eCommerceNews US - Technology news for digital commerce decision-makers

Threat actors stories - Page 5

Moody office worker on call mfa login screen red warning shield

Okta users warned as ShinyHunters expand vishing wave

Wed, 4th Feb 2026
#
ddos
#
ransomware
#
mfa
Okta users face rising vishing attacks as ShinyHunters expand real-time MFA phishing, prompting fresh SaaS and identity security warnings.
Cinematic laptop warning faces hacker hands cloud data streams

Panera breach exposes 14m in wave of SaaS extortion attacks

Tue, 3rd Feb 2026
#
crm
#
data protection
#
ransomware
Panera data breach exposes details of 14 million customers, spotlighting a surge in SaaS-focused extortion and identity-driven cyber attacks.
Corporate finance manager haunted by ai deepfake email fraud

AI phishing resets threat curve, finance teams at risk

Sat, 31st Jan 2026
#
uc
#
physical security
#
email security
AI-powered phishing is resetting the threat curve, as underprepared finance teams become prime targets for deepfake and BEC fraud.
Dim uk office night red lock screens shadowy usb insider theft

NCC warns of surge in ransomware & insider threats

Fri, 30th Jan 2026
#
ransomware
#
endpoint protection
#
pam
NCC flags fourth straight monthly rise in ransomware attacks and growing efforts by major gangs to recruit insiders and cyber staff.
Shadowy hacker dark office red warnings world map cyber attacks

AI-fuelled cyber attacks surge 70%, Check Point warns

Fri, 30th Jan 2026
#
saas
#
firewalls
#
data protection
AI-driven hacking has pushed weekly cyber attacks up 70% since 2023, with Check Point warning campaigns are faster, broader and harder to stop.
Cinematic night city cyberattack red windows shattering locks

Fewer ransomware gangs, but more victims in late 2025

Thu, 29th Jan 2026
#
ransomware
#
digital transformation
#
advanced persistent threat protection
Ransomware gangs shrank in number but hit more victims in late 2025, with leak-site postings soaring despite fewer active groups.
Moody anxious user vishing attack shadow screen mirroring mfa bypass

Okta warns of real-time vishing kits defeating MFA

Mon, 26th Jan 2026
#
mfa
#
crypto
#
physical security
Okta warns new real-time vishing kits can hijack browser sessions during calls, tricking users into defeating non‑phishing‑resistant MFA.
Unnamed  3 (2)

UK bill accelerates shift to offensive cyber security

Sat, 24th Jan 2026
#
firewalls
#
endpoint protection
#
devops
New UK cyber bill pushes critical sectors towards continuous offensive security testing as state-backed and criminal threats intensify.
Cyderes

Cyderes names Lana Knop Chief Product Officer for AI push

Sat, 24th Jan 2026
#
saas
#
siem
#
digital transformation
Cyderes appoints Lana Knop as Chief Product Officer to steer post‑Lucidum product strategy and drive a new wave of AI‑powered security services.
Warehouse retail storefront exposed credentials cyber risk network

Retail & wholesale hit by exposed shared credentials

Fri, 23rd Jan 2026
#
ransomware
#
supply chain
#
risk & compliance
Over 70% of major retailers and nearly 60% of wholesalers have exposed credentials, leaving shared supply chains ripe for attack.
Cloud computing classroom open padlocks security risk training

Misconfigured cloud training labs open paths to attacks

Fri, 23rd Jan 2026
#
firewalls
#
hyperscale
#
cloud security
Misconfigured cloud training labs on AWS, Google Cloud and Azure expose major firms to live attacks via overly permissive access roles.
Andy thomas kynd lrg(2)

KYND: big firms leave critical cyber flaws unpatched

Thu, 22nd Jan 2026
#
malware
#
application security
#
cybersecurity
Major firms are leaving known, actively exploited cyber flaws unpatched for six months or more, sharply heightening breach risks.
Dns domain security shield glowing nodes skyscraper backdrop

Unicorns outpace Global 2000 on core domain security

Thu, 22nd Jan 2026
#
firewalls
#
data protection
#
network security
Unicorns beat Global 2000 on core domain security, yet weak registry locks and scant DNS redundancy leave major gaps in cyber defences.
Moody server room ransomware central red rack broken padlock

Ransomware hits record high as Qilin tops threat list

Sat, 17th Jan 2026
#
malware
#
ransomware
#
advanced persistent threat protection
Ransomware attacks hit record highs in 2025 as Qilin overtakes LockBit, with victim numbers surging 58% and threat groups multiplying.
Hooded hacker laptop phishing icons morphing into sinister masks

Microsoft tops global phishing brand rankings again

Fri, 16th Jan 2026
#
gaming
#
mfa
#
cloud security
Microsoft again tops global phishing brand list as attackers increasingly mimic big tech services to steal cloud and consumer credentials.
Moody office worker viewing phishing emails on laptop cool blue tones

Phishing-as-a-service kits drive surge in 2025 scams

Thu, 15th Jan 2026
#
firewalls
#
network security
#
mfa
Phishing-as-a-service kits doubled in 2025, now powering 90% of attacks as cyber gangs race to outsmart multifactor checks and filters.
Glowing security shield over windows pc retiring legacy drivers

Microsoft patches zero-day, kills legacy Windows drivers

Wed, 14th Jan 2026
#
mdm
#
risk & compliance
#
cybersecurity
Microsoft's first 2026 Patch Tuesday fixes an exploited DWM zero-day, strips decades-old modem drivers and tackles Secure Boot risks.
Office desktop update popup shadowy reflection hidden malware scene

HP warns of surge in polished fake updates & malware

Fri, 9th Jan 2026
#
malware
#
virtualisation
#
mfa
HP reports a surge in convincing fake software updates and staged prompts that trick users into installing stealthy, rapidly evolving malware.
Office worker phishing qr code lock icon cloud account attack

Proofpoint warns of surge in Microsoft device code phishing

Thu, 8th Jan 2026
#
edutech
#
mfa
#
cloud security
Proofpoint flags a sharp rise in Microsoft 365 account takeovers via device code phishing, hitting firms from finance to government.
Hooded cybercriminal red binary web over global industrial targets

New ransomware methods emerge: ClickFix & group alliances

Mon, 29th Dec 2025
#
malware
#
ransomware
#
iot security
Ransomware attacks dipped in November, but ClickFix techniques and alliances between groups like Qilin and CL0P drove fresh risks.