Threat intelligence stories
ShinyHunters claims Woflow breach in supply chain hack
Today
#
data protection
#
ransomware
#
mfa
ShinyHunters claims it hacked merchant data firm Woflow, raising supply chain fears for major brands despite no confirmed breach yet.
Cato unveils Dynamic Prevention engine for SASE security
Yesterday
#
firewalls
#
digital transformation
#
hyperscale
Cato launches Dynamic Prevention, a SASE-native engine that auto-detects multi-stage attacks by correlating months of security telemetry.
Ransomware attacks surge 50% as industrial firms hit hardest
Yesterday
#
malware
#
data protection
#
ransomware
Global ransomware attacks jump 50% to 7,874 in 2025, with industrial firms bearing the brunt as criminal groups reshuffle their tactics.
Agentic AI boosts elite cyber teams but hinders rookies
Yesterday
#
devops
#
risk & compliance
#
security operations
Agentic AI massively accelerates elite cyber teams but can slow inexperienced hackers, Hack The Box's large-scale benchmark reveals.
JFrog flags 13 critical CI/CD flaws in GitHub workflows
Yesterday
#
siem
#
fintech
#
application security
JFrog warns 13 GitHub CI/CD workflow flaws, mostly critical, could let attackers hijack pipelines and steal secrets at scale.
Microsoft & Europol disrupt global Tycoon 2FA scam
Yesterday
#
ransomware
#
mfa
#
phishing
Microsoft and Europol have seized over 300 domains to disrupt Tycoon 2FA, a vast phishing-for-hire service bypassing MFA worldwide.
Bybit says 2025 security drive saved USD $300m from scams
Yesterday
#
crypto
#
fintech
#
phishing
Bybit says its 2025 Dynamic Risk-Based Protection System stopped scams from draining over USD $300m in suspicious crypto withdrawals.
IRONSCALES adds AI agents to counter next‑gen phishing
Yesterday
#
uc
#
data protection
#
cloud security
IRONSCALES' Winter 2026 Release debuts three AI agents, outbound encryption and Teams deepfake defences to counter next‑gen phishing.
MSPs warned as cyber criminals weaponise trusted access
Yesterday
#
firewalls
#
dr
#
ransomware
Cyber criminals are hijacking MSP trust relationships, abusing valid credentials and VPNs as AI turbocharges phishing and ransomware.
LevelBlue & Tenable launch exposure service for MSPs
Yesterday
#
digital transformation
#
cloud security
#
iot security
LevelBlue and Tenable have teamed up to launch a tiered exposure management service giving MSPs continuous, risk-based visibility.
Breaking in without a blueprint: Lessons learned from my nontraditional path to cybersecurity
Yesterday
#
ransomware
#
cybersecurity
#
threat intelligence
From door-to-door sales to tracking ransomware, one woman proves cybersecurity careers can thrive far from the traditional path.
Tycoon 2FA phishing service disrupted in EU crackdown
Yesterday
#
ransomware
#
manufacturing
#
mfa
European authorities and tech firms have disrupted Tycoon 2FA, a major phishing service used to bypass MFA and hijack cloud accounts.
Check Point unveils Secure AI Advisory governance service
Yesterday
#
firewalls
#
data protection
#
hybrid cloud
Check Point launches Secure AI Advisory to tie AI governance and regulatory readiness directly into enterprise security operations.
Why cybersecurity needs women from non-tech careers
3 days ago
#
ransomware
#
devops
#
advanced persistent threat protection
Cybersecurity is missing vital human insight; drawing in women and non‑STEM talent could close both the threat and perspective gaps.
HP warns of AI-fuelled 'flat-pack' cyberattacks surge
3 days ago
#
malware
#
uc
#
phishing
HP reports a surge in AI-powered “flat-pack” cyberattacks as criminals trade sophistication for speed, low cost and mass customisation.
Account Takeover (ATO) fraud: The hidden threat to your business and how to stop it
3 days ago
#
malware
#
data protection
#
surveillance
Silent account takeover fraud is draining billions as criminals hijack real identities; here's how businesses can finally fight back.
LevelBlue unveils flexible funds-based cyber IR retainer
3 days ago
#
ransomware
#
devops
#
apm
LevelBlue launches Resilience Retainer, a flexible funds-based cyber incident response service with rapid SLAs and rollover security spend.
Cloudflare flags AI-fuelled identity & SaaS attacks
3 days ago
#
saas
#
firewalls
#
ddos
Cloudflare warns AI-driven identity fraud and SaaS abuse are reshaping cybercrime, as global costs hit USD $10.5 trillion a year.
Stop framing deepfake harassment of women as a social problem - It's a cybersecurity problem
4 days ago
#
ransomware
#
genai
#
ai
Non-consensual deepfake abuse of women is not just online harassment but cybercrime, demanding full threat intelligence and security action.
Proofpoint adds threat defence to AWS Security Hub plan
5 days ago
#
ransomware
#
digital transformation
#
hyperscale
Proofpoint plugs Collaboration Protection into AWS Security Hub Extended Plan, folding email and collaboration threat defence into one AWS deal.