Threat intelligence stories
Healthcare providers face a new malware route as Varist's engine scans DICOM, HL7 and FHIR files for hidden threats in imaging systems.
The acquisitions deepen Accenture's push into industrial cyber defence as it targets power grids, pipelines and data centres.
A near-decade of undetected access raises fresh concern after investigators found the group had hidden in a disconnected network since 2016.
Public release of the Mini Shai-Hulud code means copycat attacks can now hit developers, CI/CD systems and open-source supply chains.
The new system aims to curb fraud as AI-driven traffic surges and online security teams struggle to tell legitimate agents from attackers.
Security teams could cut wasted remediation work as the update helps separate blocked exposures from those attackers can still exploit.
A single phishing email can now compromise identities, bypass multifactor authentication and hit endpoints within five minutes, Barracuda said.
BlueVoyant says a ClickFix malware campaign using fake browser updates is linked to the Rapid Brigantine ransomware ecosystem.
AWS customers will gain broader visibility into AI and cloud risks as CrowdStrike adds new monitoring, trials and private connectivity.
The free check could help security teams uncover overlooked Java runtimes before AI-driven attackers exploit known flaws and outdated versions.
Trusted software is giving cybercriminals persistent access to PCs, making attacks harder to spot and raising the risk of data theft.
Eligible Managed WordPress customers gain visibility into flaws as they are disclosed, as WordPress attacks are being exploited within hours.
The move puts Broadridge among firms using frontier AI to harden financial software, where breaches can disrupt trading and client communications.
Managed service providers are under rising pressure from ransomware and nation-state attacks as Blackpoint expands intelligence-led security for partners.
Backup and recovery tasks can now be triggered inside popular AI assistants, as Cohesity opens its tools to external workflows through MCP.
Security teams face a heavier patching burden next year, with disclosure volumes now tracking far above FIRST's earlier estimate.
It aims to help critical infrastructure operators keep sensitive security data and AI models inside UK-controlled systems during cyber incidents.
The hire comes as customers scrutinise SolarWinds' security posture more closely after its 2020 breach and rising cyber risk across software suppliers.
Phishing is becoming harder to spot as attackers use encryption and AI-generated sites to target organisations more effectively.
The tool has already blocked more than 52,000 risky npm packages as supply chain attacks continue to hit software teams.