Cybersecurity News

Filters
Tag
Reset

Filtered by tag: cybersecurity × Clear

AI is making cyber threats faster, but trust will define which businesses survive

AI is accelerating cyber threats by surfacing forgotten digital vulnerabilities, giving attackers faster, more sophisticated tools. But beyond technical defenses, businesses face a deeper challenge: maintaining customer trust. Companies that respond transparently to breaches and demonstrate genuine commitment to data protection will be better positioned to survive than those relying on security measures alone.

AI agents are inside the enterprise – are your security foundations ready for them?

As AI agents gain autonomous access to enterprise systems, data, and workflows, traditional software-level security measures are proving insufficient. Experts argue that organizations need hardware-level security foundations — including secure enclaves, trusted execution environments, and hardware attestation — to reliably verify agent identity, protect sensitive data, and prevent manipulation or compromise of increasingly autonomous AI systems.

10 Hacker Summer Camp Standouts at Black Hat and DEF CON

Huntress researchers and analysts attended Black Hat and DEF CON, collectively known as Hacker Summer Camp, highlighting notable sessions and villages across both conferences. Key themes included offensive and defensive security techniques, hands-on villages, and emerging threat research. The events showcased community-driven learning and collaboration, with standout moments spanning panels, workshops, and demonstrations reflecting current cybersecurity challenges and innovations.

Exclusive: Australian truck trailer company Midland among dozens of victims listed by Cl0p cyber extortion group

Matched: Australia

Ransomware group Cl0p has listed over 40 victims in a single day, including major companies such as Philips, General Electric, Tristar, Shell, and Australian truck trailer manufacturer Midland. The prolific cyber extortion gang typically publishes victim details when ransom demands go unpaid, using the threat of data exposure as leverage.

Education Under Attack: The Pattern Behind Recent University Breaches

Four university data breaches in early 2026 share a common cause: misconfigured systems rather than sophisticated hacking. Attackers exploited improperly secured cloud storage, exposed databases, and weak access controls. Higher education institutions are particularly vulnerable due to decentralized IT management and limited security budgets. Experts recommend regular configuration audits, stricter access policies, and centralized oversight to close the gap.

Guide to Cybersecurity Budget Planning: How Much + How To | Huntress

Cybersecurity budget planning requires balancing protection needs against available resources. Businesses should assess risks, inventory assets, and prioritize spending on the most critical vulnerabilities. Common budget factors include tools, staff training, incident response, and compliance. Experts generally recommend allocating 10-15% of IT budgets to security, though this varies by industry, size, and risk exposure.

Akira Hits Safe Mode: Ransomware Rebooting Around EDR

An Akira ransomware affiliate attempted to bypass endpoint detection by rebooting a victim's system into Safe Mode, which prevents most security tools from loading. The tactic backfired when Safe Mode also blocked their own ransomware from executing properly. Researchers documented the full attack chain, highlighting how threat actors are adapting techniques against modern EDR solutions, sometimes with self-defeating results.

One in three ANZ organisations still pay ransomware demands, Commvault research says

Matched: Australia

One in three organisations in Australia and New Zealand still pay ransomware demands, according to Commvault research, despite uncertainty about whether data will be recovered or operations restored. The findings highlight ongoing vulnerabilities and suggest many organisations lack confidence in their ability to recover without meeting attackers' demands.

Recorded Future’s Insikt Group reports 44% rise in high-impact CVEs in July

Matched: Australia

Recorded Future's Insikt Group recorded an 85 high-impact CVEs in July 2026, a 44% rise from the previous period. The report highlights vulnerabilities that organisations in Australia and New Zealand should prioritise for remediation, reflecting a growing threat landscape requiring urgent attention from security teams.

Researchers Built a Fake Crypto Startup and Hired Three Suspected North Korean IT Workers

Matched: cryptocurrency

Researchers created a fake crypto startup and hired three suspected North Korean IT workers to study their tactics. Every company device was monitored. The operation revealed red flags hiring teams can watch for: one worker claimed to live in Texas but submitted a California driver's license and a New York bank account, exposing the inconsistencies North Korean operatives typically display during onboarding.

Gunra Ransomware Exploits Fortinet and Schneider Electric Flaws to Breach Networks

Matched: health

South Korean and US cybersecurity agencies have warned about Gunra ransomware targeting critical infrastructure globally, including healthcare, financial services, government, and nonprofit sectors. The attacks exploit vulnerabilities in Fortinet and Schneider Electric systems. Gunra follows a ransomware-as-a-service model and represents a continuing trend of sophisticated ransomware variants threatening essential services worldwide.

APRA seeks $8m Bendigo cyber control penalty

Matched: Australia

Australia's prudential regulator is seeking an $8 million penalty against Bendigo and Adelaide Bank over alleged failures in its cyber security controls. The Australian Prudential Regulation Authority claims the bank breached its prudential standards, marking a significant enforcement action targeting digital risk management and accountability at one of the country's larger regional lenders.

Australian startup Quantum Lock applies quantum physics to detect cyberattacks on embedded devices

Matched: Australia

Australian startup Quantum Lock is using quantum physics to detect cyberattacks on embedded devices in critical infrastructure. The technology offers continuous monitoring to identify compromised devices, moving beyond traditional point-in-time security checks. The approach targets sectors where embedded systems are common and difficult to secure, positioning the startup as an early mover in quantum-based cybersecurity for industrial and critical infrastructure environments.

Not a drop to drink: Unknown attackers are targeting US water systems… And it could happen here

Matched: Australia

US water utilities have been targeted by cyberattacks, with Iran suspected though unconfirmed. Attackers exploited internet-exposed industrial control systems, some still using default passwords. The incidents highlight vulnerabilities in critical infrastructure globally, with Australian operators urged to audit their systems, restrict remote access, update credentials, and apply patches to operational technology environments.

Scammer beware: Why scams spike around Census time, and what to look out for

Matched: Australia

Scammers are exploiting Australia's Census period, sending fraudulent emails to trick people into handing over personal details. Authorities warn that the timing is deliberate, as people are more likely to share sensitive information during Census time. Australians are urged to be cautious and verify any Census-related communications through official government channels.

Komatsu Australia to move 4000 users to zero trust cloud security

Matched: Australia

Komatsu Australia is migrating around 4,000 users to a zero trust cloud security model, with a pilot phase beginning this month. The move aims to replace traditional perimeter-based security with identity-verified access controls, reducing risk as staff work across multiple locations and devices. The rollout reflects broader enterprise adoption of zero trust frameworks across Australian organisations.

10th August – Threat Intelligence Report

North Carolina Ports suffered a cyberattack disrupting operations at Wilmington, Morehead City and other ports, forcing some processes to revert to manual operation. The authority says the incident has been contained. Additional details on other attacks, breaches, vulnerabilities, and threat intelligence findings are available in Check Point Research's full Threat Intelligence Bulletin for the week of 10th August.

Five Years, 88,000 Backdoors, and a Pair of Handcuffs: Inside the Global Manhunt That Ended in an Arrest

A five-year joint investigation by cybersecurity firm Huntress and the FBI culminated in an arrest connected to Silk Typhoon, a Chinese state-linked hacking group. The operation tracked the deployment of roughly 88,000 backdoors in Microsoft Exchange servers. The case highlights the growing collaboration between private security researchers and federal law enforcement in combating sophisticated, state-sponsored cybercrime.