Threat actors stories
Team Cymru launches Total Insights Feeds for threat data
Today
#
malware
#
firewalls
#
siem
Team Cymru unveils Total Insights Feeds, a single-stream threat intelligence framework blending internet-wide scoring, context and automated risk tagging.
Ransomware activity stays high as new groups surge
Yesterday
#
ransomware
#
advanced persistent threat protection
#
supply chain
GuidePoint says ransomware attacks stayed elevated in Q1 as The Gentlemen surged, construction became a top target and extortion-only tactics spread.
Former Black Basta affiliates target executives in Teams
2 days ago
#
uc
#
mfa
#
phishing
ReliaQuest says suspected former Black Basta operators are bombarding staff with emails and posing as IT support in Microsoft Teams to reach senior executives.
Proofpoint flags mailbox rule abuse in Microsoft 365
2 days ago
#
edutech
#
mfa
#
cloud security
Proofpoint says mailbox rule abuse is becoming a routine Microsoft 365 takeover tactic, helping attackers hide alerts, hijack threads and drive fraud.
UK telecom servers expose security details, study finds
3 days ago
#
vpns
#
ransomware
#
devops
Study finds UK telecom firms exposing security-critical server data as Europe-wide analysis flags widespread certificate failures and critical asset weaknesses.
Synack launches Glasswing readiness test for attack gaps
4 days ago
#
firewalls
#
devops
#
digital transformation
Synack launches AI-driven assessment to expose overlooked attack surface gaps as offensive tools speed up vulnerability discovery.
Booking.com warns some customers of possible data exposure
5 days ago
#
data protection
#
endpoint protection
#
mfa
Booking.com tells some customers to watch for phishing after suspicious activity exposed reservation details, contact data and messages linked to bookings.
AI bots overwhelm identity controls in Australia & NZ
5 days ago
#
data protection
#
devops
#
hybrid cloud
AI-driven bots and machine accounts are exposing long-running identity security gaps across Australian and New Zealand organisations, experts warn.
TCCA urges standards push on critical broadband security
Last week
#
uc
#
firewalls
#
network security
TCCA urges industry to align on international standards as 4G and 5G broadband systems expand the cyber risk for mission critical communications.
China-aligned TA416 resumes spying on EU & Mideast
Last week
#
phishing
#
email security
#
cybersecurity
China-linked TA416 returns to spying on European diplomats and later expands attacks to Middle Eastern government targets after Iran conflict.
Firms warned on ransomware amid backup & AI sprawl
This month
#
saas
#
firewalls
#
data protection
Experts warn firms must improve visibility and backup resilience as automated ransomware campaigns and hidden SaaS and AI assets widen exposure.
Web attacks in EMEA hit two-year high, Akamai warns
Last month
#
firewalls
#
ddos
#
digital transformation
Akamai says attack volumes in Europe, the Middle East and Africa climbed 36% year on year as APIs and automated DDoS campaigns fuel a sharp surge.
World Backup Day warnings over ransomware resilience gaps
Last month
#
data protection
#
dr
#
ransomware
Cybersecurity experts say many firms are still relying on fragmented backup tools and untested recovery plans as ransomware attacks and cloud complexity surge.
Gcore sees DDoS attacks surge to 1.3 million in Q4
Last month
#
gaming
#
ddos
#
network infrastructure
Gcore warns DDoS attacks hit 1.3 million in late 2025 as brief, high-volume floods and longer app assaults expose more sectors to risk.
Ransomware attacks fall as CL0P & The Gentlemen surge
Last month
#
malware
#
firewalls
#
ddos
Qilin keeps top spot as ransomware incidents drop 8% in February, while CL0P and The Gentlemen post sharp gains and new AI risks emerge.
CrowdStrike flags faster AI-driven cyber attacks worldwide
Last month
#
ransomware
#
cloud security
#
phishing
AI-fuelled cyber attacks are spreading faster worldwide, CrowdStrike warns, as breakout times plummet and criminals weaponise mainstream tools.
HPE Threat Labs spot industrialised cybercrime surge
Last month
#
malware
#
firewalls
#
vpns
HPE Threat Labs warns cybercrime now runs like big business, as AI-fuelled, industrial-scale attacks hammer government and finance.
Cybercrooks abuse Keitaro tracker for AI scam campaigns
Last month
#
malware
#
phishing
#
martech
Cybercriminals exploit Keitaro ad tracker to cloak AI trading scams and malware, tying some 15,500 malicious domains into a hidden network.
Keitaro ad tracker tied to more than 15,000 scam domains
Last month
#
malware
#
phishing
#
martech
Keitaro ad tracker abused in 15,500 scam and malware domains, as fraudsters cloak AI-themed investment lures from security watchdogs.
Why a Paranoid Posture promises to revolutionise threat detection and response
Last month
#
firewalls
#
ransomware
#
siem
A paranoid posture and heavy automation promise to transform SOCs, cutting dwell times and exposing stealthy attacks at unprecedented scale.