Threat actors stories
A four-day shutdown at a UK energy site has intensified warnings that ageing infrastructure leaves critical national systems exposed to wider disruption.
Attackers are exploiting AI tools to speed intrusions and drain cloud resources, pushing defenders towards machine-speed security operations.
Criminals are increasingly using AI for ransomware and credential theft, while flaws in test models are exposing production systems and data.
Smaller companies are facing cyber losses almost equal to their resilience spending, as attacks cost an average USD $52,000 a year.
Nearly half of security leaders now rank AI agents above external hackers and malicious insiders, according to Exabeam's survey.
With most operators exposed to basic flaws, the paper warns telecom networks could face the same low-effort intrusions seen in US water systems.
Security teams in Australia and New Zealand face hidden fraud and malware risks from gambling sites that can mask illegal deposits and scam withdrawals.
Defenders now have minutes, not hours, as attackers use agentic AI to automate credential theft, scanning and extortion across live operations.
Patch management teams face a record burden as Microsoft's latest monthly release spans 999 flaws, including two under active attack.
Analysts will save hours of manual research as structured intelligence on threat actors, malware and CVEs is added to Searchlight Threat.
Student records and research systems are coming under intense pressure as education networks log the highest per-device cyber attack rates, SonicWall said.
Victims risked silent compromise as attackers hid SparkRAT inside Cambodian-themed files and disabled security tools with a vulnerable driver.
AI-driven cyber threats are sharpening the talent crunch, as women still account for just 22% of the global workforce.
Enterprises could cut their exposure window as TrendAI's AESIR scored 97% on an independent benchmark against confirmed software flaws.
Proofpoint said the modular trojan can steal data and monitor users, raising risks for finance teams targeted by fake tax notices.
North America and Europe bore most of the 894 July ransomware incidents as NCC Group warned AI tools are accelerating attacks.
The flaws could have let attackers hijack identities and take over domains in environments where Active Directory still runs most enterprise access.
Businesses have almost no time to patch flaws now, as ESET says the median gap between disclosure and exploitation fell to zero days in 2026.
Australian businesses face faster, cheaper attacks as the ASD urges tighter control of privileged access and AI identities.
Banks are being pressed to curb damage from insiders and stolen logins, as regulators demand controls that limit lateral movement.