Threat actors stories
Mid-market firms in financial, insurance and consulting services face the highest ransomware risk, with attacks now striking faster and costing far more.
Hong Kong saw a record 15,877 cyber incidents in 2025 as AI speeds attacks and shortens the window to exploit software flaws.
Government and enterprise users will get guidance on recovering faster from AI failures as the Cloud Security Alliance builds a vendor-neutral resilience hub.
Defenders now face a 48-hour window after proof-of-concept code appears, as attackers use AI to speed exploits and hit software chains.
Undisclosed attacks now dominate ransomware activity, with 2,027 incidents logged in the quarter and data theft reported in 97% of disclosed cases.
Organisations now have just 48 hours to patch most flaws, as AI helps attackers weaponise vulnerabilities far faster than before.
Cloud, AI and hybrid work are pushing system administrators into frontline risk management as phishing threats become harder to spot.
Proofpoint says underground forums are advertising tools that use indirect prompt injection across emails, PDFs, calendar invites and web pages.
Security teams could cut incident response from hours to minutes as Team Cymru folds telemetry, investigation and AI access into one platform.
The Milan-founded startup plans to expand in Rome and San Francisco as it targets European firms facing tighter NIS2 cybersecurity rules.
Manufacturers faced the heaviest ransomware pressure as AI tools and faster intrusions left defenders with less time to react.
Email fraud is now the top incident type, accounting for 45% of cases as attackers bypass multi-factor authentication with stolen credentials.
Most firms still depend on manual endpoint workflows, even as they plan to step up AI spending and struggle with slow patching and poor visibility.
Defenders will see clearer attribution at a glance as Google Threat Intelligence Group replaces rival cyber-actor labels with two-word cryptonyms.
The update aims to cut remediation costs and stop teams wasting time by re-analysing vulnerabilities without enough business context.
The ranking bolsters 1Kosmos as firms face rising fraud from stolen credentials, synthetic identities and AI-driven impersonation.
Supply chain attacks are pushing cyber risk upstream, putting managed service providers under pressure from customers and regulators over shared access.
Security teams can now pull threat intelligence into existing AI workflows, reducing manual analysis across fragmented data and incident investigations.
In Singapore, 68% of ransomware-hit organisations said AI made attacks more effective, as phishing and impersonation drove most incidents.
Data theft and repeat extortion are hitting Australian businesses harder as AI helps attackers make ransomware lures more convincing.