Infosec stories
Google warns of surge in enterprise zero-day attacks
Today
#
virtualisation
#
firewalls
#
vpns
Google warns attackers are shifting from browsers to corporate systems, as tracked zero-day exploits climb and enterprise edge devices surge.
Sama credential leaks raise fears over Meta glasses data
Last week
#
wearables
#
data protection
#
surveillance
Leaked Sama staff logins tied to stealer malware spark fresh alarm over security of Meta Ray-Ban smart glasses video review pipeline.
CISOs brief boards often but lack strategic influence
Last week
#
data protection
#
digital transformation
#
partner programmes
Boards hear from CISOs more than ever, yet most security chiefs still lack clout over strategy, spending and fast-rising AI-driven risks.
Deskpro brings cloud & VPC help desks to AWS shopfront
Last week
#
uc
#
data protection
#
private cloud
Deskpro launches cloud and VPC help desk on AWS Marketplace, giving organisations flexible hosting, AI options and streamlined procurement.
Terra Security gains first AWS nod for AI threat tests
Last week
#
network infrastructure
#
devops
#
hyperscale
Terra Security becomes first AWS partner validated for Autonomous Security Validation, as AI-driven continuous threat testing gains pace.
Misconfigured Microsoft 365 leaves big firms exposed
Last week
#
data protection
#
digital transformation
#
mfa
Misconfigured Microsoft 365 is leaving big organisations exposed, with 45% hit by incidents and many turning warily to AI for relief.
Private equity warned over fragile AI foundations
Last week
#
digital transformation
#
physical security
#
risk & compliance
Private equity faces rising AI risk as SIG warns fragile software, security and governance are undermining ambitious investment narratives.
A resilient security culture is built in the flow of work, not the classroom
Last week
#
data protection
#
digital transformation
#
phishing
Rising UK cyber attacks show training alone is failing; firms must embed behavioural security cues into daily work to cut human risk.
Forcepoint adds ARIA AI assistant to Data Security Cloud
Last week
#
data protection
#
endpoint protection
#
hybrid cloud
Forcepoint adds ARIA AI assistant and a faster endpoint agent to Data Security Cloud to tighten policy control for generative AI workloads.
Cato unveils Dynamic Prevention engine for SASE security
Last week
#
firewalls
#
digital transformation
#
hyperscale
Cato launches Dynamic Prevention, a SASE-native engine that auto-detects multi-stage attacks by correlating months of security telemetry.
Survey shows pentesters favour PTaaS over bug bounties
Last week
#
devops
#
application security
#
devsecops
New research from Cobalt finds 98% of surveyed pentesters prefer PTaaS to bug bounties and show almost no faith in AI-only security scanning.
Women push for faster gender parity in fintech & tech
Last week
#
fintech
#
risk & compliance
#
security operations
Senior women across fintech, private equity and cyber call for faster gender parity, urging sponsorship, structural change and bold hiring.
ExpressVPN unveils beta MCP server for AI VPN control
Last week
#
firewalls
#
data protection
#
vpns
ExpressVPN launches a beta MCP server that lets AI tools monitor VPN status and switch regions directly from its desktop apps.
Coruna exploit kit exposes risks for outdated iOS users
Last week
#
endpoint protection
#
pam
#
mfa
New Coruna exploit kit shows outdated iOS devices face automated, scalable attacks that can turn compromised phones into corporate gateways.
Why women can be leaders when it comes to AI
Last week
#
data protection
#
ransomware
#
digital transformation
Women in cybersecurity, long trained to question and validate, are uniquely placed to lead the era of risky, fast‑moving AI tools.
Ransomware attacks surge 50% as industrial firms hit hardest
Last week
#
malware
#
data protection
#
ransomware
Global ransomware attacks jump 50% to 7,874 in 2025, with industrial firms bearing the brunt as criminal groups reshuffle their tactics.
JFrog flags 13 critical CI/CD flaws in GitHub workflows
Last week
#
siem
#
fintech
#
application security
JFrog warns 13 GitHub CI/CD workflow flaws, mostly critical, could let attackers hijack pipelines and steal secrets at scale.
Microsoft & Europol disrupt global Tycoon 2FA scam
Last week
#
ransomware
#
mfa
#
crypto
Microsoft and Europol have seized over 300 domains to disrupt Tycoon 2FA, a vast phishing-for-hire service bypassing MFA worldwide.
Delinea buys StrongDM to boost AI-era identity security
Last week
#
virtualisation
#
devops
#
hybrid cloud
Delinea acquires StrongDM to create a unified, just-in-time identity security control plane for AI-driven and hybrid cloud environments.
IRONSCALES adds AI agents to counter next‑gen phishing
Last week
#
uc
#
data protection
#
cloud security
IRONSCALES' Winter 2026 Release debuts three AI agents, outbound encryption and Teams deepfake defences to counter next‑gen phishing.