Extortion stories
Business and public sector organisations faced 2,270 attacks a week in June, as ransomware rose 33% and GenAI use exposed sensitive data.
Consumers on hospitality and eCommerce sites are at risk of having passwords and payment details stolen through fake webpages run by the platform.
Almost half of ransomware victims discovered breaches only after data theft, underscoring how attackers are evading detection for weeks.
Existing phishing and fraud tactics are becoming faster, cheaper and harder to detect, raising the risk for large organisations, ReliaQuest said.
Victims risk losing the newest and most active data first as a Go-based encryptor targets recently modified files before older ones.
Trusted third-party access has let attackers quietly pull large volumes of Salesforce records from enterprise systems via a Klue integration.
BlueVoyant says a ClickFix malware campaign using fake browser updates is linked to the Rapid Brigantine ransomware ecosystem.
Access to AI research and software is drawing state-backed and criminal attacks, with technology firms now the world's most targeted sector.
Stolen patient records are now being traded alongside ransomware access, deepening risks for hospitals, suppliers and insurers across the sector.
Losses from North Korea-linked digital asset theft jumped 51% in 2025, exposing banks and fintech firms to more identity-based intrusions.
The findings show many firms still leave internet-facing databases and admin tools open, giving attackers easy routes before flaws are even published.
Shared UK crime data has helped Google disable nearly 50,000 fraudulent accounts and expose more than 5,000 fake bank websites.
Leak-site noise is making it harder for firms to tell real breaches from extortion theatre, as active sites hit 91 in the first quarter of 2026.
Senior staff are increasingly in the crosshairs as suspected former Black Basta affiliates use Teams impersonation to seize remote access.
Each incident can halt site operations for 24 days on average as attackers exploit the sector's growing use of connected digital tools.
Exposure of operational technology is leaving industrial operators most vulnerable, with attacks able to halt production and disrupt essential services.
Ransomware is hitting Australian large businesses harder than global peers, with most victims still paying attackers despite backup defences.
Ransomware pressure on Canadian firms is intensifying as AI speeds attacks, with 374 organisations extorted and losses mounting.
Insurers say the threat could trigger business interruption, regulatory scrutiny and client claims, as 65% of firms rank cyber-attacks first.
The United States and X dominate deepfake spread, with a new report linking 46.9% of cases to the US and most incidents to social media.