Cybercrime stories
Any use of network connected electronic devices such as computers or smartphones for criminal activity
is classified as cybercrime. With a long history starting with the misuse of telephone systems (such as
‘phreaking’), cybercrime today includes the creation and distribution of viruses, ransomware, keyloggers
and other malware, the download and use of malware produced by others, social engineering tactics
such as phishing or (physical) impersonation, the theft and use of credentials for accessing computer
systems or networks, and the theft of privileged data. Cybercrime is a broad and dynamic field, with
cybercriminals constantly adapting their methods in pursuit of usually financial goals, but also
occasionally seeking to disrupt, embarrass or shame their targets.
Bitdefender unmasks global Meta investment scam ads
Yesterday
#
phishing
#
email security
#
cybersecurity
Bitdefender exposes 26,000 Meta ads in 25 countries pushing fake investment schemes, impersonating banks, media and public figures.
Netskope & Imprivata link zero trust for clinicians
2 days ago
#
data protection
#
ransomware
#
cloud security
Netskope and Imprivata link zero trust policies to healthcare shared workstations, promising tighter PHI protection without slowing clinicians.
Google warns of surge in enterprise zero-day attacks
Last week
#
virtualisation
#
firewalls
#
vpns
Google warns attackers are shifting from browsers to corporate systems, as tracked zero-day exploits climb and enterprise edge devices surge.
ShinyHunters claims Woflow breach in supply chain hack
Last week
#
data protection
#
ransomware
#
mfa
ShinyHunters claims it hacked merchant data firm Woflow, raising supply chain fears for major brands despite no confirmed breach yet.
Meta removes nearly 6m scam ads after DSA reports
Last week
#
martech
#
facebook
#
instagram
Meta took down nearly 6m scam ads in 2025 after alerts from Lithuanian watchdog Debunk.org under the EU's Digital Services Act system.
Why women can be leaders when it comes to AI
Last week
#
data protection
#
ransomware
#
digital transformation
Women in cybersecurity, long trained to question and validate, are uniquely placed to lead the era of risky, fast‑moving AI tools.
Ransomware attacks surge 50% as industrial firms hit hardest
Last week
#
malware
#
data protection
#
ransomware
Global ransomware attacks jump 50% to 7,874 in 2025, with industrial firms bearing the brunt as criminal groups reshuffle their tactics.
Israel-Iran conflict exploited in fresh email scam wave
Last week
#
phishing
#
physical security
#
email security
Scammers hijack Israel-Iran war headlines for classic advance-fee email cons, security researchers warn, urging users not to respond.
Microsoft & Europol disrupt global Tycoon 2FA scam
Last week
#
ransomware
#
mfa
#
crypto
Microsoft and Europol have seized over 300 domains to disrupt Tycoon 2FA, a vast phishing-for-hire service bypassing MFA worldwide.
Tycoon 2FA phishing service disrupted in EU crackdown
Last week
#
ransomware
#
manufacturing
#
mfa
European authorities and tech firms have disrupted Tycoon 2FA, a major phishing service used to bypass MFA and hijack cloud accounts.
Cloudflare flags AI-fuelled identity & SaaS attacks
Last week
#
saas
#
firewalls
#
ddos
Cloudflare warns AI-driven identity fraud and SaaS abuse are reshaping cybercrime, as global costs hit USD $10.5 trillion a year.
Stop framing deepfake harassment of women as a social problem - It's a cybersecurity problem
Last week
#
ransomware
#
genai
#
ai
Non-consensual deepfake abuse of women is not just online harassment but cybercrime, demanding full threat intelligence and security action.
Cyber extortion tops 2025 attacks as AI risks escalate
Last week
#
data protection
#
ransomware
#
mfa
Cyber extortion has overtaken email scams as the top 2025 attack, as AI-powered threats grow and financial firms become prime targets.
Generative AI fuels alarming surge in intimate image abuse
Last week
#
data protection
#
encryption
#
open source
Generative AI is fuelling a sharp rise in intimate image abuse, outpacing weak platform responses and patchy global legal protections.
Phishing gangs weaponise .arpa DNS to evade defences
Last month
#
firewalls
#
network infrastructure
#
network security
Phishing gangs abuse .arpa DNS and IPv6 tunnels to hide brand-impersonation scams in core internet plumbing that most defences ignore.
ShinyHunters pivots to subdomain phishing & vishing
Last month
#
saas
#
mfa
#
cloud security
ShinyHunters shifts to subdomain-brand phishing and vishing on mobiles, bypassing domain checks to hijack SSO logins and SaaS sessions.
AI-driven cyber attacks now breach networks in minutes
Last month
#
malware
#
firewalls
#
ransomware
AI-fuelled hackers can now spread across corporate networks in as little as four minutes, outpacing human defenders by hours.
CIOs brace for AI-led cyber attacks but feel unready
Last month
#
digital transformation
#
cloud security
#
phishing
Most CIOs expect AI-driven cyber attacks within a year, but only a third feel prepared, exposing a widening gap in cyber resilience.
GenAI misuse & ransomware drive surge in cyber attacks
Last month
#
malware
#
edutech
#
uc
Global cyber attacks hit 2,090 a week in January as ransomware surges and risky GenAI use exposes fresh data-leak and intrusion paths.
Ecommpay issues free guide to combat rising eCommerce fraud
Last month
#
mfa
#
fintech
#
cx
Ecommpay launches a free fraud guide for online retailers as UK payment fraud hits GBP £1.17 billion and AI-driven scams rapidly escalate.