Infosec stories
Australia's Cybersecurity Act drives a surge in breach reporting as attacks soar, exposing rising business losses and tougher penalties.
Zama predicts privacy-first compliance tools and quantum-safe cryptography will become standard for regulated onchain finance by 2026.
Astra launches a continuous cloud scanner for AWS, Azure and GCP, promising fewer false alerts by validating which risks are truly exploitable.
AI-powered 'Truman Show' scam uses OPCOPRO app and fake trading rooms in official stores to steal cash and victims' digital identities.
Concentric AI launches Private Scan Manager on Azure, letting regulated sectors keep sensitive data in private cloud while using SaaS tools.
Intruder finds over 42,000 sensitive tokens hidden in JavaScript bundles, exposing a major blind spot in modern web app security tools.
Nine in ten US and European security professionals lack a roadmap for post-quantum cryptography, leaving critical data exposed long term.
Kiteworks and Concentric AI join forces to tie AI-driven data discovery to automated controls on sensitive information shared externally.
HP reports a surge in convincing fake software updates and staged prompts that trick users into installing stealthy, rapidly evolving malware.
Thales launches AI Security Fabric to shield enterprise LLM and agentic AI apps from runtime threats like prompt injection and data leakage.
AI-native malware, deepfake fraud and attacks on connected devices will dominate enterprise cyber risk in 2026, VIPRE has warned.
OWASP has launched its first Top 10 list for agentic AI, warning autonomous systems act as a powerful but risky new digital workforce.
iProov and HYPR integrate liveness checks with passwordless login to stop deepfake workers infiltrating enterprises at onboarding.
Just 1% of organisations fully use Just-in-Time privileged access, leaving AI agents and cloud systems exposed to “always-on” credentials.
Burnout and alert fatigue among UK cyber teams are quietly eroding defences, leaving organisations exposed as attacks intensify.
UK launches GBP £210m Cyber Action Plan and central unit to shore up digital public services amid rising attacks and legacy risks.
UK firms pour cash into cyber security yet neglect AI-specific threats, leaving new attack surfaces exposed despite rising confidence.
AI is set to redefine cyber defence in 2026, forcing UK boards and public bodies to swap reactive security for automated, collective resilience.
Myths over the value of business data are leaving smaller firms dangerously exposed, IDS-INDATA warns ahead of Data Privacy Day.
Nearly half of US small firms have suffered cyber attacks in five years as many still rely on untrained staff and weak defences to cope.