Threat intelligence stories
Kernel in the crosshairs: The BlackSanta threat campaign targeting recruitment workflows
Today
#
storage
#
phishing
#
hcm
A stealthy BlackSanta malware spree is hijacking HR recruitment workflows, killing endpoint defence tools and exfiltrating sensitive data.
Why the next endpoint and SASE disruption will not come from a security vendor
Yesterday
#
firewalls
#
digital transformation
#
network security
AI-native agents could quietly upend endpoint and SASE, eroding incumbents' telemetry moats as control shifts to the AI interaction layer.
Tycoon 2FA phishing service disrupted in major sting
Last week
#
ransomware
#
mfa
#
crypto
Police and tech firms have dismantled Tycoon 2FA, a phishing service used to bypass MFA and hijack cloud accounts at industrial scale.
ShinyHunters claims Woflow breach in supply chain hack
Last week
#
data protection
#
ransomware
#
mfa
ShinyHunters claims it hacked merchant data firm Woflow, raising supply chain fears for major brands despite no confirmed breach yet.
Cato unveils Dynamic Prevention engine for SASE security
Last week
#
firewalls
#
digital transformation
#
hyperscale
Cato launches Dynamic Prevention, a SASE-native engine that auto-detects multi-stage attacks by correlating months of security telemetry.
Agentic AI boosts elite cyber teams but hinders rookies
Last week
#
devops
#
apm
#
risk & compliance
Agentic AI massively accelerates elite cyber teams but can slow inexperienced hackers, Hack The Box's large-scale benchmark reveals.
Ransomware attacks surge 50% as industrial firms hit hardest
Last week
#
malware
#
data protection
#
ransomware
Global ransomware attacks jump 50% to 7,874 in 2025, with industrial firms bearing the brunt as criminal groups reshuffle their tactics.
JFrog flags 13 critical CI/CD flaws in GitHub workflows
Last week
#
siem
#
fintech
#
application security
JFrog warns 13 GitHub CI/CD workflow flaws, mostly critical, could let attackers hijack pipelines and steal secrets at scale.
Microsoft & Europol disrupt global Tycoon 2FA scam
Last week
#
ransomware
#
mfa
#
crypto
Microsoft and Europol have seized over 300 domains to disrupt Tycoon 2FA, a vast phishing-for-hire service bypassing MFA worldwide.
Bybit says 2025 security drive saved USD $300m from scams
Last week
#
crypto
#
fintech
#
phishing
Bybit says its 2025 Dynamic Risk-Based Protection System stopped scams from draining over USD $300m in suspicious crypto withdrawals.
IRONSCALES adds AI agents to counter next‑gen phishing
Last week
#
uc
#
data protection
#
cloud security
IRONSCALES' Winter 2026 Release debuts three AI agents, outbound encryption and Teams deepfake defences to counter next‑gen phishing.
MSPs warned as cyber criminals weaponise trusted access
Last week
#
firewalls
#
dr
#
ransomware
Cyber criminals are hijacking MSP trust relationships, abusing valid credentials and VPNs as AI turbocharges phishing and ransomware.
AI-driven cyberattacks surge in Asia-Pacific, IBM warns
Last week
#
saas
#
malware
#
ransomware
AI-driven cyberattacks are surging across Asia-Pacific, with IBM warning basic security gaps now let attackers move from scan to impact faster.
LevelBlue & Tenable launch exposure service for MSPs
Last week
#
digital transformation
#
cloud security
#
iot security
LevelBlue and Tenable have teamed up to launch a tiered exposure management service giving MSPs continuous, risk-based visibility.
Breaking in without a blueprint: Lessons learned from my nontraditional path to cybersecurity
Last week
#
ransomware
#
cybersecurity
#
threat intelligence
From door-to-door sales to tracking ransomware, one woman proves cybersecurity careers can thrive far from the traditional path.
Tycoon 2FA phishing service disrupted in EU crackdown
Last week
#
ransomware
#
manufacturing
#
mfa
European authorities and tech firms have disrupted Tycoon 2FA, a major phishing service used to bypass MFA and hijack cloud accounts.
Check Point unveils Secure AI Advisory governance service
Last week
#
firewalls
#
data protection
#
hybrid cloud
Check Point launches Secure AI Advisory to tie AI governance and regulatory readiness directly into enterprise security operations.
Tech leaders call for real action on women in cyber
Last week
#
storage
#
digital transformation
#
soc
Tech and cyber chiefs urge firms to turn IWD pledges into concrete steps to dismantle barriers and advance women into senior roles.
Why cybersecurity needs women from non-tech careers
Last week
#
ransomware
#
devops
#
advanced persistent threat protection
Cybersecurity is missing vital human insight; drawing in women and non‑STEM talent could close both the threat and perspective gaps.
HP warns of AI-fuelled 'flat-pack' cyberattacks surge
Last week
#
malware
#
uc
#
phishing
HP reports a surge in AI-powered “flat-pack” cyberattacks as criminals trade sophistication for speed, low cost and mass customisation.