Threat actors stories - Page 4
Hijacked Google Ads push MacSync malware to Mac users
Wed, 25th Feb 2026
#
storage
#
phishing
#
email security
Hijacked Google Ads accounts are serving bogus installers that trick Mac users into running MacSync stealer via fake Evernote guides.
CISOs cautious as agentic AI adoption in security lags
Wed, 25th Feb 2026
#
firewalls
#
data protection
#
manufacturing
CISOs slow-roll agentic AI in defence, even as they brace for more advanced, AI-boosted attacks and rising personal liability risks.
Horizon3.ai names Dan Bird MBE Field CTO for EMEA cyber push
Wed, 25th Feb 2026
#
devops
#
digital transformation
#
hyperscale
Horizon3.ai appoints defence veteran Dan Bird MBE as EMEA field CTO to sharpen offensive security amid rising regional cyber threats.
Android PromptSpy malware harnesses Gemini for stealth
Fri, 20th Feb 2026
#
endpoint protection
#
mdm
#
phishing
PromptSpy Android malware taps Google's Gemini AI to navigate screens, lock itself in recent apps and thwart users' attempts to remove it.
EY maps hyper-velocity AI priorities for tech during 2026
Fri, 20th Feb 2026
#
devops
#
digital transformation
#
phishing
EY urges tech leaders to pursue AI-fuelled deals, agentic systems and sovereignty-by-design as 2026 competition and security pressures grow.
OT cyber threats shift from spying to disruption in 2025
Wed, 18th Feb 2026
#
ransomware
#
iot security
#
advanced persistent threat protection
Cyber attacks on industrial systems in 2025 shifted from quiet spying to coordinated operations aiming to disrupt critical infrastructure.
Data-only extortion surges as remote access abused
Wed, 18th Feb 2026
#
data protection
#
dr
#
vpns
Data-only extortion soars 11-fold as attackers 'log in instead of break in', abusing remote access tools for faster, stealthier raids.
Active exploitation seen in BeyondTrust access flaw
Mon, 16th Feb 2026
#
firewalls
#
network security
#
pam
Arctic Wolf says attackers are actively exploiting a critical BeyondTrust vulnerability in self-hosted remote access systems.
AI-driven ransomware attacks surge, most go unreported
Fri, 13th Feb 2026
#
firewalls
#
data protection
#
ransomware
AI-fuelled ransomware hit record levels in 2025, with BlackFog warning that around 86% of attacks worldwide are never publicly disclosed.
Okta warns of North Korean fraud in remote tech hiring
Fri, 13th Feb 2026
#
data protection
#
ransomware
#
hcm
Okta warns North Korean operatives are landing remote tech jobs with stolen and synthetic identities to fund the regime and enable cyber attacks.
BADIIS malware hijacks IIS servers for covert SEO fraud
Fri, 13th Feb 2026
#
malware
#
firewalls
#
network security
BADIIS malware is hijacking over 1,800 IIS servers worldwide, quietly boosting illicit gambling and crypto phishing sites via poisoned SEO.
SSHStalker botnet preys on legacy Linux & cloud hosts
Thu, 12th Feb 2026
#
malware
#
firewalls
#
hyperscale
A newly uncovered SSHStalker botnet uses old-school IRC and legacy Linux exploits to hijack outdated corporate and cloud hosts at scale.
Google warns of AI model theft & state-backed misuse
Thu, 12th Feb 2026
#
malware
#
surveillance
#
cloud security
Google flags surging attempts to steal AI models as state-backed hackers weaponise Gemini for phishing, intel gathering and malware support.
Visions of cyber attacks: The SonicSentry SOC in action on Christmas morning
Thu, 12th Feb 2026
#
firewalls
#
data protection
#
network security
While most slept through Christmas dawn, SonicSentry analysts foiled a 3am brute-force cyber attack on a French client's firewall.
Microsoft patches zero-day flaws in latest Windows update
Thu, 12th Feb 2026
#
iam
#
cybersecurity
#
microsoft
Microsoft rolls out fixes for 55 Windows flaws, including six exploited zero-days hitting Shell, MSHTML, Word and key desktop services.
Hackers ditch noisy ransomware for stealthy data theft
Thu, 12th Feb 2026
#
firewalls
#
data protection
#
dr
Hackers are abandoning noisy ransomware to quietly steal data, as a report finds 80% of top attack techniques now focus on evasion.
Screensaver phishing installs remote access tools covertly
Thu, 5th Feb 2026
#
storage
#
firewalls
#
ransomware
Attackers are abusing Windows screensaver files in a spearphishing campaign to stealthily install remote access tools on business systems.
Moltbook's AI agents spark growing security & brand fears
Thu, 5th Feb 2026
#
saas
#
uc
#
data protection
Moltbook's boom in user-built AI agents is fuelling mounting warnings over cyber threats and brand damage as governance lags adoption.
Solving the '3 AM Problem' with 24/7 cyber defence
Thu, 5th Feb 2026
#
malware
#
firewalls
#
ransomware
As most ransomware strikes after hours, small firms face a costly 3 AM security gap that only round-the-clock MDR can realistically close.
Routine internal access, not exploits, drives cyber risk
Wed, 4th Feb 2026
#
malware
#
firewalls
#
devops
Routine admin tools, not exotic exploits, let attackers race across networks, compromising over half of systems in under an hour.