TechDay New Zealand - Aotearoa's technology news network

Threat intelligence stories

Aditya

Kernel in the crosshairs: The BlackSanta threat campaign targeting recruitment workflows

Today
#
storage
#
phishing
#
hcm
A stealthy BlackSanta malware spree is hijacking HR recruitment workflows, killing endpoint defence tools and exfiltrating sensitive data.
Prasad

Why the next endpoint and SASE disruption will not come from a security vendor

Yesterday
#
firewalls
#
digital transformation
#
network security
AI-native agents could quietly upend endpoint and SASE, eroding incumbents' telemetry moats as control shifts to the AI interaction layer.
Dark binary figure cuffed cloud breach phishing mfa takedown

Tycoon 2FA phishing service disrupted in major sting

Last week
#
ransomware
#
mfa
#
crypto
Police and tech firms have dismantled Tycoon 2FA, a phishing service used to bypass MFA and hijack cloud accounts at industrial scale.
Moody server room supply chain breach glowing red lock icon

ShinyHunters claims Woflow breach in supply chain hack

Last week
#
data protection
#
ransomware
#
mfa
ShinyHunters claims it hacked merchant data firm Woflow, raising supply chain fears for major brands despite no confirmed breach yet.
Massive cloud shield over office and datacenter network security

Cato unveils Dynamic Prevention engine for SASE security

Last week
#
firewalls
#
digital transformation
#
hyperscale
Cato launches Dynamic Prevention, a SASE-native engine that auto-detects multi-stage attacks by correlating months of security telemetry.
Pro vs newbie socs side by side network diagrams cinematic lighting

Agentic AI boosts elite cyber teams but hinders rookies

Last week
#
devops
#
apm
#
risk & compliance
Agentic AI massively accelerates elite cyber teams but can slow inexperienced hackers, Hack The Box's large-scale benchmark reveals.
Japan factory night ransomware attack shadow figure network

Ransomware attacks surge 50% as industrial firms hit hardest

Last week
#
malware
#
data protection
#
ransomware
Global ransomware attacks jump 50% to 7,874 in 2025, with industrial firms bearing the brunt as criminal groups reshuffle their tactics.
Moody engineer cicd pipelines morphing into shadowy hands vaults

JFrog flags 13 critical CI/CD flaws in GitHub workflows

Last week
#
siem
#
fintech
#
application security
JFrog warns 13 GitHub CI/CD workflow flaws, mostly critical, could let attackers hijack pipelines and steal secrets at scale.
Dark cyber fraud desk with shields and law enforcement servers

Microsoft & Europol disrupt global Tycoon 2FA scam

Last week
#
ransomware
#
mfa
#
crypto
Microsoft and Europol have seized over 300 domains to disrupt Tycoon 2FA, a vast phishing-for-hire service bypassing MFA worldwide.
Digital shield protecting crypto coins blocking online scams

Bybit says 2025 security drive saved USD $300m from scams

Last week
#
crypto
#
fintech
#
phishing
Bybit says its 2025 Dynamic Risk-Based Protection System stopped scams from draining over USD $300m in suspicious crypto withdrawals.
Nighttime cybersecurity ops center email alerts ai shield scene

IRONSCALES adds AI agents to counter next‑gen phishing

Last week
#
uc
#
data protection
#
cloud security
IRONSCALES' Winter 2026 Release debuts three AI agents, outbound encryption and Teams deepfake defences to counter next‑gen phishing.
Msp office night glowing server chains masked hackers apac eu

MSPs warned as cyber criminals weaponise trusted access

Last week
#
firewalls
#
dr
#
ransomware
Cyber criminals are hijacking MSP trust relationships, abusing valid credentials and VPNs as AI turbocharges phishing and ransomware.
Ai cyberattack singapore asia pacific glowing red network map

AI-driven cyberattacks surge in Asia-Pacific, IBM warns

Last week
#
saas
#
malware
#
ransomware
AI-driven cyberattacks are surging across Asia-Pacific, with IBM warning basic security gaps now let attackers move from scan to impact faster.
Msp security operations center analysts monitoring threat dashboards

LevelBlue & Tenable launch exposure service for MSPs

Last week
#
digital transformation
#
cloud security
#
iot security
LevelBlue and Tenable have teamed up to launch a tiered exposure management service giving MSPs continuous, risk-based visibility.
Flare tammy 1200x677

Breaking in without a blueprint: Lessons learned from my nontraditional path to cybersecurity

Last week
#
ransomware
#
cybersecurity
#
threat intelligence
From door-to-door sales to tracking ransomware, one woman proves cybersecurity careers can thrive far from the traditional path.
Logos

Tycoon 2FA phishing service disrupted in EU crackdown

Last week
#
ransomware
#
manufacturing
#
mfa
European authorities and tech firms have disrupted Tycoon 2FA, a major phishing service used to bypass MFA and hijack cloud accounts.
Modern soc security ops center ai dashboard worldmap blue tones

Check Point unveils Secure AI Advisory governance service

Last week
#
firewalls
#
data protection
#
hybrid cloud
Check Point launches Secure AI Advisory to tie AI governance and regulatory readiness directly into enterprise security operations.
Australia soc women cybersecurity team collaboration leadership

Tech leaders call for real action on women in cyber

Last week
#
storage
#
digital transformation
#
soc
Tech and cyber chiefs urge firms to turn IWD pledges into concrete steps to dismantle barriers and advance women into senior roles.
Bd jade brown

Why cybersecurity needs women from non-tech careers

Last week
#
ransomware
#
devops
#
advanced persistent threat protection
Cybersecurity is missing vital human insight; drawing in women and non‑STEM talent could close both the threat and perspective gaps.
Office worker ai cyberattack popups warning icons shadowy web

HP warns of AI-fuelled 'flat-pack' cyberattacks surge

Last week
#
malware
#
uc
#
phishing
HP reports a surge in AI-powered “flat-pack” cyberattacks as criminals trade sophistication for speed, low cost and mass customisation.