Social Engineering stories
Organisations face a growing risk of silent data theft as criminals exploit cloud identities and credentials for extortion instead of encryption.
Attackers are exploiting urgency and trust in payment and payroll processes, putting finance teams at risk of fraud, disruption and scrutiny.
Automated requests now make up most web traffic, raising costs for sites and sharpening fears over AI-driven fraud and phishing.
Malicious packages are now spreading faster across code repositories, with Google saying open source ecosystems face the sharpest rise in risk.
Employees now face more realistic phone-based fraud tests as security teams can simulate vishing using local caller IDs and AI voices.
Proofpoint says underground forums are advertising tools that use indirect prompt injection across emails, PDFs, calendar invites and web pages.
Victims can be tricked more easily as Logokit now tailors fake login pages in real time, sending stolen credentials to Telegram bots.
Faster instant payments and AI-led commerce are exposing fraud and infrastructure gaps, forcing banks and merchants to bolster resilience.
Manufacturers faced the heaviest ransomware pressure as AI tools and faster intrusions left defenders with less time to react.
Breaches are forcing boards to rethink cyber defence, with Google Cloud warning that recovery, staff readiness and containment matter most.
A growing share of US adults doubt business emails as AI makes polished messages easier to fake, a survey found.
Phishing and fraud still drive most insured cyber losses, as artificial intelligence makes familiar scams more effective for clients.
A recent government breach has exposed a wider gap in cyber awareness, with stolen personal data sold online for as little as GBP £5.
Customers face heightened scam risks as Origin Energy investigates claims that a hacker accessed two million records and alerted regulators.
Malicious attacks are growing costlier as AI-generated elements feature in nearly a third of incidents, IBM's study found.
The deal gives regulated businesses extra protection against phishing, data leaks and rogue apps as work shifts deeper into browsers and AI tools.
The rollout targets post-login attacks, rogue AI use and fake job candidates as customers seek stronger control over identities and access.
Security teams can now pinpoint training gaps by topic as QuizFlight's tagging system measures understanding, not just course completion.
In Singapore, 68% of ransomware-hit organisations said AI made attacks more effective, as phishing and impersonation drove most incidents.
AI tools are speeding routine checks, but hidden business logic flaws and context-specific risks still need human testers to spot them.