Threat actors stories - Page 4
Microsoft patches zero-day flaws in latest Windows update
Thu, 12th Feb 2026
#
iam
#
cybersecurity
#
microsoft
Microsoft rolls out fixes for 55 Windows flaws, including six exploited zero-days hitting Shell, MSHTML, Word and key desktop services.
Hackers ditch noisy ransomware for stealthy data theft
Thu, 12th Feb 2026
#
firewalls
#
data protection
#
dr
Hackers are abandoning noisy ransomware to quietly steal data, as a report finds 80% of top attack techniques now focus on evasion.
Screensaver phishing installs remote access tools covertly
Thu, 5th Feb 2026
#
storage
#
firewalls
#
ransomware
Attackers are abusing Windows screensaver files in a spearphishing campaign to stealthily install remote access tools on business systems.
Moltbook's AI agents spark growing security & brand fears
Thu, 5th Feb 2026
#
saas
#
uc
#
data protection
Moltbook's boom in user-built AI agents is fuelling mounting warnings over cyber threats and brand damage as governance lags adoption.
Solving the '3 AM Problem' with 24/7 cyber defence
Thu, 5th Feb 2026
#
malware
#
firewalls
#
ransomware
As most ransomware strikes after hours, small firms face a costly 3 AM security gap that only round-the-clock MDR can realistically close.
Routine internal access, not exploits, drives cyber risk
Wed, 4th Feb 2026
#
malware
#
firewalls
#
devops
Routine admin tools, not exotic exploits, let attackers race across networks, compromising over half of systems in under an hour.
Okta users warned as ShinyHunters expand vishing wave
Wed, 4th Feb 2026
#
ddos
#
ransomware
#
mfa
Okta users face rising vishing attacks as ShinyHunters expand real-time MFA phishing, prompting fresh SaaS and identity security warnings.
Panera breach exposes 14m in wave of SaaS extortion attacks
Tue, 3rd Feb 2026
#
crm
#
data protection
#
ransomware
Panera data breach exposes details of 14 million customers, spotlighting a surge in SaaS-focused extortion and identity-driven cyber attacks.
AI phishing resets threat curve, finance teams at risk
Sat, 31st Jan 2026
#
uc
#
physical security
#
email security
AI-powered phishing is resetting the threat curve, as underprepared finance teams become prime targets for deepfake and BEC fraud.
NCC warns of surge in ransomware & insider threats
Fri, 30th Jan 2026
#
ransomware
#
endpoint protection
#
pam
NCC flags fourth straight monthly rise in ransomware attacks and growing efforts by major gangs to recruit insiders and cyber staff.
AI-fuelled cyber attacks surge 70%, Check Point warns
Fri, 30th Jan 2026
#
saas
#
firewalls
#
data protection
AI-driven hacking has pushed weekly cyber attacks up 70% since 2023, with Check Point warning campaigns are faster, broader and harder to stop.
Fewer ransomware gangs, but more victims in late 2025
Thu, 29th Jan 2026
#
ransomware
#
digital transformation
#
advanced persistent threat protection
Ransomware gangs shrank in number but hit more victims in late 2025, with leak-site postings soaring despite fewer active groups.
Okta warns of real-time vishing kits defeating MFA
Mon, 26th Jan 2026
#
mfa
#
crypto
#
physical security
Okta warns new real-time vishing kits can hijack browser sessions during calls, tricking users into defeating non‑phishing‑resistant MFA.
UK bill accelerates shift to offensive cyber security
Sat, 24th Jan 2026
#
firewalls
#
endpoint protection
#
devops
New UK cyber bill pushes critical sectors towards continuous offensive security testing as state-backed and criminal threats intensify.
Cyderes names Lana Knop Chief Product Officer for AI push
Sat, 24th Jan 2026
#
saas
#
siem
#
digital transformation
Cyderes appoints Lana Knop as Chief Product Officer to steer post‑Lucidum product strategy and drive a new wave of AI‑powered security services.
Retail & wholesale hit by exposed shared credentials
Fri, 23rd Jan 2026
#
ransomware
#
supply chain
#
risk & compliance
Over 70% of major retailers and nearly 60% of wholesalers have exposed credentials, leaving shared supply chains ripe for attack.
Misconfigured cloud training labs open paths to attacks
Fri, 23rd Jan 2026
#
firewalls
#
hyperscale
#
cloud security
Misconfigured cloud training labs on AWS, Google Cloud and Azure expose major firms to live attacks via overly permissive access roles.
KYND: big firms leave critical cyber flaws unpatched
Thu, 22nd Jan 2026
#
malware
#
application security
#
cybersecurity
Major firms are leaving known, actively exploited cyber flaws unpatched for six months or more, sharply heightening breach risks.
Unicorns outpace Global 2000 on core domain security
Thu, 22nd Jan 2026
#
firewalls
#
data protection
#
network security
Unicorns beat Global 2000 on core domain security, yet weak registry locks and scant DNS redundancy leave major gaps in cyber defences.
Ransomware hits record high as Qilin tops threat list
Sat, 17th Jan 2026
#
malware
#
ransomware
#
advanced persistent threat protection
Ransomware attacks hit record highs in 2025 as Qilin overtakes LockBit, with victim numbers surging 58% and threat groups multiplying.