Threat actors stories - Page 5
Panera breach exposes 14m in wave of SaaS extortion attacks
Tue, 3rd Feb 2026
#
crm
#
data protection
#
ransomware
Panera data breach exposes details of 14 million customers, spotlighting a surge in SaaS-focused extortion and identity-driven cyber attacks.
NCC warns of surge in ransomware & insider threats
Fri, 30th Jan 2026
#
ransomware
#
endpoint protection
#
pam
NCC flags fourth straight monthly rise in ransomware attacks and growing efforts by major gangs to recruit insiders and cyber staff.
AI-fuelled cyber attacks surge 70%, Check Point warns
Fri, 30th Jan 2026
#
saas
#
firewalls
#
data protection
AI-driven hacking has pushed weekly cyber attacks up 70% since 2023, with Check Point warning campaigns are faster, broader and harder to stop.
Fewer ransomware gangs, but more victims in late 2025
Thu, 29th Jan 2026
#
ransomware
#
digital transformation
#
advanced persistent threat protection
Ransomware gangs shrank in number but hit more victims in late 2025, with leak-site postings soaring despite fewer active groups.
Okta warns of real-time vishing kits defeating MFA
Mon, 26th Jan 2026
#
mfa
#
crypto
#
physical security
Okta warns new real-time vishing kits can hijack browser sessions during calls, tricking users into defeating non‑phishing‑resistant MFA.
UK bill accelerates shift to offensive cyber security
Sat, 24th Jan 2026
#
firewalls
#
endpoint protection
#
devops
New UK cyber bill pushes critical sectors towards continuous offensive security testing as state-backed and criminal threats intensify.
Cyderes names Lana Knop Chief Product Officer for AI push
Sat, 24th Jan 2026
#
saas
#
siem
#
digital transformation
Cyderes appoints Lana Knop as Chief Product Officer to steer post‑Lucidum product strategy and drive a new wave of AI‑powered security services.
Retail & wholesale hit by exposed shared credentials
Fri, 23rd Jan 2026
#
ransomware
#
supply chain
#
risk & compliance
Over 70% of major retailers and nearly 60% of wholesalers have exposed credentials, leaving shared supply chains ripe for attack.
Misconfigured cloud training labs open paths to attacks
Fri, 23rd Jan 2026
#
firewalls
#
hyperscale
#
cloud security
Misconfigured cloud training labs on AWS, Google Cloud and Azure expose major firms to live attacks via overly permissive access roles.
KYND: big firms leave critical cyber flaws unpatched
Thu, 22nd Jan 2026
#
malware
#
application security
#
cybersecurity
Major firms are leaving known, actively exploited cyber flaws unpatched for six months or more, sharply heightening breach risks.
Cloudflare: outdated apps stifle APAC AI investment gains
Mon, 19th Jan 2026
#
firewalls
#
digital transformation
#
network security
Cloudflare warns outdated apps across APAC are choking AI gains, as modernised firms see triple the returns on their AI investments.
Microsoft tops global phishing brand rankings again
Fri, 16th Jan 2026
#
gaming
#
mfa
#
cloud security
Microsoft again tops global phishing brand list as attackers increasingly mimic big tech services to steal cloud and consumer credentials.
Phishing-as-a-service kits drive surge in 2025 scams
Thu, 15th Jan 2026
#
firewalls
#
network security
#
mfa
Phishing-as-a-service kits doubled in 2025, now powering 90% of attacks as cyber gangs race to outsmart multifactor checks and filters.
Kyowon, Instagram cases expose APAC identity flaws
Wed, 14th Jan 2026
#
pam
#
mfa
#
phishing
Kyowon outage and an Instagram bug expose entrenched identity security gaps across APAC, from credential hygiene to privileged access.
Microsoft patches zero-day, kills legacy Windows drivers
Wed, 14th Jan 2026
#
mdm
#
risk & compliance
#
cybersecurity
Microsoft's first 2026 Patch Tuesday fixes an exploited DWM zero-day, strips decades-old modem drivers and tackles Secure Boot risks.
HP warns of surge in polished fake updates & malware
Fri, 9th Jan 2026
#
malware
#
virtualisation
#
mfa
HP reports a surge in convincing fake software updates and staged prompts that trick users into installing stealthy, rapidly evolving malware.
Proofpoint warns of surge in Microsoft device code phishing
Thu, 8th Jan 2026
#
edutech
#
mfa
#
cloud security
Proofpoint flags a sharp rise in Microsoft 365 account takeovers via device code phishing, hitting firms from finance to government.
Identity security to become core cyber focus by 2026
Fri, 2nd Jan 2026
#
data protection
#
hybrid cloud
#
digital transformation
Identity security will become core infrastructure by 2026 as AI‑driven attacks, deepfakes and state hackers overwhelm old perimeter defences.
New ransomware methods emerge: ClickFix & group alliances
Mon, 29th Dec 2025
#
malware
#
ransomware
#
iot security
Ransomware attacks dipped in November, but ClickFix techniques and alliances between groups like Qilin and CL0P drove fresh risks.
SaaS attacks surge as boards turn to AI for defence
Thu, 25th Dec 2025
#
saas
#
crm
#
firewalls
Cyber attacks on SaaS platforms are soaring, pushing boards to make AI‑driven security a core strategy as misconfigurations fuel mass breaches.