Exploits stories
Ransomware attacks hit record highs in 2025 as Qilin overtakes LockBit, with victim numbers surging 58% and threat groups multiplying.
Breaches are forcing boards to rethink cyber defence, with Google Cloud warning that recovery, staff readiness and containment matter most.
Contrast plugs its ADR into Datadog Cloud SIEM, streaming verified runtime attack data to slash alert noise and speed SecOps response.
Picus Security launches Exposure Validation, a tool using real-time attack simulations to identify which vulnerabilities are truly exploitable in organisations.
Mandiant's 2024 report reveals a rise in financially motivated cyber attacks, with 55% of threat groups seeking profit, while detection remains a major challenge globally.
ReliaQuest's new report reveals a worrying 24% rise in ransomware attacks on the manufacturing sector, impacting 624 companies between August 2024 and January 2025.
GitHub has partnered with Endor Labs, integrating advanced security software to help developers swiftly identify and manage critical vulnerabilities within the platform.
Tenable has launched Tenable Patch Management, an autonomous solution designed to streamline vulnerability remediation amid increasing cyber threats.
Opus Security unveils its AI-powered Advanced Multi-Layered Prioritization Engine, revolutionising how organisations manage and address vulnerabilities.
Hackers exploiting newly found vulnerability in Palo Alto's PAN-OS are using RedTail malware to enhance cryptomining operations, raising cybersecurity alarms.
Rapid7's 2024 Attack Intelligence Report highlights a sharp rise in zero-day vulnerabilities causing mass breaches and underscores the necessity for faster patching and robust MFA protocols.
Google and Mandiant's cybersecurity report reveals a 50% rise in exploited zero-day vulnerabilities in 2023, with China being the leading perpetrator.
New Relic's observability platform now offers Interactive Application Security Testing (IAST) with a proof-of-exploit reporting feature, enabling real-time identification and fixing of application vulnerabilities before code deployment.
In light of the massive cybersecurity breach impacting Ivanti solutions, firms are urged to embrace cyber resilience for business continuity, demonstrating greater fortitude against potential disruptions.
Data Theorem's Cloud Secure and Mobile Protect acclaimed for top cloud security and mobile API threat protection at 2023 CyberSecured Awards.
Azul's inaugural State of Java survey highlights Java's vital role in global tech, with 98% of firms reporting usage.
Cequence Security offers first-ever API protection on the HPE GreenLake Marketplace, promoting visibility, reduced costs, and minimised business risks.
An attacker attempted to exploit the open-source community by uploading a series of malicious packages to the PyPi package manager.
Recorded Future's monthly report reveals high-risk vulnerabilities, exploit chains, and zero-day vulnerabilities affecting Microsoft and Ivanti products.
Smaller firms could face more frequent attacks if access to advanced models stays limited to government agencies, Huntress says.