Data exfiltration stories
Attackers hid malware in familiar package workflows, prompting Sonatype to log 21,764 malicious open-source packages in the quarter.
Most firms are not ready for AI-driven API attacks, with Salt saying 92% have yet to reach advanced security maturity.
Visibility alone will not stop sensitive data leaking into AI tools, so security teams must turn DSPM findings into live controls and data lineage.
A Monday-morning Microsoft 365 login from Germany was flagged, letting a partner reset a compromised account before attackers could act.
It could cut migration cycles from days to minutes for firms modernising virtual estates, while keeping data in place for some VM moves.
Security researchers say long automated jobs can make Claude Code’s deny rules fall back to user prompts, weakening protections in CI/CD pipelines.
Victims in healthcare, education and finance have faced Medusa ransomware within 24 hours of flaws emerging, Microsoft says.
Malicious downloads can now be caught at runtime, as the new tool records hidden network calls and file writes before deployment.
Sensitive chats and uploaded files could have been quietly leaked from ChatGPT via DNS tunnelling before OpenAI fixed the flaw.
Security teams face a wider gap as enterprise AI moves into production, with data governance and runtime controls often managed separately.
ThreatLabz says the latest Xloader strain uses layered encryption and decoy servers to frustrate analysts while stealing browser credentials.
Businesses using PDFs for sensitive files now have a new way to uncover hidden code that could expose data or alter documents unnoticed.
Businesses face credential theft and reinfection risks as DeepLoad hides inside trusted Windows processes and evades routine clean-up.
Hidden software and poorly protected backups are leaving businesses more exposed to automated ransomware attacks, security experts warned.
Enterprises deploying agentic AI are getting a new tool to spot data leaks, policy breaches and runaway costs before they spread.
Security teams risk missed attacks and slower investigations unless AI can see network traffic in motion across hybrid cloud environments.
Rising data volumes and AI are forcing Australian firms to cut storage waste, tighten governance and test backups before breaches hit.
As AI moves into production, enterprises face gaps between data governance and runtime controls that can expose sensitive information and policy breaches.
Singapore’s digital economy faces rising pressure as attacks climbed 22% in March, far outpacing a 5% global decline.
Cloud office accounts are emerging as a major weakness in Malaysia, with 3,945 confirmed incidents tied to Microsoft 365 in 2025.