Patching stories
Nearly three-quarters of medium-sized firms have faced a cyber threat in six months, as AI scams and weak staff training heighten risk.
Businesses have almost no time to patch flaws now, as ESET says the median gap between disclosure and exploitation fell to zero days in 2026.
New Zealand users risk fake login pages and scam sites after ChatGPT search results were found pointing to unsafe links and downloads.
More than 40% of enterprise users have installed AI browser tools, leaving security teams struggling to spot permission changes and rogue agents.
Industrial control systems could be patched faster as Rockwell tests controlled access to Claude Mythos 5 to spot flaws before attackers exploit them.
Smaller operators are carrying much of the danger as a new study finds 66% of assessed US telecoms fall into an elevated risk band.
Criminals are increasingly using AI for ransomware and credential theft, while flaws in test models are exposing production systems and data.
Ageing technology is leaving critical services exposed as AI lets attackers exploit known weaknesses at machine speed, experts say.
With most operators exposed to basic flaws, the paper warns telecom networks could face the same low-effort intrusions seen in US water systems.
User behaviour remains IT's biggest vulnerability, with 65% of professionals saying password sharing is the worst security lapse.
Personal details for more than 1 million students and families in Australia and New Zealand were exposed after attackers exploited a flaw in an internal tool.
Buyers of connected security kit face tougher supplier checks as the EU Cyber Resilience Act pushes lifecycle support and disclosure higher on the agenda.
The new layer aims to help network teams prioritise vulnerabilities and automate routine fixes, while keeping human approval in charge.
Patch management teams face a record burden as Microsoft's latest monthly release spans 999 flaws, including two under active attack.
The FBI says Medusa has now hit more than 500 victims, with hospitals and other critical sectors among those most exposed.
Developers gain a flatter cost base and less infrastructure work as Cloudways enters managed Node.js hosting with Velocity from USD $20 a month.
Its pace of patching open source software is aimed at helping customers cut exposure as exploits emerge faster after vulnerabilities are disclosed.
Fewer blind spots and false alarms are pushing operators to add radar to layered security at mines, ports and utilities.
Only 24% of IT leaders feel highly confident about tackling mainframe vulnerabilities next year, as new AI and quantum risks mount.
Retailers and IT teams are using networked cameras for analytics and automation, but each new device also widens cyber risk.