Threat intelligence stories
Phishing emails can still slip into Microsoft 365 mailboxes when attackers leave the SMTP envelope sender blank, ReliaQuest has found.
UK businesses could get cheaper cover and stronger defences as Acrisure and ESET package cyber insurance with security services.
The appointment gives the cybersecurity firm a buyer-side voice on strategy as it targets more UK enterprise and mid-market customers.
Growing demand for managed detection and response is driving the company's UK expansion as boards face tougher resilience expectations.
Autonomous systems are now creating fresh avenues for code theft, remote execution and runaway cloud spending, Mandiant says.
Security teams can now compare validated exposure findings with endpoint and cloud telemetry after Horizon3 tied NodeZero into CrowdStrike's SIEM.
Ageing technology is leaving critical services exposed as AI lets attackers exploit known weaknesses at machine speed, experts say.
Criminal access to thousands of Microsoft accounts was cut off after the companies shared threat data through the Global Signal Exchange.
The stealer's use of typosquatted npm packages has raised fears that bug bounty channels are being abused to monetise stolen developer data.
Security teams in Australia and New Zealand face hidden fraud and malware risks from gambling sites that can mask illegal deposits and scam withdrawals.
Downstream AI alerts in Australia and New Zealand are rising as agents and MCP links create fresh routes for sensitive data leakage.
The ranking bolsters its pitch that enterprises need centralised controls as AI adoption widens attack surfaces across cloud and on-premise networks.
The ranking may bolster Check Point's push to sell AI-era protections into existing firewall estates as firms scramble for visibility over tool usage.
Security teams may miss the attack because it leaves no persistent phishing site, instead building fake Microsoft login pages inside the browser.
Businesses have almost no time to patch flaws now, as ESET says the median gap between disclosure and exploitation fell to zero days in 2026.
Australian firms could get a clearer view of AI-driven attack paths as ThreatCanary rolls out a platform blending asset discovery, API checks and offensive testing.
New Zealand users risk fake login pages and scam sites after ChatGPT search results were found pointing to unsafe links and downloads.
APIs are now a major attack surface, making shared context between developers and SecOps vital to spot real threats and avoid false alarms.
Banking groups are increasingly paying for rapid removal of phishing and impersonation scams as AI-driven attacks spread across multiple channels.
AI tools will cut incident triage from hours to seconds for Littlefish clients, helping analysts prioritise real threats as alert volumes rise.