Threat intelligence stories
Malicious package advisories jumped from 21 in 2023 to 1,576 in 2025, as attackers increasingly target developers before code reaches production.
Boards must now treat cyber security and AI governance as core resilience issues, with Russian-linked threats exposing wider operational risks.
Rising AI workloads are forcing APAC firms to invest more in data centres, fibre and energy, while also reshaping customer service and cyber defence.
Windows fleets could be left blind to malware once attackers gain admin rights, as Bitdefender says bind links can fool endpoint security tools.
Broader coverage in Mexico and Milan aims to cut latency for mobile security checks as fake app traffic grows more sophisticated.
Nearly half of commerce traffic across Akamai's network came from AI bots by late 2025, raising fraud and DDoS risks for retailers.
Attackers can now probe Entra ID accounts and passwords at scale without a real app, leaving defenders with little sign-in telemetry.
AI-enabled attacks are forcing Asian firms to contain breaches faster, as Singapore urges micro-segmentation and tighter lateral movement controls.
Hackers are exploiting vulnerabilities in hours or minutes, leaving many organisations compromised before defenders spot the breach.
Users relying on SMS or voice for sign-ins will be nudged to passkeys as Microsoft phases out weaker multifactor methods in Entra ID.
Security teams are being pressed to prove their defences work in live attacks, as spending scrutiny shifts from tools to real-world response.
Poor governance is leaving many AI agents stuck out of production, while those that run can expose firms to legal and security risks.
Public agencies risk ransomware within seconds as attackers exploit identities, cloud tools and virtualisation layers, Google warns.
F-Secure's Laura Kankaala explains how the Yahoo Boys scam culture has evolved from advance-fee emails into sextortion and romance fraud.
Attackers are using agentic tools to compress breaches into days, exposing developers and cloud users to faster, harder-to-stop intrusions.
Business and public sector organisations faced 2,270 attacks a week in June, as ransomware rose 33% and GenAI use exposed sensitive data.
UK consumers and businesses could benefit as Cifas adds nearly 500 scam signals to a global network aimed at faster takedowns.
Banks are seeing attackers favour stealthy access over ransomware, with a UK-specific exploit hitting nearly half of monitored sensors.
Security teams gain a way to prioritise compromised accounts, with Permiso's new engine scoring human, machine and AI identities on a 0-to-100 scale.
The recognition underscores rising demand for cyber-risk tools that show measurable returns, as buyers demand faster deployment and continuous monitoring.