of deepfake scams and prompt-injection attacks.
Existing phishing and fraud tactics are becoming faster, cheaper and harder to detect, raising the risk for large organisations, ReliaQuest said.
AI-driven phishing is forcing buyers to favour platforms that cut false positives and blend email defence with user training, Frost & Sullivan said.
Fraudsters are using AI to forge invoices and supplier messages, prompting finance leaders to warn that traditional AP controls are no longer enough.
A single phishing email can now compromise identities, bypass multifactor authentication and hit endpoints within five minutes, Barracuda said.
BlueVoyant says a ClickFix malware campaign using fake browser updates is linked to the Rapid Brigantine ransomware ecosystem.
Thousands of corporate devices may be exposed because many remain unpatched, unseen or missing endpoint protection, Arctic Wolf found.
Phishing in workplace chat is prompting firms to harden Microsoft Teams as attackers increasingly exploit trusted internal messaging tools.
Attackers are using fake World Cup sites and messaging apps to steal credentials, with some scams now aimed at event suppliers and staff.
Attackers are using generative AI to flood inboxes, pushing phishing to 36.5% of security teams' hours and USD $51,948 per analyst yearly.
Australian businesses face renewed ransomware pressure as INC expands quickly after LockBit and BlackCat were disrupted, researchers say.
Industry experts warn that reimbursement is masking the scale of scams, as APP losses climbed 19% to GBP £576.4 million last year.
Phishing is becoming harder to spot as attackers use encryption and AI-generated sites to target organisations more effectively.
Rising cyber risk and downtime are pushing Australian SMBs to see outsourced support as a safeguard, not just a cost saver.
Half of Australian businesses suffered a cyber incident last year, with QBE saying 26% involved AI and many hit by supplier-linked attacks.
Job seekers are being lured into fake FIFA hiring pages that harvest credentials and could expose work accounts to wider corporate breaches.
Phone-based fraud is forcing employers to train staff more aggressively as vishing losses rise and call scams spread across Australia.
Targeted email scams are pushing payment redirection fraud losses higher as Australian firms lose more than AUD $166.8 million.