Threat actors stories
The ranking highlights growing demand for intelligence that can guide detection and response inside security tools, rather than stand-alone reports.
Broader attacker activity is increasingly moving beyond stolen credentials, even as identity still accounted for 58.7% of incidents in Q1 2026.
Threats are spreading beyond inboxes as phishing shifts into Teams, calendars and other collaboration tools, raising the risk for hybrid workers.
Ransomware activity stayed elevated in March, with NCC Group saying Qilin alone was linked to 136 attacks and drove a 43% monthly rise.
Security teams can now validate scanner findings in minutes as Intruder rolls out AI agents to cut false positives and speed remediation.
Many firms cannot see where their AI agents are, leaving identity, policy and supply-chain risks to grow as deployments scale.
Businesses face rising exposure as AI is used to sharpen phishing, while insecure in-house tools and weak controls widen attack surfaces.
Leak-site noise is making it harder for firms to tell real breaches from extortion theatre, as active sites hit 91 in the first quarter of 2026.
Attackers could soon exploit software flaws faster and at scale, as security firms say AI is narrowing defenders' response time.
Illicit discussions of AI tools surged 1,500% in late 2025 as attackers used them to speed up vulnerability hunting and exploitation.
As cyber tools become more powerful, Anthropic is limiting access while OpenAI is widening it, raising fresh fears over misuse.
Businesses facing faster AI-driven cyberattacks will get new Google Cloud tools to spot threats, block fraud and secure agents across workloads.
Most respondents still trust consumer chat apps for sensitive work, despite widespread confusion over what encryption does not protect.
Shorter attack windows are pushing cloud teams towards automated defence, as Sysdig says AI-driven threats now outpace manual response.
Defenders face faster, harder-to-stop attacks as SANS says AI is now built into phishing, malware and reconnaissance at scale.
More firms are turning identity security budgets to attack path tools as hybrid and AI-heavy environments expose gaps in remediation.
Companies seeking Cyber Essentials certification must now use multi-factor authentication and managed devices, as remote working rules tighten.
Security chiefs say unauthorised access to Anthropic AI's Mythos model shows generative tools could speed phishing, scanning and exploit discovery.
Greater reporting by English councils has pushed logged breaches up 53% in five years, with serious referrals to the ICO also rising.
Hospitals are paying up to avoid costly downtime, as criminals exploit known flaws and buy access for as little as USD $2,000.