Threat intelligence stories
Rapid7 warns exploited high and critical software flaws more than doubled in 2025, as attackers compress disclosure-to-attack windows.
Politically charged cyber-physical attacks surge as low-tech intrusions hit industrial control systems linked to Iran- and Russia-backed groups.
Corelight launches Agentic Triage, an AI-driven workflow to speed SOC investigations while exposing every step for transparent review.
Netcraft unveils Preemptive Domain Disruption to knock out attacker domains in their dormant phase before phishing and BEC scams launch.
FIRST to host three cybersecurity conferences in 2026 as it predicts annual CVE disclosures will surpass 50,000 for the first time.
Abnormal AI launches Attune 1.0, a behavioural model that spots AI-crafted cyberattacks by learning normal workplace communication patterns.
Ransomware group LeakNet adopts ClickFix lures and a Deno-based fileless loader to scale attacks and evade traditional endpoint defences.
Okta and partners pull rogue ShieldGuard Chrome extension that stole crypto wallet data and bypassed browser defences via custom code.
Tech Mahindra and Fortinet unveil a unified managed SASE service to simplify hybrid networks, strengthen security and cut operating costs.
SonicWall's SonicSentry SOC cut short a Saturday night cyberattack, spotting rogue ScreenConnect activity and isolating a compromised PC.
HPE warns cybercriminals now run attacks like global enterprises, using repeatable workflows, automation and AI to outpace defences.
Virtual IT Group rolls out 24/7 Zero Trust ZDR to give ANZ mid-market firms enterprise-grade network security without changing MSPs.
VIPRE links its Integrated Email Security with Microsoft Defender, unifying phishing and BEC detections in a single Defender console view.
CISOs now face a dual AI mandate: securing fast‑growing AI systems while deploying AI to transform and harden enterprise defences.
CrowdStrike and Nvidia launch a secure AI agent blueprint and MDR tools, promising faster probes and tighter control over autonomous systems.
AI agents are fuelling a new wave of cyber risk, as criminals weaponise automation to speed up ransomware and sharpen extortion tactics.
Iranian state-aligned hackers are shifting from spying to destructive cyber strikes, putting Western critical infrastructure on high alert.
SonicWall champions 'Secure by Default', promising built-in, automated protection that tames tool sprawl and misconfigurations at scale.
Horizon3.ai opens Iranian cyber threat intel to all NodeZero users as Western organisations brace for state-backed digital retaliation.
Hetzner adopts Nokia Deepfield Defender across European data centres to automate edge DDoS mitigation and safeguard rising AI workloads.