Threat actors stories
Account takeovers are becoming harder to stop as attackers use real-time code theft and fake login pages to bypass Microsoft 365 MFA.
Attackers can now probe Entra ID accounts and passwords at scale without a real app, leaving defenders with little sign-in telemetry.
Hackers are exploiting vulnerabilities in hours or minutes, leaving many organisations compromised before defenders spot the breach.
Public agencies risk ransomware within seconds as attackers exploit identities, cloud tools and virtualisation layers, Google warns.
Legacy systems and slow patching are leaving banks exposed, with financial services hit by more than double the average cyberattacks per device.
Users who miss the deadline will lose access to OpenAI's most advanced cyber models, as the firm tightens defences against phishing.
Attackers are using agentic tools to compress breaches into days, exposing developers and cloud users to faster, harder-to-stop intrusions.
Breaches are hitting lenders harder as AI adoption speeds up, with 98 per cent of affected firms saying the impact was material.
Security teams now see autonomous AI as a bigger internal danger, even as most say it is boosting productivity, a survey found.
The real risk is growing backlogs and patching delays, as AI speeds up exploit development faster than security teams can respond.
Security teams are being pushed to prioritise more than ever, as vulnerabilities now make up 42.6% of critical exposures, Check Point says.
Hidden tracking markers and a US standoff over a vulnerability-finding model are fuelling fears that AI now carries cyber and national security risks.
Rising Mac adoption has left many security teams short of Apple-specific expertise, prompting Jamf to add dedicated threat hunting and investigations.
Only a small share of alerts proved urgent, but critical vulnerability exposures more than doubled as phishing also surged in the report.
Millions of consumer devices were pulled into a botnet used for hacking and espionage, prompting Google to disable apps and accounts.
Large firms are using security consulting to cut risk and costs, with IDC saying Mandiant customers gained USD $4.3 million a year on average.
Boards are being pushed to rethink data platforms and cyber controls as AI adoption exposes Australian firms to faster attacks and stricter governance demands.
As AI spreads through core business functions, executives warn weak oversight could expose firms to deepfakes, fraud and costly incidents.
Enterprises can now vet open-source dependencies before build time, as the catalogue adds independent malware and vulnerability checks for Python and Java.
Quantum theft could expose sensitive records years from now, turning today's encrypted files into a board-level liability for Kiwi firms.