Threat actors stories
In Singapore, 68% of ransomware-hit organisations said AI made attacks more effective, as phishing and impersonation drove most incidents.
Patch backlogs are leaving organisations exposed, with 85 high-impact flaws flagged across Australia and New Zealand, up 44% in July.
Stolen credentials and AI-generated phishing are accelerating attacks, as Flashpoint tracked 22 million illicit discussions and 7.4 million infected hosts.
More groups are now driving attacks, leaving victim numbers flat even as ransomware operations reached a record 93 active crews in the quarter.
AI-driven attacks are shrinking response times to minutes, forcing APAC firms to adopt continuous identity controls and zero trust.
Industrial firms face growing disruption as ransomware incidents rose 12% to 1,140 in the second quarter, Dragos said.
Google says the campaign is shifting towards financial and legal firms, with rebranded extortion sites still stealing cloud logins and tokens.
Hong Kong saw a record 15,877 cyber incidents in 2025 as AI speeds attacks and shortens the window to exploit software flaws.
Government and enterprise users will get guidance on recovering faster from AI failures as the Cloud Security Alliance builds a vendor-neutral resilience hub.
Defenders now face a 48-hour window after proof-of-concept code appears, as attackers use AI to speed exploits and hit software chains.
Undisclosed attacks now dominate ransomware activity, with 2,027 incidents logged in the quarter and data theft reported in 97% of disclosed cases.
Organisations now have just 48 hours to patch most flaws, as AI helps attackers weaponise vulnerabilities far faster than before.
Cloud, AI and hybrid work are pushing system administrators into frontline risk management as phishing threats become harder to spot.
Proofpoint says underground forums are advertising tools that use indirect prompt injection across emails, PDFs, calendar invites and web pages.
Security teams could cut incident response from hours to minutes as Team Cymru folds telemetry, investigation and AI access into one platform.
UK CISOs and senior cyber executives will examine resilience, third-party risk and practical AI use at a London cyber security forum.
The update aims to cut remediation costs and stop teams wasting time by re-analysing vulnerabilities without enough business context.
The ranking bolsters 1Kosmos as firms face rising fraud from stolen credentials, synthetic identities and AI-driven impersonation.
Supply chain attacks are pushing cyber risk upstream, putting managed service providers under pressure from customers and regulators over shared access.
Security teams can now pull threat intelligence into existing AI workflows, reducing manual analysis across fragmented data and incident investigations.