Cybersecurity News
Filters
Filtered by tag: cybersecurity × Clear
AI is making cyber threats faster, but trust will define which businesses survive
AI is accelerating cyber threats by surfacing forgotten digital vulnerabilities, giving attackers faster, more sophisticated tools. But beyond technical defenses, businesses face a deeper challenge: maintaining customer trust. Companies that respond transparently to breaches and demonstrate genuine commitment to data protection will be better positioned to survive than those relying on security measures alone.
AI agents are inside the enterprise – are your security foundations ready for them?
As AI agents gain autonomous access to enterprise systems, data, and workflows, traditional software-level security measures are proving insufficient. Experts argue that organizations need hardware-level security foundations — including secure enclaves, trusted execution environments, and hardware attestation — to reliably verify agent identity, protect sensitive data, and prevent manipulation or compromise of increasingly autonomous AI systems.
10 Hacker Summer Camp Standouts at Black Hat and DEF CON
Huntress researchers and analysts attended Black Hat and DEF CON, collectively known as Hacker Summer Camp, highlighting notable sessions and villages across both conferences. Key themes included offensive and defensive security techniques, hands-on villages, and emerging threat research. The events showcased community-driven learning and collaboration, with standout moments spanning panels, workshops, and demonstrations reflecting current cybersecurity challenges and innovations.
Exclusive: Australian truck trailer company Midland among dozens of victims listed by Cl0p cyber extortion group
Matched: Australia
Ransomware group Cl0p has listed over 40 victims in a single day, including major companies such as Philips, General Electric, Tristar, Shell, and Australian truck trailer manufacturer Midland. The prolific cyber extortion gang typically publishes victim details when ransom demands go unpaid, using the threat of data exposure as leverage.
Education Under Attack: The Pattern Behind Recent University Breaches
Four university data breaches in early 2026 share a common cause: misconfigured systems rather than sophisticated hacking. Attackers exploited improperly secured cloud storage, exposed databases, and weak access controls. Higher education institutions are particularly vulnerable due to decentralized IT management and limited security budgets. Experts recommend regular configuration audits, stricter access policies, and centralized oversight to close the gap.
Guide to Cybersecurity Budget Planning: How Much + How To | Huntress
Cybersecurity budget planning requires balancing protection needs against available resources. Businesses should assess risks, inventory assets, and prioritize spending on the most critical vulnerabilities. Common budget factors include tools, staff training, incident response, and compliance. Experts generally recommend allocating 10-15% of IT budgets to security, though this varies by industry, size, and risk exposure.
Akira Hits Safe Mode: Ransomware Rebooting Around EDR
An Akira ransomware affiliate attempted to bypass endpoint detection by rebooting a victim's system into Safe Mode, which prevents most security tools from loading. The tactic backfired when Safe Mode also blocked their own ransomware from executing properly. Researchers documented the full attack chain, highlighting how threat actors are adapting techniques against modern EDR solutions, sometimes with self-defeating results.
One in three ANZ organisations still pay ransomware demands, Commvault research says
Matched: Australia
One in three organisations in Australia and New Zealand still pay ransomware demands, according to Commvault research, despite uncertainty about whether data will be recovered or operations restored. The findings highlight ongoing vulnerabilities and suggest many organisations lack confidence in their ability to recover without meeting attackers' demands.
Recorded Future’s Insikt Group reports 44% rise in high-impact CVEs in July
Matched: Australia
Recorded Future's Insikt Group recorded an 85 high-impact CVEs in July 2026, a 44% rise from the previous period. The report highlights vulnerabilities that organisations in Australia and New Zealand should prioritise for remediation, reflecting a growing threat landscape requiring urgent attention from security teams.
Researchers Built a Fake Crypto Startup and Hired Three Suspected North Korean IT Workers
Matched: cryptocurrency
Researchers created a fake crypto startup and hired three suspected North Korean IT workers to study their tactics. Every company device was monitored. The operation revealed red flags hiring teams can watch for: one worker claimed to live in Texas but submitted a California driver's license and a New York bank account, exposing the inconsistencies North Korean operatives typically display during onboarding.
Gunra Ransomware Exploits Fortinet and Schneider Electric Flaws to Breach Networks
Matched: health
South Korean and US cybersecurity agencies have warned about Gunra ransomware targeting critical infrastructure globally, including healthcare, financial services, government, and nonprofit sectors. The attacks exploit vulnerabilities in Fortinet and Schneider Electric systems. Gunra follows a ransomware-as-a-service model and represents a continuing trend of sophisticated ransomware variants threatening essential services worldwide.
Super sector to test cyber resilience in fourth annual Operation Honey Bee exercise
Matched: Australia
More than 50 participants from Australia's superannuation sector will take part in the fourth annual Operation Honey Bee exercise, simulating a major cyberattack to test coordination between funds, service providers, regulators, and government agencies.
APRA seeks $8m Bendigo cyber control penalty
Matched: Australia
Australia's prudential regulator is seeking an $8 million penalty against Bendigo and Adelaide Bank over alleged failures in its cyber security controls. The Australian Prudential Regulation Authority claims the bank breached its prudential standards, marking a significant enforcement action targeting digital risk management and accountability at one of the country's larger regional lenders.
Australian startup Quantum Lock applies quantum physics to detect cyberattacks on embedded devices
Matched: Australia
Australian startup Quantum Lock is using quantum physics to detect cyberattacks on embedded devices in critical infrastructure. The technology offers continuous monitoring to identify compromised devices, moving beyond traditional point-in-time security checks. The approach targets sectors where embedded systems are common and difficult to secure, positioning the startup as an early mover in quantum-based cybersecurity for industrial and critical infrastructure environments.
Not a drop to drink: Unknown attackers are targeting US water systems… And it could happen here
Matched: Australia
US water utilities have been targeted by cyberattacks, with Iran suspected though unconfirmed. Attackers exploited internet-exposed industrial control systems, some still using default passwords. The incidents highlight vulnerabilities in critical infrastructure globally, with Australian operators urged to audit their systems, restrict remote access, update credentials, and apply patches to operational technology environments.
Scammer beware: Why scams spike around Census time, and what to look out for
Matched: Australia
Scammers are exploiting Australia's Census period, sending fraudulent emails to trick people into handing over personal details. Authorities warn that the timing is deliberate, as people are more likely to share sensitive information during Census time. Australians are urged to be cautious and verify any Census-related communications through official government channels.
Exclusive: Kairos ransomware lists Warwick Fabrics NZ as hack victim
Matched: medical
New Zealand textile company Warwick Fabrics has been listed as a victim by the Kairos ransomware group, which claims to have stolen 386 gigabytes of data. The alleged breach includes sensitive employee information such as passports, medical reports, and salary data. The company has not yet publicly responded to the claims.
Komatsu Australia to move 4000 users to zero trust cloud security
Matched: Australia
Komatsu Australia is migrating around 4,000 users to a zero trust cloud security model, with a pilot phase beginning this month. The move aims to replace traditional perimeter-based security with identity-verified access controls, reducing risk as staff work across multiple locations and devices. The rollout reflects broader enterprise adoption of zero trust frameworks across Australian organisations.
10th August – Threat Intelligence Report
North Carolina Ports suffered a cyberattack disrupting operations at Wilmington, Morehead City and other ports, forcing some processes to revert to manual operation. The authority says the incident has been contained. Additional details on other attacks, breaches, vulnerabilities, and threat intelligence findings are available in Check Point Research's full Threat Intelligence Bulletin for the week of 10th August.
Five Years, 88,000 Backdoors, and a Pair of Handcuffs: Inside the Global Manhunt That Ended in an Arrest
A five-year joint investigation by cybersecurity firm Huntress and the FBI culminated in an arrest connected to Silk Typhoon, a Chinese state-linked hacking group. The operation tracked the deployment of roughly 88,000 backdoors in Microsoft Exchange servers. The case highlights the growing collaboration between private security researchers and federal law enforcement in combating sophisticated, state-sponsored cybercrime.
