Australian Cyber Security Centre (ACSC) stories
Google links axios attack to suspected North Korean actor
This month
#
devops
#
advanced persistent threat protection
#
supply chain
Google says the axios npm supply chain attack was linked to suspected North Korean actor UNC1069, raising fears for Australian and New Zealand firms.
Rockwell Automation brings SecureOT to industrial systems
Last month
#
manufacturing
#
digital transformation
#
iot security
Rockwell Automation launches SecureOT to help Australian industry counter rising cyber attacks on critical operational technology.
SentinelOne names Jason Duerden ANZ area vice president
Last month
#
firewalls
#
endpoint protection
#
data analytics
SentinelOne appoints Jason Duerden ANZ area vice president to drive cyber growth in government, critical infrastructure and AI security.
Datadog flags rising DevSecOps risk from ageing code
Fri, 27th Feb 2026
#
devops
#
siem
#
application security
Datadog warns 87% of organisations run software with exploitable flaws as ageing code, fast releases and automation amplify DevSecOps risk.
AI reshapes cyber threats as Safer Internet Day nears
Wed, 11th Feb 2026
#
firewalls
#
ddos
#
network security
AI-driven agents and rising network attacks are reshaping cyber risks, experts warn, as Safer Internet Day 2026 urges 'verified trust' online.
Why SOC 2 Type 2 certification matters for brokers
Thu, 29th Jan 2026
#
data protection
#
dr
#
document management
Insurance brokers must scrutinise software vendors' SOC 2 Type 2 security to safeguard client data, compliance and operational resilience.
FIRST marks record growth in global cyber defence
Fri, 9th Jan 2026
#
firewalls
#
ransomware
#
advanced persistent threat protection
Global cyber defence group FIRST reports record 2025 growth, topping 820 member teams and expanding technical, training and capacity work.
Building secure prosperity in a digitally connected world
Fri, 29th Aug 2025
#
firewalls
#
email security
#
quantum computing
Cybersecurity is now central to Australia's economic growth, safeguarding digital infrastructure amid rising cybercrime costing organisations up to AUD $63,600 per incident.
BeyondTrust cloud security completes IRAP PROTECTED review by CyberCX
Mon, 18th Aug 2025
#
data protection
#
cloud security
#
risk & compliance
BeyondTrust has passed the IRAP PROTECTED review by CyberCX, validating four cloud security solutions for Australian government use at the PROTECTED level.
Government Agencies race ahead of private sector on quantum preparedness
Mon, 4th Aug 2025
#
encryption
#
quantum computing
#
supply chain
Government agencies outpace the private sector in quantum computing readiness, urging urgent action to protect future cybersecurity and national security.
Hybrid identity security scores decline as vulnerabilities rise
Fri, 11th Jul 2025
#
risk & compliance
#
cybersecurity
#
okta
Security scores for hybrid identity systems drop to 61 in 2025, with mid-sized companies and government sectors facing the biggest vulnerability challenges.
Fast Flux DNS tactics escalate cyber defence challenges
Tue, 8th Apr 2025
#
ransomware
#
phishing
#
advanced persistent threat protection
The rise of Fast Flux DNS has empowered cybercriminals to evade detection more effectively, presenting significant challenges for security agencies in Australia.
Elastic completes IRAP certification for Elastic Cloud
Thu, 23rd Jan 2025
#
data protection
#
cybersecurity
#
cloud services
Elastic has achieved the Protected level IRAP certification for Elastic Cloud, ensuring compliance with Australian government security requirements.
Cybersecurity warning issued over Iranian infrastructure threats
Thu, 24th Oct 2024
#
mfa
#
phishing
#
email security
A coalition of global agencies warns of Iranian cyber threats targeting critical infrastructure, highlighting emerging tactics and unresolved vulnerabilities.
Global advisory issued on Iranian cyber threat tactics
Thu, 24th Oct 2024
#
advanced persistent threat protection
#
government
#
nsa
A joint advisory from international agencies warns of Iranian cyber actors targeting critical infrastructure sectors using brute force tactics for credential compromise.
Enhancing data centre security with mobile access control
Mon, 30th Sep 2024
#
endpoint protection
#
encryption
#
physical security
Mobile access control is revolutionising data centre security, addressing insider threats and ensuring compliance with mandates like GDPR and NDB.
NZ cyber security agency joins global effort against PRC botnet
Thu, 19th Sep 2024
#
storage
#
firewalls
#
iot
The New Zealand National Cyber Security Centre has teamed up with global partners to tackle a China-linked botnet compromising over 260,000 devices globally.
Report reveals reliance on memory-unsafe languages in OSS projects
Tue, 2nd Jul 2024
#
cybersecurity
#
software development
#
fbi
A new cybersecurity report reveals that 52% of critical open-source projects rely on memory-unsafe programming languages, posing significant security risks.
Software supply chain security: Finding the weakest link
Mon, 8th Apr 2024
#
advanced persistent threat protection
#
partner programmes
#
supply chain
Security in the software supply chain stands on shaky ground, as reliance on prebuilt and open-source code leads to rampant vulnerabilities and 91% of firms report incidents within the last year.
Rising cybersecurity threats prompt shift from traditional password methods
Mon, 27th Nov 2023
#
mfa
#
advanced persistent threat protection
#
email security
Rising cybersecurity threats prompt a shift from traditional, vulnerable password methods to phishing-resistant authentication solutions.