CMOtech UK - Technology news for CMOs & marketing decision-makers

Threat actors stories

Email attachment20260423 2863807 yrappg

Google Cloud unveils AI security tools & fraud defence

Today
#
firewalls
#
data protection
#
hyperscale
Google Cloud expands AI security with new agents, Wiz integrations and fraud defences as it targets faster, more automated cyber attacks.
Flux result f96afb38 dd0c 4b87 b8bb 62167c1bb564

Council data breaches rise 53% in five years, study finds

Today
#
malware
#
data protection
#
ransomware
England's biggest councils logged more data incidents over five years, with serious referrals up 41% and some authorities blaming better reporting.
Flux result 6b26a2e2 5d79 46e4 8f95 9bdff4bac76b

BlackBerry survey flags secure messaging gaps in government

Yesterday
#
data protection
#
encryption
#
mdm
BlackBerry survey finds government and infrastructure security chiefs relying on WhatsApp for sensitive talks despite major misunderstandings over encryption.
Flux result cbfa8703 77de 42c6 b26d 0085048d5349

Sysdig report says cloud security shifts to machine speed

3 days ago
#
digital transformation
#
pam
#
cloud security
Sysdig says companies are increasingly leaning on automated defence as AI-driven attacks accelerate, with machine identities now dominating cloud access.
Flux result 39a6fe52 cd41 4db0 ad6c 28f68704fac4

Team Cymru launches Total Insights Feeds for threat data

Last week
#
malware
#
firewalls
#
siem
Team Cymru unveils Total Insights Feeds, a single-stream threat intelligence framework blending internet-wide scoring, context and automated risk tagging.
Flux result 6c691a34 515d 4b81 8e88 0408697cb091

Ransomware activity stays high as new groups surge

Last week
#
ransomware
#
advanced persistent threat protection
#
supply chain
GuidePoint says ransomware attacks stayed elevated in Q1 as The Gentlemen surged, construction became a top target and extortion-only tactics spread.
Flux result a694726b 7de5 48ce 9beb 896d40041b0f

Former Black Basta affiliates target executives in Teams

Last week
#
uc
#
mfa
#
phishing
ReliaQuest says suspected former Black Basta operators are bombarding staff with emails and posing as IT support in Microsoft Teams to reach senior executives.
Flux result e138c2c7 10d5 44b8 b5f2 1566c9a08fa9

Proofpoint flags mailbox rule abuse in Microsoft 365

Last week
#
edutech
#
mfa
#
cloud security
Proofpoint says mailbox rule abuse is becoming a routine Microsoft 365 takeover tactic, helping attackers hide alerts, hijack threads and drive fraud.
Flux result 8c459e3e 68ea 48d4 a1bb 6a3b737b8291

UK telecom servers expose security details, study finds

Last week
#
vpns
#
ransomware
#
devops
Study finds UK telecom firms exposing security-critical server data as Europe-wide analysis flags widespread certificate failures and critical asset weaknesses.
Flux result 586ba468 637e 4df3 afb6 b50756bff00b

Synack launches Glasswing readiness test for attack gaps

Last week
#
firewalls
#
devops
#
digital transformation
Synack launches AI-driven assessment to expose overlooked attack surface gaps as offensive tools speed up vulnerability discovery.
Flux result d25c2701 0034 45e9 883a 9aeb9fa61d60

Booking.com warns some customers of possible data exposure

Last week
#
data protection
#
endpoint protection
#
mfa
Booking.com tells some customers to watch for phishing after suspicious activity exposed reservation details, contact data and messages linked to bookings.
359

AI bots overwhelm identity controls in Australia & NZ

Last week
#
data protection
#
devops
#
hybrid cloud
AI-driven bots and machine accounts are exposing long-running identity security gaps across Australian and New Zealand organisations, experts warn.
Flux result 69099f59 61f8 4957 93e2 ee71c12bf092

TCCA urges standards push on critical broadband security

This month
#
uc
#
firewalls
#
network security
TCCA urges industry to align on international standards as 4G and 5G broadband systems expand the cyber risk for mission critical communications.
04062026001

China-aligned TA416 resumes spying on EU & Mideast

This month
#
phishing
#
email security
#
cybersecurity
China-linked TA416 returns to spying on European diplomats and later expands attacks to Middle Eastern government targets after Iran conflict.
Flux result 0140b590 dfa2 4fdb 8cad 8fa28d461048

Firms warned on ransomware amid backup & AI sprawl

This month
#
saas
#
firewalls
#
data protection
Experts warn firms must improve visibility and backup resilience as automated ransomware campaigns and hidden SaaS and AI assets widen exposure.
Flux result 535d470b 750b 406e 885a 9172bd34523e

Web attacks in EMEA hit two-year high, Akamai warns

Last month
#
firewalls
#
ddos
#
digital transformation
Akamai says attack volumes in Europe, the Middle East and Africa climbed 36% year on year as APIs and automated DDoS campaigns fuel a sharp surge.
Flux result d8c5482f 7ea3 4d79 86b2 7167cdd86ee6

World Backup Day warnings over ransomware resilience gaps

Last month
#
data protection
#
dr
#
ransomware
Cybersecurity experts say many firms are still relying on fragmented backup tools and untested recovery plans as ransomware attacks and cloud complexity surge.
Flux result 20060d8e 7292 4b00 9027 6d112c3fdc35

Gcore sees DDoS attacks surge to 1.3 million in Q4

Last month
#
gaming
#
ddos
#
network infrastructure
Gcore warns DDoS attacks hit 1.3 million in late 2025 as brief, high-volume floods and longer app assaults expose more sectors to risk.
Flux result 8910bca1 99ae 4239 a7bb 1c491f2f1d85

Ransomware attacks fall as CL0P & The Gentlemen surge

Last month
#
malware
#
firewalls
#
ddos
Qilin keeps top spot as ransomware incidents drop 8% in February, while CL0P and The Gentlemen post sharp gains and new AI risks emerge.
Editorial world map storm network lines ransomware hooded nodes

CrowdStrike flags faster AI-driven cyber attacks worldwide

Last month
#
ransomware
#
cloud security
#
phishing
AI-fuelled cyber attacks are spreading faster worldwide, CrowdStrike warns, as breakout times plummet and criminals weaponise mainstream tools.